methodology / Privacy & Compliance / #51
Cookie scan — actual cookies set on first load
live factor #51 · Privacy & Compliance · scoring impl: implemented · weight 0.7%
What we measure
Many sites set tracking cookies before the visitor accepts the banner. That's a GDPR violation — under the law, no non-essential cookies can be set until the visitor opts in.
How to improve your score
Configure your CMP to block analytics, ad, and marketing cookies until consent is granted. Most CMPs offer this as a one-toggle setting.
Data source
Data source for this factor is not yet documented.
Implementation notes
Headless Chromium visit, log all `Set-Cookie` headers received before any user interaction.
Scoring
Scoring formulas are versioned with the methodology. The current method (v1.1.0) maps raw measurements to pass, warn, fail. Factor weights determine how much each contributes to the composite — see the methodology index for the full table.
Version history
| Version | Change | Date |
|---|---|---|
| v1.1.0 | Factor introduced. Status: live. Scoring impl: implemented. | 2026-04-25 |