{
    "schema": "https://saferpage.de/schemas/privacy-notice-draft.v1",
    "generated_at": "2026-06-24T12:26:31+00:00",
    "domain": "studysmarter.de",
    "scan": {
        "id": "b823e1cc-8c21-44b2-b19b-3643c0baabb0",
        "checked_at": "2026-06-21 20:38:13.432292+02"
    },
    "summary": "Entwurf aus Scan-Evidenz: 11 Cookie(s), 20 Drittanbieter-Domain(s), 26 Storage-Key(s).",
    "status": "ausbaufähig",
    "score": 65,
    "links": {
        "privacy_center": "https://saferpage.de/datenschutz/studysmarter.de",
        "draft_json": "https://saferpage.de/datenschutz/studysmarter.de/entwurf",
        "draft_csv": "https://saferpage.de/datenschutz/studysmarter.de/entwurf-csv",
        "draft_markdown": "https://saferpage.de/datenschutz/studysmarter.de/entwurf-md",
        "report": "https://saferpage.de/studysmarter.de",
        "cookie_declaration": "https://saferpage.de/cookies/studysmarter.de",
        "vendor_register": "https://saferpage.de/anbieter/studysmarter.de",
        "consent_center": "https://saferpage.de/consent/studysmarter.de",
        "rights_center": "https://saferpage.de/rechte/studysmarter.de",
        "operator_board": "https://saferpage.de/betreiber/studysmarter.de",
        "background": "https://saferpage.de/guides/datenschutzerklaerung-verbessern"
    },
    "text_blocks": [
        {
            "title": "Cookies und ähnliche Technologien",
            "text": "Beim passiven SaferPage-Erstaufruf von studysmarter.de wurden 11 Cookie(s) und 26 Web-Storage-Key(s) dokumentiert. Prüfen Sie, welche Einträge technisch erforderlich sind und welche erst nach Einwilligung gesetzt werden dürfen.",
            "status": "Entwurf fachlich freigeben",
            "source": "SaferPage Scan-Evidenz"
        },
        {
            "title": "Drittanbieter",
            "text": "Der Chromium-Aufruf kontaktierte 20 Drittanbieter-Domain(s). Nennen Sie Anbieter, Zwecke, Empfänger, Rechtsgrundlage, Drittlandtransfer und Widerrufsmöglichkeit in der Datenschutzerklärung.",
            "status": "Entwurf fachlich freigeben",
            "source": "SaferPage Scan-Evidenz"
        },
        {
            "title": "Einwilligung und Widerruf",
            "text": "Nicht notwendige Cookies, Tracking, Werbung, Tag Manager und vergleichbare Web-Storage-IDs sollten vor Zustimmung blockiert werden. SaferPage bewertet den Consent-Audit aktuell mit 0 Punkten.",
            "status": "Entwurf fachlich freigeben",
            "source": "SaferPage Scan-Evidenz"
        }
    ],
    "purposes": [
        "Unklar",
        "Werbung",
        "Drittanbieter-Einbindungen"
    ],
    "data_types": [],
    "cookies": [
        {
            "name": "_fbp",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Werbung",
            "lifetime": "mittel (89 Tage)",
            "provider": "Meta/Facebook",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "AF_SYNC",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "kurz (6 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "AMP_MKTG_f2ed568fb1",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (364 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "AMP_f2ed568fb1",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (364 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "_tt_enable_cookie",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (389 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "_ttp",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (389 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "afUserId",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (399 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "singular_device_id",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (364 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "ttcsid",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (389 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "ttcsid_CIV36NBC77U0GPJ5C03G",
            "party": "First-Party",
            "domain": "studysmarter.de",
            "secure": "nein",
            "purpose": "Unklar",
            "lifetime": "lang (389 Tage)",
            "provider": "studysmarter.de",
            "same_site": "Lax",
            "pre_consent": "ja"
        },
        {
            "name": "_ttp",
            "party": "Drittanbieter",
            "domain": "tiktok.com",
            "secure": "ja",
            "purpose": "Unklar",
            "lifetime": "lang (389 Tage)",
            "provider": "tiktok.com",
            "same_site": "None",
            "pre_consent": "ja"
        }
    ],
    "third_parties": [
        {
            "host": "website-cdn.studysmarter.de",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "website-cdn.studysmarter.de",
            "request_count": "43",
            "privacy_relevant": "nein"
        },
        {
            "host": "analytics.tiktok.com",
            "purpose": "Social/Tracking",
            "category": "social_tracking",
            "provider": "TikTok",
            "request_count": "6",
            "privacy_relevant": "ja"
        },
        {
            "host": "bat.bing.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "bat.bing.com",
            "request_count": "6",
            "privacy_relevant": "nein"
        },
        {
            "host": "api.lab.amplitude.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "api.lab.amplitude.com",
            "request_count": "4",
            "privacy_relevant": "nein"
        },
        {
            "host": "apis.google.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "apis.google.com",
