Serjetà: GħoljaResponsabbli: Admin CMPĦin għat-tiswija: 1-2 h
Cookies u tracking qabel il-kunsens
Ikkoreġi scripts ta' analytics, marketing u third-party li jattivaw qabel il-viżitatur jieħu deċiżjoni dwar il-kunsens.
Tkopri: pre_consent_analytics_cookie, pre_consent_marketing_cookie, pre_consent_tracker
Għaliex dan hu importanti
Skont ePrivacy u l-prinċipji tal-GDPR, ħażna u tracking mhux essenzjali jeħtieġu kunsens qabel l-attivazzjoni. It-tagħbija ta' scripts ta' analytics jew marketing qabel l-għażla tal-utent toħloq riskju immedjat ta' konformità.
Kif tivverifikah manwalment
- Open the site in a fresh private browsing window and do not interact with the banner.
- Check the Network panel for analytics, ads, heatmap, chat, or social pixel requests before consent.
- Inspect Application > Cookies and confirm whether non-essential cookies appear pre-consent.
Kawżi tipiċi
- GTM tags fire on page view without consent conditions.
- CMP loads after analytics tags instead of before them.
- Scripts are embedded directly in templates and bypass CMP blocking.
Korrezzjoni f'GTM
- Enable Google Consent Mode v2 with default denied states for ad_storage, analytics_storage, ad_user_data, and ad_personalization.
- Update tag firing rules so analytics and marketing tags only fire when consent state is granted.
- Use consent initialization events before any marketing or analytics trigger paths.
Korrezzjoni f'WordPress jew plugins CMP
- Install and configure CookieYes or Complianz with blocking enabled for analytics and marketing categories.
- Map services to categories and verify scripts are blocked pre-consent.
- Clear cache or CDN and retest in an incognito browser session.
Korrezzjoni ġenerika għall-iżviluppaturi
- Block third-party script execution until consent is granted.
- Store pending scripts with a consent category marker.
- On consent grant, activate only scripts matching accepted categories.
<script
type="text/plain"
data-consent="analytics"
data-src="https://www.googletagmanager.com/gtag/js?id=G-XXXXXXX">
</script>Kif tikkonferma li l-korrezzjoni taħdem
- Re-run the scan in a fresh session and confirm the finding disappears.
- Verify that no non-essential cookies are set before interaction.
- Verify that analytics and marketing requests only begin after opt-in.
Pass li jmiss
Erġa' mexxi skannjar wara deploy biex tikkonferma li nbidel l-imġiba reali runtime u mhux biss it-test tal-banner.