Skip to main content
carolynspring.com

carolynspring.com

https://carolynspring.com

Last scanned August 20, 2026

A cookie scan of carolynspring.com performed on August 20, 2026 found 17 cookies and 17 third-party tracking requests. The assessment covered 10 pages across 10 unique page templates. The site relies on Cookiebot as its consent management platform with Google Consent Mode v2; IAB TCF v2.3 was not observed. 17 third-party requests were detected from 11 vendors.

Cookies

17

Third-party

2

Trackers

17

Vendors

11

Consent banner

Cookiebot

Scans

1

What this setup is missing

  • Script blocking is manual. Each script must be tagged by hand, and untagged scripts run before consent.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

✓ Meets this model

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

Redirects HTTP to HTTPS

HSTS

Content Security Policy

Cookies

17 cookies detected: 4 necessary, 8 analytics, 2 marketing, 2 third-party

Total

17

Necessary

4

Functional

2

Analytics

8

Marketing

2

Unknown

1

2 third-party cookies detected

Third-party cookies require explicit user consent under GDPR/ePrivacy.

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
sbjs_current before consent .carolynspring.com Analytics WooCommerce Session 1st
sbjs_current_add before consent .carolynspring.com Analytics WooCommerce 180 d 1st
sbjs_first before consent .carolynspring.com Analytics WooCommerce 180 d 1st
sbjs_first_add before consent .carolynspring.com Analytics WooCommerce 180 d 1st
sbjs_migrations before consent .carolynspring.com Analytics WooCommerce 180 d 1st
sbjs_session before consent .carolynspring.com Analytics WooCommerce Expired 1st
sbjs_udata before consent .carolynspring.com Analytics WooCommerce Session 1st
tk_r3d before consent .carolynspring.com Analytics WordPress 3 d 1st
tk_ai before consent .carolynspring.com Functional WooCommerce / Jetpack 1.1 yr lifetime over 13 months 1st
tk_ai before consent www.carolynspring.com Functional WooCommerce / Jetpack 365 d 1st
tk_lr before consent .carolynspring.com Marketing WordPress 365 d 1st
tk_or before consent .carolynspring.com Marketing WordPress 1.1 yr lifetime over 13 months 1st
__stripe_mid .www.carolynspring.com Necessary Stripe 365 d 1st
__stripe_mid .donate.stripe.com Necessary Stripe 365 d 3rd
__stripe_sid .www.carolynspring.com Necessary Stripe Expired 1st
__stripe_sid .donate.stripe.com Necessary Stripe Expired 3rd
mtk_src_trk before consent www.carolynspring.com Unknown - 180 d 1st

Browser storage set by the site

Name Domain Party
__wpDataTestLocalStorage set by c0.wp.com/data.min.js:3:22129 https://www.carolynspring.com 1st before consent

Third-Party Trackers

17 requests detected from 11 vendors: Google LLC, play.google.com, ReportGarden, Stripe Inc., Adobe Fonts...

Analytics

4

Marketing

0

Necessary

6

Functional

2

Other

5

Vendor Category Type Domain
Google LLC before consent Google Tag Manager Analytics script www.googletagmanager.com
play.google.com before consent Analytics fetch play.google.com
ReportGarden before consent ReportGarden tracker domain (source: Disconnect.me, category: Analytics) Analytics script secure.gaug.es
Stripe Inc. before consent Stripe fraud detection Analytics script m.stripe.com
Adobe Fonts before consent Adobe Fonts (Typekit): web font delivery Functional script use.typekit.net
Google LLC before consent Google reCAPTCHA bot protection Functional script www.google.com
Automattic Automattic tracker domain (source: Disconnect.me, category: Content) Necessary script c0.wp.com
Cybot A/S (Cookiebot) Cookiebot consent management Necessary script consent.cookiebot.com
Google LLC Google tracker domain (source: Disconnect.me, category: Content) Necessary script www.gstatic.com
Google LLC Google Fonts files Necessary script fonts.gstatic.com
Stripe Stripe tracker domain (source: Disconnect.me, category: Content) Necessary script donate.stripe.com
Stripe Inc. Stripe payment processing Necessary script js.stripe.com
Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown script region1.google-analytics.com
HumanSecurity before consent HumanSecurity tracker domain (source: Disconnect.me, category: Anti-fraud) Unknown script client.px-cloud.net
IntuitionMachines before consent IntuitionMachines tracker domain (source: Disconnect.me, category: Anti-fraud) Unknown script hcaptcha.com
Stripe before consent Stripe tracker domain (source: Disconnect.me, category: FingerprintingInvasive) Unknown script m.stripe.network
UserCentrics UserCentrics tracker domain (source: Disconnect.me, category: ConsentManagers) Unknown script consentcdn.cookiebot.com

Scan history

One completed scan: cookies and trackers from the scan on August 20, 2026.

Recent scans

August 20, 2026 17 17

Is carolynspring.com your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.