            "request_count": "4",
            "privacy_relevant": "nein"
        },
        {
            "host": "googletagmanager.com",
            "purpose": "Tag-Manager",
            "category": "tag_manager",
            "provider": "Google Tag Manager",
            "request_count": "3",
            "privacy_relevant": "ja"
        },
        {
            "host": "bat.bing.net",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "bat.bing.net",
            "request_count": "2",
            "privacy_relevant": "nein"
        },
        {
            "host": "connect.facebook.net",
            "purpose": "Social/Tracking",
            "category": "social_tracking",
            "provider": "Meta/Facebook",
            "request_count": "2",
            "privacy_relevant": "ja"
        },
        {
            "host": "pagead2.googlesyndication.com",
            "purpose": "Werbung",
            "category": "advertising",
            "provider": "Google AdSense",
            "request_count": "2",
            "privacy_relevant": "ja"
        },
        {
            "host": "region1.google-analytics.com",
            "purpose": "Analytics",
            "category": "analytics",
            "provider": "Google Analytics",
            "request_count": "2",
            "privacy_relevant": "ja"
        },
        {
            "host": "sr-client-cfg.amplitude.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "sr-client-cfg.amplitude.com",
            "request_count": "2",
            "privacy_relevant": "nein"
        },
        {
            "host": "wa.onelink.me",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "wa.onelink.me",
            "request_count": "2",
            "privacy_relevant": "nein"
        },
        {
            "host": "accounts.google.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "accounts.google.com",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "analytics-ipv6.tiktokw.us",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "analytics-ipv6.tiktokw.us",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "api2.amplitude.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "api2.amplitude.com",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "app.termly.io",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "app.termly.io",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "facebook.com",
            "purpose": "Social/Tracking",
            "category": "social_tracking",
            "provider": "Meta/Facebook",
            "request_count": "1",
            "privacy_relevant": "ja"
        },
        {
            "host": "sdk-api-v1.singular.net",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "sdk-api-v1.singular.net",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "wa.appsflyersdk.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "wa.appsflyersdk.com",
            "request_count": "1",
            "privacy_relevant": "nein"
        },
        {
            "host": "websdk.appsflyer.com",
            "purpose": "Sonstige",
            "category": "other",
            "provider": "websdk.appsflyer.com",
            "request_count": "1",
            "privacy_relevant": "nein"
        }
    ],
    "storage": {
        "local_storage_total": 19,
        "session_storage_total": 7,
        "tracking_key_hints": [
            "consent"
        ]
    },
    "missing_items": [
        "Drittanbieter mit Anbietername, Zweck, Rechtsgrundlage, Empfänger und Transferhinweisen dokumentieren.",
        "LocalStorage und SessionStorage zusätzlich zur Cookie-Tabelle inventarisieren.",
        "Consent-Status technisch nachvollziehbar machen, z. B. über CMP-/TCF- oder gleichwertige Consent-Signale."
    ],
    "operator_review_checklist": [
        {
            "id": "controller",
            "label": "Verantwortlichen und Datenschutzkontakt ergänzen",
            "responsibility": "Datenschutz/Legal",
            "required": true
        },
        {
            "id": "legal_basis",
            "label": "Rechtsgrundlagen je Zweck prüfen",
            "responsibility": "Datenschutz/Legal",
            "required": true
        },
        {
            "id": "retention",
            "label": "Speicher- und Löschfristen ergänzen",
            "responsibility": "Fachbereich/IT",
            "required": true
        },
        {
            "id": "vendors",
            "label": "Empfänger, AVV/DPA, Rolle und Transfergrundlage abgleichen",
            "responsibility": "Legal/Procurement",
            "required": true
        },
        {
            "id": "consent",
            "label": "CMP, Ablehnen, Widerruf und GPC gegen Technik testen",
            "responsibility": "Marketing/IT",
            "required": true
        },
        {
            "id": "versioning",
            "label": "Version, Änderungsdatum, Freigabe und Re-Scan dokumentieren",
            "responsibility": "Datenschutz/Content",
            "required": true
        }
    ],
    "publication_policy": {
        "audience": "Website-Besucher im deutschsprachigen Raum",
        "tone": "klar, konkret, ohne juristische Floskeln wo möglich",
        "do_not_publish_without_review": true,
        "review_note": "Automatisch abgeleiteter Entwurf. Betreiber muss Identität, Zwecke, Rechtsgrundlagen, Speicherfristen und Empfänger fachlich freigeben."
    },
    "disclaimer": "Automatisch aus einem passiven technischen Scan abgeleitet. Keine Rechtsberatung; Inhalte vor Veröffentlichung fachlich und rechtlich prüfen."
}