Person typing on a laptop, working on an online store

Website Requirements for Online Shops

Order buttons, withdrawal rights, price display rules, payment security. Running a webshop in the EU comes with legal requirements that many shop owners miss.

Common issues for online shops

Order button text matters

EU law requires your "Buy" button to clearly indicate a payment obligation. "Order with obligation to pay" or similar wording is required in many countries.

14-day withdrawal right

Customers can return most products within 14 days without giving a reason. Your website must clearly explain this before checkout.

Price display rules

Prices must include VAT. Discount claims must show the lowest price from the past 30 days (Omnibus Directive).

Product photos and copyright

Using manufacturer photos without permission, or stock photos of products you sell, can trigger copyright claims.

4

Key issues

4

Areas checked

11

Guides

Real-world enforcement

The EU Consumer Protection Cooperation network (CPC) took coordinated action against 118 online shops in 2024 for violating the Omnibus Directive pricing rules — displaying fake discounts without showing the lowest price from the past 30 days. In Germany, competitors regularly send Abmahnungen to webshops with order buttons that don't meet requirements, costing €500–€1,500 per letter.

Official resources

We run the same complete check on every website. The guides below highlight which issues come up most often for each type of business.

Guides for online shops

"Buy Now" vs "Order": Why Your Button Text Matters Legally

EU law requires specific wording on order buttons. The wrong text could make your orders non-binding. Here's what your checkout button must say.

EU 14-Day Right of Withdrawal: Rules, Exceptions & Refunds

EU 14-day right of withdrawal explained: when it starts, 8 exemptions, 14-day refund deadline, 12-month penalty for not informing buyers.

Cookie Banner Requirements Under EU Law (2026 Guide)

Cookie banner requirements in the EU 2026: reject equal to accept, no dark patterns, prior consent. EDPB Guidelines 05/2020 explained.

Does the European Accessibility Act Apply to Your Business?

The EAA became enforceable in June 2025. Find out if it applies to your business, what it requires and what happens if you don't comply.

GDPR Compliance Checklist for Your Website (2026)

A practical GDPR checklist for small business websites. Check cookies, privacy policy, consent forms, and tracking scripts.

ODR Platform Abolished: Remove the Link From Your Website

ODR platform abolished July 2025. If your website still links to the EU Online Dispute Resolution platform, here is what to do.

Website Security Checklist: 10 Things to Check Today

A practical security checklist for small business websites. 10 things you can check and fix today without technical expertise.

GDPR for accountants in the UK: ICAEW, ACCA & AML

GDPR for UK accountants. ICAEW/ACCA/AAT standards, MLR 2017 anti-money laundering, client confidentiality, ICO breach notification, and website rules.

GDPR for estate agents in the UK: Propertymark & AML

GDPR for UK estate agents. Propertymark, MLR 2017 anti-money laundering, viewings, photography, tenancy data, ICO breach notification, and website rules.

AI-Built Website Liability Under UK Law

ICO enforces UK GDPR, PECR and Equality Act against the site owner, not Cursor, Lovable or the developer. EU PLD doesn't apply post-Brexit.

AI-Generated Code and Open-Source Licences (UK)

Copilot or Cursor wrote GPL code into your site. UK Consumer Protection Act, not the EU PLD. What Doe v. GitHub decided and what to do about it.

Check your online shops website now

150+ checks across GDPR, copyright, accessibility, security and more. No account needed.

I understand this is a technical scan, not legal advice, and I accept the Terms.

Scan for: