Private beta for EU websitesGDPR + ePrivacy baseline

EU cookie consent,without the compliance guesswork

Scan cookies and trackers, stop optional technologies before consent and keep a clear record of every visitor choice.

Built for EU-facing e-commerce and SaaS teams managing one or more websites. Google Consent Mode v2 included.

EU consent workspace
example-store.eu · last scan 8 min ago

18

technologies detected

11

blocked before consent

4

consent purposes

Consent readiness

6 / 7 checks
Prior blocking activeReject on first layerGranular purposesWithdrawal entry point

Latest consent event

Custom selection

Analytics allowed · Advertising denied

NecessaryAlways active
FunctionalDenied
AnalyticsGranted
AdvertisingDenied
Prior blocking
Consent records
Consent Mode v2
GDPR and ePrivacy baseline

Product

One control layer from discovery to consent evidence

The workflow connects the technical steps that often live in separate tools: finding trackers, controlling when they run, collecting a choice and recording what happened.

Prior consent and script control

Hold non-essential scripts, iframes and cookies until the visitor makes a choice.

Analytics, advertising and functional categories

Cookie and tracker inventory

Scan pages, identify third-party technologies and keep the inventory ready for review.

Manual and scheduled scans

Consent records

Record the selected categories, time and configuration context behind each decision.

Exportable evidence trail

Google Consent Mode v2

Send consent updates for analytics and advertising storage, user data and personalisation.

Default denied, updated after choice

EU consent framework

Designed around a real choice, not a decorative banner

Built around the core consent principles reflected in GDPR, the ePrivacy framework and European regulator guidance.

Review the EU framework

01

No non-essential storage before consent

The default state remains denied for optional categories until a visitor actively opts in.

02

Reject is available on the first layer

Accept all, reject all and manage choices are presented together without a hidden refusal path.

03

Purpose-based, granular controls

Visitors can decide separately for analytics, functionality and advertising.

04

Consent can be changed later

The preference centre can be reopened so withdrawing consent is as practical as granting it.

05

Clear records for accountability

The service stores a pseudonymous visitor reference and the categories selected at that moment.

06

Country-level review stays visible

GDPR is EU-wide, while ePrivacy rules and regulator expectations still vary between Member States.

Consent management is one part of a wider privacy programme. Review the full compliance scope

Interactive preview

Test the decision path your visitors will see

Try the first layer and purpose controls. Optional categories start off, Reject all is immediately available and necessary storage remains clearly separated.

eu-demo.exampleLive preview

Your privacy choices

We use optional cookies to measure performance, improve features and personalise advertising. You can accept, reject or choose purposes. Strictly necessary cookies are always active.

Implementation

A reviewable path from scan to production

Consent management is operational work, not a one-off banner task. The workflow keeps discovery, configuration and verification connected.

01

Discover

Scan the domain, review cookies and third-party scripts, then assign each technology to a purpose.

02

Configure

Set the notice text, equal choice actions, purpose controls, branding and policy destination.

03

Deploy and verify

Install one script, confirm prior blocking and test consent updates in your tag and analytics stack.

Google Tag Managergtag.jsWordPressWebflowCustom HTML

Built for the operating owner

For the person accountable for consent across a growing web portfolio.

Consentory is designed first for digital, privacy and compliance leads at EU-facing e-commerce and SaaS businesses. They set the policy and review evidence; a developer installs and validates the technical layer.

Primary fit

EU e-commerce and SaaS teams managing 1-15 customer-facing websites.

Extended fit

Agencies and multi-brand teams that need portfolio reporting and repeatable deployment.

Illustrative private-beta scenario

A multilingual EU storefront replaces fragmented consent controls.

8

representative pages reviewed

17

cookies and trackers inventoried

4

purpose categories configured

The scenario models a mid-market retailer serving Germany, France and Poland. The team maps analytics, embedded media and advertising tools, publishes EN/DE/FR choices, verifies that optional scripts remain blocked before consent and exports a versioned consent record for review.

This is an illustrative workflow, not a customer endorsement or measured production result.

EU operating conditions

A CMP supports compliance. It does not replace governance.

The service is the technical consent layer. Your organisation remains responsible for the processing decisions behind it.

What the platform handles

  • Tracker and cookie discovery
  • Purpose-level visitor choices
  • Prior blocking rules for known technologies
  • Consent Mode v2 updates
  • Consent event records

What the controller must own

  • Legal bases and final notice wording
  • Vendor and sub-processor due diligence
  • Retention and deletion rules
  • International transfer safeguards
  • Member State and sector-specific review

What changes across the EU

  • National ePrivacy implementation
  • Regulator expectations and enforcement
  • Language and accessibility requirements
  • Rules for children and sensitive sectors
  • Ad-tech framework requirements

EU FAQ

The questions that should be answered before deployment

Straight answers on consent, analytics and responsibility. Final decisions should be validated for the countries and processing activities in scope.

Not necessarily. A consent layer is generally needed when a site stores or accesses information on a visitor's device for purposes that are not strictly necessary. The ePrivacy rules govern that device access, while GDPR applies where personal data is processed. The exact implementation should be checked against the law and regulator guidance in each target country.

Private beta

Prepare your consent layer for EU visitors.

Send us your domain and target countries. We will map the technical setup and identify the legal inputs your team still needs to supply.

Request beta access

No card required. Access is confirmed by the Consentory team.