Skip to main content
dropin.hr

dropin.hr

https://dropin.hr

Last scanned September 6, 2026

A cookie scan of dropin.hr completed on September 6, 2026 found 9 cookies and 5 third-party tracking requests. The assessment covered 10 pages across 10 unique page templates. No consent management platform was detected. Our check observed 5 third-party requests from 4 vendors; non-essential tracking of this kind requires prior consent under the ePrivacy Directive.

Cookies

9

Third-party

0

Trackers

5

Vendors

4

Consent banner

None detected

Scans

1

What this setup is missing

  • No consent management platform was detected.
  • Google Consent Mode v2 is present but does not default to denied for all storage types.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

! Needs attention

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

✓

Redirects HTTP to HTTPS

✓

HSTS

✗

Content Security Policy

✗

Cookies

9 cookies detected: 0 necessary, 6 analytics, 0 marketing

Total

9

Necessary

0

Functional

1

Analytics

6

Marketing

0

Unknown

2

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
_ga before consent .dropin.hr Analytics Google Analytics Session – – 1st
_ga_7G9D8R36LN before consent .dropin.hr Analytics Google Analytics Session – – 1st
_hjSessionUser_3366543 before consent .dropin.hr Analytics Hotjar 335 d ✓ – 1st
_hjSession_3366543 before consent .dropin.hr Analytics Hotjar Expired ✓ – 1st
_pk_id.3.5eaf before consent www.dropin.hr Analytics Matomo 363 d – – 1st
_pk_ses.3.5eaf before consent www.dropin.hr Analytics Matomo Expired – – 1st
wishlist_hash before consent www.dropin.hr Functional E-commerce 1 yr ✓ ✓ 1st
basket_hash before consent www.dropin.hr Unknown - 153 d ✓ ✓ 1st
october_session before consent www.dropin.hr Unknown - Expired ✓ ✓ 1st

Browser storage set by the site

Name Domain Party
_hjLocalStorageTest set by script.hotjar.com/modules.e762be2b6b709245aabb.js:2:217285 https://www.dropin.hr 1st before consent
_hjSessionStorageTest set by script.hotjar.com/modules.e762be2b6b709245aabb.js:2:217510 https://www.dropin.hr 1st before consent

Third-Party Trackers

5 requests detected from 4 vendors: ContentSquare, Google LLC, Adobe Fonts, Meta Platforms, Inc.

Analytics

2

Marketing

1

Necessary

0

Functional

1

Other

1

Vendor Category Type Domain
ContentSquare before consent ContentSquare tracker domain (source: Disconnect.me, category: Analytics) Analytics script static.hotjar.com
Google LLC before consent Google Tag Manager Analytics script www.googletagmanager.com
Adobe Fonts before consent Adobe Fonts (Typekit): web font delivery Functional script use.typekit.net
Meta Platforms, Inc. before consent Facebook SDK / Pixel Marketing script connect.facebook.net
Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown script region1.google-analytics.com

Scan history

One completed scan: cookies and trackers from the scan on September 6, 2026.

Recent scans

September 6, 2026 9 5

Is dropin.hr your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.