What loads on your site before anyone clicks Accept?
Enter your domain. We'll list every cookie and tracker that fires before consent, identify the CMP you're running, and show where you're exposed under UK/EU rules.
Free · no login · we load your site in a real browser and record what fires before consent.
Most checkers read the page. Ours watches it.
- We record cookies actually written to the browser before consent — _ga, _gid, _gcl_au, _fbp, Hotjar, Clarity and more — not a static list scraped from your privacy page.
- We fingerprint your CMP (Cookiebot, OneTrust, Usercentrics, Complianz, Borlabs, CookieYes and others) and tell you whether it's actually enforcing.
- We separate what fires before consent from what fires after, so you see the real exposure.
- Since DUAA (Feb 2026), UK cookie fines reach £17.5m or 4% of turnover — this shows where you stand.
Having a banner and having a working banner are different. In our UK clinic probe, 100% of the sites leaking data pre-consent already had a CMP installed. The banner was there; it just wasn't blocking anything before the user chose.
Analytics and advertising cookies (like _ga, _gcl_au, _fbp) set before consent are the exposure. Strictly-necessary cookies are fine. Our report separates them so you're not chasing false positives.
We keep the scan result to generate your report. The free summary needs no email; the full report is emailed on request, and we never use open-tracking pixels.
Found something you don't like?
We fix exactly this — consent enforcement, Consent Mode v2, and server-side tracking. Book a call or start with a scan.