AI Unveils GDPR Violations in Web Forms: A New Automated Auditing Framework
Research#Privacy Auditing🔬 Research|Analyzed: Jan 26, 2026 11:33•
Published: Dec 28, 2025 05:22
•1 min read
•ArXivAnalysis
This research introduces Cosmic, an innovative automated framework designed to detect consent-related privacy violations within web forms, offering a practical solution to enforce GDPR and CCPA regulations. The framework's impressive accuracy, with high TPR for consent and violation detection, signifies a significant step toward improving user privacy and data protection compliance. This work has the potential to reshape how companies approach consent management.
Key Takeaways
- •Cosmic is an automated framework for detecting GDPR and CCPA consent violations in web forms.
- •The tool was tested on thousands of websites and forms, identifying a large number of violations.
- •The framework demonstrates high accuracy in detecting consent and violation, suggesting practical applicability.
Reference / Citation
View Original"Cosmic detects 3,384 violations on 94.1% of consent forms, covering key GDPR principles such as freely given consent, purpose disclosure, and withdrawal options."