Skip to main content
habdashms.com

habdashms.com

https://habdashms.com

Last scanned July 26, 2026

A cookie scan of habdashms.com performed on July 26, 2026 found 6 cookies and 15 third-party tracking requests. The site relies on OneTrust as its consent management platform. Neither IAB TCF v2.3 nor Google Consent Mode v2 was observed on our check. 15 third-party requests were detected from 12 vendors.

Cookies

6

Third-party

6

Trackers

15

Vendors

12

Consent banner

OneTrust

Scans

1

What this setup is missing

  • Google tags were observed, but Google Consent Mode v2 was not detected.
  • No Reject option on the first layer; declining requires extra steps.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

✓ Meets this model

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

Redirects HTTP to HTTPS

HSTS

Content Security Policy

Cookies

6 cookies detected: 0 necessary, 0 analytics, 2 marketing, 6 third-party

Total

6

Necessary

0

Functional

0

Analytics

0

Marketing

2

Unknown

4

6 third-party cookies detected

Third-party cookies require explicit user consent under GDPR/ePrivacy.

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
cto_bundle before consent .thegrapevinehotel.com Marketing Criteo 1.1 yr 3rd
_rdt_uuid before consent .thegrapevinehotel.com Marketing Reddit 90 d 3rd
aws-waf-token before consent .www.thegrapevinehotel.com Unknown - 4 d 3rd
bkng_prue before consent .thegrapevinehotel.com Unknown - Session 3rd
cgumid before consent .thegrapevinehotel.com Unknown - 7 d 3rd
_yjsu_yjad before consent .thegrapevinehotel.com Unknown - 365 d 3rd

Browser storage set by the site

Name Domain Party
trying set by www.thegrapevinehotel.com/:3736:135 https://www.thegrapevinehotel.com 3rd before consent
__rtbhouse.lid set by www.thegrapevinehotel.com/:4093:169 https://www.thegrapevinehotel.com 3rd before consent
criteo_localstorage_check set by dynamic.criteo.com/ld.js https://www.thegrapevinehotel.com 3rd before consent
awswaf_session_storage set by d8c14d4960ca.edge.sdk.awswaf.com/challenge.js:1:457264 https://www.thegrapevinehotel.com 3rd before consent
cto_bundle set by dynamic.criteo.com/ld.js https://www.thegrapevinehotel.com 3rd before consent
awswaf_token_refresh_timestamp set by d8c14d4960ca.edge.sdk.awswaf.com/challenge.js:1:457264 https://www.thegrapevinehotel.com 3rd before consent
__test set by cf.bstatic.com/44d0a763.d579d6ca.chunk.js:2:499621 https://www.thegrapevinehotel.com 3rd before consent
_yjsu_yjad set by s.yimg.jp/ytag.js:1:22394 https://www.thegrapevinehotel.com 3rd before consent

Third-Party Trackers

15 requests detected from 12 vendors: Cloudflare Inc., Google LLC, Naver, secure.booking.com, Criteo...

Analytics

4

Marketing

7

Necessary

1

Functional

0

Other

3

Vendor Category Type Domain
Cloudflare Inc. before consent Cloudflare Web Analytics Analytics script static.cloudflareinsights.com
Google LLC before consent Google Tag Manager Analytics script www.googletagmanager.com
Naver before consent Naver tracker domain (source: Disconnect.me, category: Content) Analytics script s.yimg.jp
secure.booking.com before consent Analytics xhr secure.booking.com
Criteo before consent Criteo tracker domain (source: Disconnect.me, category: Advertising) Marketing script gum.criteo.com
Criteo before consent Criteo tracker domain (source: Disconnect.me, category: Advertising) Marketing pixel x.bidswitch.net
Microsoft before consent Microsoft tracker domain (source: Disconnect.me, category: Advertising) Marketing pixel bat.bing.com
Microsoft Advertising before consent Microsoft Advertising (Bing Ads) UET tag: conversion tracking and remarketing Marketing script bat.bing.net
reddit before consent reddit tracker domain (source: Disconnect.me, category: Advertising) Marketing script www.redditstatic.com
reddit before consent reddit tracker domain (source: Disconnect.me, category: Social) Marketing pixel alb.reddit.com
RTBHouse before consent RTBHouse tracker domain (source: Disconnect.me, category: Advertising) Marketing script creativecdn.com
OneTrust LLC OneTrust consent management Necessary script cdn.cookielaw.org
Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown script ade.googlesyndication.com
OneTrust OneTrust tracker domain (source: Disconnect.me, category: ConsentManagers) Unknown script geolocation.onetrust.com
The Trade Desk before consent The Trade Desk tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown pixel js.adsrvr.org

Scan history

One completed scan: cookies and trackers from the scan on July 26, 2026.

Recent scans

July 26, 2026 6 15

Is habdashms.com your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.