πͺ Free Β· no signup Β· no app install Β· read-only
Is your cookie banner actually stopping the trackers?
Most Shopify stores install a consent banner and assume the job is done. We load your storefront as a first-time EU visitor and look at what fires and what cookies land before anyone clicks anything.
Based on publicly available data only. Informational, not legal advice.
What this checks
- Whether a consent banner exists at all, and which vendor it is
- Tracking cookies set on the very first request, before any consent
- Analytics and ad pixels hard-coded into the theme (these bypass the banner)
- Google Consent Mode v2 defaults β present, and set to denied?
- Whether the store uses Shopify's Customer Privacy API to gate pixels
- A reachable privacy policy
FAQ
Does this prove I'm GDPR compliant?
No. It shows evidence of specific technical leaks that regulators and complainants look for. Compliance also depends on your data processing, contracts and disclosures. This is information, not legal advice.
Why do some checks say 'could not tell'?
Because some banners are injected by JavaScript after load, and a static fetch cannot see them. We would rather say we could not tell than invent a pass or a fail.
Want the wiring fixed properly?
We are a Shopify studio. The audit is free; the fix is yours to make β or ours to ship.