Skip to main content
headstartpack.com

headstartpack.com

https://headstartpack.com

Last scanned September 27, 2026

A cookie scan of headstartpack.com completed on September 27, 2026 found 5 cookies and 15 third-party tracking requests. The site uses Complianz as its consent management platform with Google Consent Mode v2; IAB TCF v2.3 was not observed. 15 third-party requests were detected from 6 vendors.

Cookies

5

Third-party

0

Trackers

15

Vendors

6

Consent banner

Complianz

Scans

1

What this setup is missing

  • No Reject option on the first layer; declining requires extra steps.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

✓ Meets this model

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

✓

Redirects HTTP to HTTPS

✓

HSTS

✗

Content Security Policy

✓

Cookies

5 cookies detected: 2 necessary, 2 analytics, 1 marketing

Total

5

Necessary

2

Functional

0

Analytics

2

Marketing

1

Unknown

0

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
_ga before consent .headstartpack.com Analytics Google Analytics 1.1 yr lifetime over 13 months – – 1st
_ga_FXL16VVCQ4 before consent .headstartpack.com Analytics Google Analytics 1.1 yr lifetime over 13 months – – 1st
_fbp before consent .headstartpack.com Marketing Facebook 90 d – – 1st
__stripe_mid .headstartpack.com Necessary Stripe 365 d ✓ – 1st
__stripe_sid .headstartpack.com Necessary Stripe Expired ✓ – 1st

Browser storage set by the site

Name Domain Party
lastExternalReferrer set by connect.facebook.net/fbevents.js:202:242 https://headstartpack.com 1st before consent
lastExternalReferrerTime set by connect.facebook.net/fbevents.js:202:242 https://headstartpack.com 1st before consent
wc set by headstartpack.com/6e9884f49a209df6438ed1ca6b156899.js https://headstartpack.com 1st before consent
wc set by headstartpack.com/6e9884f49a209df6438ed1ca6b156899.js https://headstartpack.com 1st before consent
wpEmojiSettingsSupports set by headstartpack.com/wp-emoji-loader.min.js:3:327 https://headstartpack.com 1st before consent

Third-Party Trackers

15 requests detected from 6 vendors: Cloudflare Inc., Google LLC, play.google.com, Stripe, Stripe Inc....

Analytics

6

Marketing

2

Necessary

4

Functional

0

Other

3

Vendor Category Type Domain
Cloudflare Inc. before consent Cloudflare Web Analytics Analytics script static.cloudflareinsights.com
Google LLC before consent Google tracker domain (source: Disconnect.me, category: Analytics) Analytics script region1.analytics.google.com
Google LLC before consent Google Tag Manager Analytics script www.googletagmanager.com
play.google.com before consent Analytics fetch play.google.com
Stripe before consent Stripe tracker domain (source: Disconnect.me, category: Content) Analytics script r.stripe.com
Stripe Inc. before consent Stripe fraud detection Analytics script m.stripe.com
Meta Platforms, Inc. before consent Facebook SDK / Pixel Marketing script connect.facebook.net
Meta Platforms, Inc. before consent Facebook tracking pixel Marketing pixel www.facebook.com
Google LLC Google Fonts files Necessary script fonts.gstatic.com
Google LLC Google tracker domain (source: Disconnect.me, category: Content) Necessary script www.google.dk
Google LLC Google tracker domain (source: Disconnect.me, category: Content) Necessary script www.gstatic.com
Stripe Inc. Stripe payment processing Necessary script js.stripe.com
Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown script region1.google-analytics.com
Google LLC before consent Google tracker domain (source: Disconnect.me, category: FingerprintingGeneral) Unknown script stats.g.doubleclick.net
Stripe before consent Stripe tracker domain (source: Disconnect.me, category: FingerprintingInvasive) Unknown script m.stripe.network

Scan history

One completed scan: cookies and trackers from the scan on September 27, 2026.

Recent scans

September 27, 2026 5 15

Is headstartpack.com your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.