DLTD Privacy Label

Shein

shein.com
D
3/5
Privacy checks passed
shopping

This site leans hard on your data.

3/5 checks · 25 third parties · 20 cookies · capped at D

Grade capped · Documented invasive data practices

Regulators have penalized and sued Shein over its data practices, including a major French fine for unlawful tracking and a state lawsuit over undisclosed data exposure. A clean marketing site can’t change that — and a homepage scan can’t see what the app does once you log in — so this grade can’t rise above a D.

Why this grade is capped · sourced, not vibes

€150M cookie fineSerious

France's privacy regulator fined Shein 150 million euros in 2025 for dropping advertising trackers on visitors even after they refused consent.

Source: CNIL decision against Infinite Styles Services (SHEIN), Sept 2025

Hid a 39M-user breachSerious

Shein's owner paid $1.9 million in 2022 after a breach exposed 39 million accounts and the company downplayed how many people were affected.

Source: New York AG settlement with Zoetop (SHEIN/ROMWE owner), Oct 2022

What Shein does with your data

A crowd of outside companies loads with the page — each one can log that you showed up.

Contacts 25 third-party domains on load

It drops third-party cookies that can trail you from one site to the next.

Sets 20 third-party cookies

Your connection is encrypted, so others on your network can’t read what you send.

Serves over HTTPS and enforces it (HSTS)

None of the trackers it contacts are on our high-risk watchlist.

Contacts no high-risk / adversarial-state domains

It isn’t a registered data broker.

Not a registered data broker

Last scored 6/3/2026

3 of 3 free lookups left this week. DLTD members get unlimited scores — plus we actually remove you from the brokers behind the worst grades.

Get unlimited scores