REGULATORY JURISDICTIONS · 6 GLOBAL LAWS

One consent ledger. Every major privacy law.

Replace separate regional banners with one engine that applies the right statutory notice per visitor and seals every choice into a tamper-evident record across DPDP, GDPR, CCPA/CPRA, LGPD, PDPA and PIPEDA.

What is multi-law consent management?

Multi-law consent management means collecting, storing and proving user consent so that one website or app satisfies several privacy laws at once. ConsentPlix does this with a single widget and an append-only ledger: each visitor sees the notice their law requires, and each choice becomes a pseudonymous, Merkle-sealed receipt you can verify later.

The laws side by side

A plain-language summary of consent expectations. Always confirm specifics with your legal counsel.

  • DPDP Act 2023

    India

    Consent model

    Free, specific, informed, unambiguous consent with a clear affirmative action

    Key rights

    Access, correction, erasure, grievance, nomination

  • GDPR / UK GDPR

    EU, EEA, UK

    Consent model

    Opt-in consent for non-essential cookies and processing; withdrawal as easy as giving

    Key rights

    Access, rectification, erasure, portability, objection

  • CCPA / CPRA

    California, US

    Consent model

    Notice at collection and opt-out of sale or sharing; honour Global Privacy Control

    Key rights

    Know, delete, correct, opt out, limit sensitive data use

  • LGPD

    Brazil

    Consent model

    Consent as one of several legal bases; must be specific and revocable

    Key rights

    Confirmation, access, correction, deletion, portability

  • PDPA

    Singapore

    Consent model

    Consent with notification of purposes; deemed consent in defined cases

    Key rights

    Access, correction, withdrawal of consent

  • PIPEDA

    Canada

    Consent model

    Meaningful consent appropriate to the sensitivity of the data

    Key rights

    Access, challenge accuracy, withdrawal of consent

GLOBAL PRIVACY REGIMES

Unified statutory compliance for every major privacy law

From India’s DPDP mandate to Europe’s GDPR and California’s CCPA opt-out rules, our lightweight SDK enforces region-specific consent standards at the edge, compiling every decision into a single verifiable ledger.

REGION-AWARE NOTICE DISPATCH
Flagship Mandate · Section 6
AUDIT-READY

India DPDP Act 2023

Unambiguous, affirmative notice presentation across all 22 Eighth Schedule official languages. Verifiable 1-click consent withdrawal mechanism, zero dark patterns, and a built-in grievance and rights request workflow.

22 LANGDPDP §6(1)
PRIOR EXPLICIT OPT-IN REQUIREDDPDP Specs
European Union · Art. 7
TCF 2.2 SIGNALS

EU GDPR & ePrivacy

Granular purpose categorization, automatic client-side script interception before any cookie execution, and built-in Google Consent Mode v2 signal dispatch.

HELDTCF 2.2
SCRIPT INTERCEPTOR ACTIVEGDPR Specs
California, USAGPC DETECT

CCPA / CPRA

Automatic Global Privacy Control (GPC) signal detection, itemized "Do Not Sell or Share My Info" opt-out receipts with an audit-ready evidence trail.

GPC opt-outSIGNAL: ON
OPT-OUT FRAMEWORKDetails
United KingdomICO RULES

UK GDPR / PECR

Explicit cookie consent aligned with UK Information Commissioner’s Office guidance. Purpose switchboards and non-essential tracker quarantine.

STRICT ICO COMPLIANCEDetails
Brazil · Latin AmericaANPD ART. 7

Brazil LGPD

National Data Protection Authority (ANPD) governance, legal basis attribution (Art. 7), Portuguese notices, and designated DPO receipt logging.

ANPD Art. 7DPO: ASSIGNEDPROOF: VERIFIED
LEGAL BASIS ANCHOREDDetails
Region-aware notice resolution

One Autonomous SDK. Every Country Served Automatically.

You deploy one sub-12KB script. When a visitor arrives from Mumbai, Berlin, California, London, or São Paulo, region detection selects and renders the exact statutory notice required by local privacy regulators.

P99 < 15MS

How ConsentPlix applies each law

  1. 01

    Detect the visitor region

    The widget resolves which law applies to each visitor and loads the matching notice, defaults and language from 22 supported languages.

  2. 02

    Collect a granular choice

    Purposes are shown per category. Non-essential tags stay blocked until the visitor makes an affirmative choice where the law requires opt-in.

  3. 03

    Seal the record

    Each choice is written to an append-only ledger as a pseudonymous record and sealed into a Merkle tree, producing a tamper-evident receipt.

  4. 04

    Serve rights and audits

    Withdrawals and data-principal requests flow through the rights portal and webhooks; receipts can be exported for an audit-ready trail.

Common questions

Does one configuration cover every law?

One consent engine covers every law, but notices and defaults differ by region. ConsentPlix applies the right policy per visitor, so you maintain one integration instead of separate banners.

Is ConsentPlix legal advice?

No. ConsentPlix provides the infrastructure to collect, store and prove consent. Your legal team still decides purposes, notices and retention for your business.

Where is consent data stored?

Records are stored by default in AWS Mumbai. Only pseudonymous consent records are kept, not the personal data you process in your own systems.

What makes a receipt tamper-evident?

Each record is hashed into a Merkle tree. Any later change to a record would change the root, so an altered entry is detectable during verification.

GLOBAL PRIVACY MAPPING

See your compliance rules mapped to your site

In a 30-minute technical walkthrough, we scan your domains and preview the precise statutory notices each of your visitor jurisdictions will receive.