Skip to main content
hediup.com

hediup.com

https://hediup.com

Last scanned September 27, 2026

A cookie scan of hediup.com conducted on September 27, 2026 found 5 cookies and 12 third-party tracking requests. The assessment covered 10 pages across 10 unique page templates. The site employs CookieYes as its consent management platform. Neither IAB TCF v2.3 nor Google Consent Mode v2 was observed on our check. 12 third-party requests were detected from 7 vendors.

Cookies

5

Third-party

2

Trackers

12

Vendors

7

Consent banner

CookieYes

Scans

1

What this setup is missing

  • No Reject option on the first layer; declining requires extra steps.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

✓ Meets this model

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

✓

Redirects HTTP to HTTPS

✓

HSTS

✓

Content Security Policy

✗

Cookies

5 cookies detected: 3 necessary, 0 analytics, 0 marketing, 2 third-party

Total

5

Necessary

3

Functional

1

Analytics

0

Marketing

0

Unknown

1

2 third-party cookies detected

Third-party cookies require explicit user consent under GDPR/ePrivacy.

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
cookieyes-consent www.hediup.com Functional CookieYes 365 d ✓ – 1st
XSRF-TOKEN .easy.tools Necessary CSRF Protection 3 d ✓ – 3rd
_cfuvid .hediup.com Necessary Cloudflare Session ✓ ✓ 1st
_cfuvid .www.hediup.com Necessary Cloudflare Session ✓ ✓ 1st
easycart_session before consent .easy.tools Unknown - 3 d ✓ ✓ 3rd

Third-Party Trackers

12 requests detected from 7 vendors: Cloudflare Inc., FunctionalSoftware, Google LLC, InnoCraft, Amazon...

Analytics

2

Marketing

1

Necessary

8

Functional

1

Other

0

Vendor Category Type Domain
Cloudflare Inc. before consent Cloudflare Web Analytics Analytics script static.cloudflareinsights.com
FunctionalSoftware before consent FunctionalSoftware tracker domain (source: Disconnect.me, category: Analytics) Analytics script o407628.ingest.us.sentry.io
Google LLC before consent Google reCAPTCHA bot protection Functional script www.google.com
InnoCraft before consent InnoCraft tracker domain (source: Disconnect.me, category: Advertising) Marketing script cdn.matomo.cloud
Amazon Amazon tracker domain (source: Disconnect.me, category: Content) Necessary script d3e54v103j8qbb.cloudfront.net
Cloudflare Inc. Cloudflare Turnstile / bot protection Necessary script challenges.cloudflare.com
CookieYes CookieYes consent management Necessary script cdn-cookieyes.com
Google LLC Google tracker domain (source: Disconnect.me, category: Content) Necessary script ajax.googleapis.com
Google LLC Google Fonts stylesheet Necessary script fonts.googleapis.com
Google LLC Google tracker domain (source: Disconnect.me, category: Content) Necessary script www.gstatic.com
Google LLC Google Fonts files Necessary script fonts.gstatic.com
UNPKG UNPKG tracker domain (source: Disconnect.me, category: Content) Necessary script unpkg.com

Scan history

One completed scan: cookies and trackers from the scan on September 27, 2026.

Recent scans

September 27, 2026 5 12

Is hediup.com your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.