Idi na sadržaj
Ozbiljnost: VisokaVlasnik: RazvojVrijeme za ispravak: 1-3 h

Third-party zahtjevi prije privole

Zaustavite opcionalne dobavljače da rade mrežne pozive prije nego što posjetitelj odluči hoće li ih dopustiti.

Obuhvaća: pre_consent_third_party_request, third_party_data_flow_before_consent

Zašto je ovo važno

Čak i kada su cookies blokirani, third-party zahtjevi i dalje mogu prenositi IP adrese, identifikatore ili metapodatke stranice prije korisničkog izbora. To i dalje stvara rizik usklađenosti.

Kako to ručno provjeriti

  1. Load the page in incognito and inspect third-party requests before any consent action.
  2. Group requests by provider: analytics, ads, chat, video, fonts, tag manager, consent platform.
  3. Check whether requests are essential or optional for baseline site functionality.

Tipični uzroci

  • Third-party scripts load from the page template before the CMP decides.
  • Optional widgets self-initialize on page load.
  • Consent only blocks cookies but not network requests or remote script fetches.

Ispravak u GTM-u

  1. Move optional vendor tags behind consent conditions instead of firing on all page views.
  2. Audit custom HTML tags that pull remote scripts directly.
  3. Separate essential operational tags from analytics and marketing vendors.

Ispravak u WordPressu ili CMP dodacima

  1. Review theme, plugin, and page-builder integrations that inject third-party widgets globally.
  2. Disable auto-embed or auto-load features for optional tools until consent is granted.
  3. Retest pages after cache purge and plugin optimization layers are cleared.

Opći developerski ispravak

  1. Defer optional third-party scripts until consent is granted.
  2. Lazy-load integrations on user action where possible.
  3. Replace non-essential always-on embeds with click-to-load placeholders.

Kako potvrditi da ispravak radi

  • Confirm that only essential third-party requests remain before consent.
  • Accept optional consent and verify optional vendors load only afterward.
  • Run a fresh scan and compare the third-party request inventory.

Sljedeći korak

Pokrenite novo skeniranje nakon deploya kako biste potvrdili da se promijenilo stvarno runtime ponašanje, a ne samo tekst bannera.

Third-party zahtjevi prije privole — GDPR Fix Guide