biosalines.com
Last scanned August 14, 2026
A cookie scan of biosalines.com conducted on August 14, 2026 found 11 cookies and 27 third-party tracking requests. The assessment covered 10 pages across 10 unique page templates. The site relies on Cookiebot as its consent management platform. Neither IAB TCF v2.3 nor Google Consent Mode v2 was observed on our check. 27 third-party requests were detected from 14 vendors.
Consent behaviour grade
16 / 100
This site set multiple tracking cookies before the visitor consented. Under ePrivacy Article 5(3), these require prior consent.
Automated point-in-time check of the scanned pages; not legal advice. How our check works.
Consent enforcement level
-
1
Nothing non-essential runs before consent is given. This is the strict reading of ePrivacy Article 5(3) and the strongest position.
-
2
Google tags load with storage defaulted to denied and send only cookieless pings before consent. Permitted in Google's model, but not the strict reading of Article 5(3).
-
3
Google Consent Mode v2 restrains Google tags, but other trackers or cookies were observed before consent.
-
4
Runs before consent This site
A consent banner is present but does not restrain tracking. Trackers and cookies run before the visitor consents.
Consent banner as encountered
No Reject option on the first layer; declining requires extra steps.
Load timeline before consent
Milliseconds from navigation start until each request fired or each cookie was set.
and 13 more
Observed before consent
Cookies set before consent (11)
-
_fbpmarketing · Facebook -
_gaanalytics · Google Analytics -
_ga_30E9HYDZFHanalytics · Google Analytics -
_gcl_auanalytics · Google Analytics -
_hjSession_6701054analytics · Hotjar -
_hjSessionUser_6701054analytics · Hotjar -
_shopify_essentialfunctional · Shopify -
cart_currencyfunctional · E-commerce -
localizationfunctional · Shopify -
cbuid_metaunknown -
sib_cuidunknown
Tracking requests before consent (16)
- api.config-security.com api.config-security.com set by biosalines.com/nos-valeurs · at 299 ms
- ContentSquare static.hotjar.com set by www.googletagmanager.com/gtm.js · at 533 ms
- ContentSquare content.hotjar.io set by script.hotjar.com/modules.75bf3488a101739acfe9.js · at 911 ms
- ContentSquare vc.hotjar.io set by script.hotjar.com/modules.75bf3488a101739acfe9.js · at 1292 ms
- Google LLC www.googletagmanager.com set by biosalines.com/nos-valeurs · at 299 ms
- Google LLC region1.analytics.google.com set by biosalines.com/s979a3e2fw137e9400p4daec9d4mf64d2306m.js · at 970 ms
- Shopify otlp-http-production.shopifysvc.com set by biosalines.com/b979a3e2fw137e9400p4daec9d4mf64d2306m.js · at 442 ms
- Shopify Inc. monorail-edge.shopifysvc.com set by biosalines.com/b979a3e2fw137e9400p4daec9d4mf64d2306m.js · at 605 ms
- www.google.com www.google.com set by biosalines.com/s979a3e2fw137e9400p4daec9d4mf64d2306m.js · at 1025 ms
- Brevo sibautomation.com set by plugin.brevo.com/script · at 783 ms
- Google LLC www.google.com set by biosalines.com/s979a3e2fw137e9400p4daec9d4mf64d2306m.js · at 1025 ms
- Klaviyo Inc. static.klaviyo.com at 282 ms
- and 4 more
How we tested
Browser: Chrome/150.0.7871.124 · Scan origin: EU · Viewport: 1440×900 · Checked: 14 Aug 2026 11:10
Cookies
11
Third-party
0
Trackers
27
Vendors
14
Consent banner
Cookiebot
Scans
1
What this setup is missing
- Script blocking is manual. Each script must be tagged by hand, and untagged scripts run before consent.
- Google tags were observed, but Google Consent Mode v2 was not detected.
- No Reject option on the first layer; declining requires extra steps.
Compliance by audience
European Union
✗ Not metGDPR + ePrivacy · Prior consent (opt-in)
United Kingdom
✗ Not metUK GDPR + PECR · Consent-based
United States
✓ Meets this modelCCPA/CPRA + state laws · Notice & opt-out
Canada
! Needs attentionPIPEDA + Québec Law 25 · Consent-based
Brazil
! Needs attentionLGPD · Consent-based
Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.
Connection security
HTTPS supported
✓Redirects HTTP to HTTPS
✓HSTS
✓Content Security Policy
✓
Third-Party Trackers
27 requests detected from 14 vendors: api.config-security.com, ContentSquare, Google LLC, Shopify, Shopify Inc....
Third-Party Trackers
27 requests detected from 14 vendors: api.config-security.com, ContentSquare, Google LLC, Shopify, Shopify Inc....
Analytics
9
Marketing
5
Necessary
10
Functional
0
Other
3
| Vendor | Category | Type | Domain |
|---|---|---|---|
| api.config-security.com before consent | Analytics | xhr | api.config-security.com |
| ContentSquare before consent ContentSquare tracker domain (source: Disconnect.me, category: Analytics) | Analytics | script | static.hotjar.com |
| ContentSquare before consent ContentSquare tracker domain (source: Disconnect.me, category: Analytics) | Analytics | script | content.hotjar.io |
| ContentSquare before consent ContentSquare tracker domain (source: Disconnect.me, category: Analytics) | Analytics | script | vc.hotjar.io |
| Google LLC before consent Google Tag Manager | Analytics | script | www.googletagmanager.com |
| Google LLC before consent Google tracker domain (source: Disconnect.me, category: Analytics) | Analytics | script | region1.analytics.google.com |
| Shopify before consent Shopify tracker domain (source: Disconnect.me, category: Content) | Analytics | script | otlp-http-production.shopifysvc.com |
| Shopify Inc. before consent Shopify analytics | Analytics | pixel | monorail-edge.shopifysvc.com |
| www.google.com before consent | Analytics | fetch | www.google.com |
| Brevo before consent Brevo tracker domain (source: Disconnect.me, category: Advertising) | Marketing | script | sibautomation.com |
| Google LLC before consent Google Ads | Marketing | script | www.google.com |
| Klaviyo Inc. before consent Klaviyo email marketing | Marketing | script | static.klaviyo.com |
| Meta Platforms, Inc. before consent Facebook SDK / Pixel | Marketing | script | connect.facebook.net |
| Meta Platforms, Inc. before consent Facebook tracking pixel | Marketing | pixel | www.facebook.com |
| Amazon Amazon tracker domain (source: Disconnect.me, category: Content) | Necessary | script | d3k81ch9hvuctc.cloudfront.net |
| Cloudflare Inc. Cloudflare CDNJS | Necessary | script | cdnjs.cloudflare.com |
| Cybot A/S (Cookiebot) Cookiebot consent management | Necessary | script | consent.cookiebot.com |
| Google LLC Google Fonts stylesheet | Necessary | script | fonts.googleapis.com |
| Google LLC Google tracker domain (source: Disconnect.me, category: Content) | Necessary | script | www.google.dk |
| Google LLC Google Fonts files | Necessary | script | fonts.gstatic.com |
| Judge Judge tracker domain (source: Disconnect.me, category: Content) | Necessary | script | api.judge.me |
| Shopify Shopify tracker domain (source: Disconnect.me, category: Content) | Necessary | script | shop.app |
| Shopify Shopify tracker domain (source: Disconnect.me, category: Content) | Necessary | script | forms.shopifyapps.com |
| Shopify Inc. Shopify platform | Necessary | script | cdn.shopify.com |
| Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) | Unknown | script | googleads.g.doubleclick.net |
| Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) | Unknown | script | stats.g.doubleclick.net |
| UserCentrics UserCentrics tracker domain (source: Disconnect.me, category: ConsentManagers) | Unknown | script | consentcdn.cookiebot.com |
Scan history
One completed scan: cookies and trackers from the scan on August 14, 2026.
Recent scans
| August 14, 2026 | 11 27 |
More Cookie Compliance Reviews
One moment, please...
biosintel.com
One moment, please...
biosinhron.com
One moment, please...
biosindustry.com
Home | Biogen
biosimilarsmedicalacademy.com
Security Verification
biosilico.com
One moment, please...
biosikelia.com
Security Verification
bioshieldsystems.com
Impressum - Bios Farms Distribution
biosfarms.com
Is biosalines.com your website?
Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.