Skip to main content
hisparis.com

hisparis.com

https://hisparis.com

Last scanned September 28, 2026

A cookie scan of hisparis.com completed on September 28, 2026 found 9 cookies and 5 third-party tracking requests. The assessment covered 10 pages across 10 unique page templates. The site relies on Cookiebot as its consent management platform with IAB TCF v2.3; Google Consent Mode v2 was not observed. 5 third-party requests were detected from 5 vendors.

Cookies

9

Third-party

0

Trackers

5

Vendors

5

Consent banner

Cookiebot

Scans

1

What this setup is missing

  • No Reject option on the first layer; declining requires extra steps.

Compliance by audience

European Union

✗ Not met

GDPR + ePrivacy · Prior consent (opt-in)

United Kingdom

✗ Not met

UK GDPR + PECR · Consent-based

United States

✓ Meets this model

CCPA/CPRA + state laws · Notice & opt-out

Canada

! Needs attention

PIPEDA + Québec Law 25 · Consent-based

Brazil

! Needs attention

LGPD · Consent-based

Scanned from the EU; sites may serve different banners or tracking to other regions. Verdicts reflect observed behaviour measured against each audience's rules.

Connection security

HTTPS supported

✓

Redirects HTTP to HTTPS

✓

HSTS

✓

Content Security Policy

✗

Cookies

9 cookies detected: 3 necessary, 0 analytics, 0 marketing

Total

9

Necessary

3

Functional

0

Analytics

0

Marketing

0

Unknown

6

Filter by category
Name Domain Category Provider Expiry Secure HttpOnly Party
XSRF-TOKEN www.hisparis.com Necessary CSRF Protection 14 d ✓ – 1st
__cf_bm .hisparis.com Necessary Cloudflare Expired ✓ ✓ 1st
__cf_bm .www.hisparis.com Necessary Cloudflare Expired ✓ ✓ 1st
customer_session before consent www.hisparis.com Unknown - 28 d – ✓ 1st
customer_xsrf before consent www.hisparis.com Unknown - 28 d – – 1st
publishedsite-xsrf before consent www.hisparis.com Unknown - Expired ✓ – 1st
PublishedSiteSession before consent www.hisparis.com Unknown - Expired ✓ ✓ 1st
websitespring-xsrf before consent www.hisparis.com Unknown - 14 d ✓ – 1st
__obref before consent .hisparis.com Unknown - 365 d ✓ – 1st

Browser storage set by the site

Name Domain Party
site-visitor-uuid set by cdn3.editmysite.com/site.18ecfa588b99504e336b.js:373:116564 https://www.hisparis.com 1st before consent
oaiq_cs:1eq3MTN7BxzNHnXK3qKeAT set by bzrcdn.openai.com/oaiq.min.js:1:46524 https://www.hisparis.com 1st before consent
fulfillment-selection set by cdn3.editmysite.com/site.18ecfa588b99504e336b.js:373:116564 https://www.hisparis.com 1st before consent
viewedProducts set by cdn3.editmysite.com/site.18ecfa588b99504e336b.js:373:116564 https://www.hisparis.com 1st before consent

Third-Party Trackers

5 requests detected from 5 vendors: bzr.openai.com, bzrcdn.openai.com, FunctionalSoftware, Cybot A/S (Cookiebot), UserCentrics

Analytics

3

Marketing

0

Necessary

1

Functional

0

Other

1

Vendor Category Type Domain
bzr.openai.com before consent Analytics fetch bzr.openai.com
bzrcdn.openai.com before consent Analytics script bzrcdn.openai.com
FunctionalSoftware before consent FunctionalSoftware tracker domain (source: Disconnect.me, category: Analytics) Analytics script sentry.io
Cybot A/S (Cookiebot) Cookiebot consent management Necessary script consent.cookiebot.com
UserCentrics UserCentrics tracker domain (source: Disconnect.me, category: ConsentManagers) Unknown script consentcdn.cookiebot.com

Scan history

One completed scan: cookies and trackers from the scan on September 28, 2026.

Recent scans

September 28, 2026 9 5

Is hisparis.com your website?

Claim it to monitor your cookies and trackers, set up a consent banner with automatic script blocking, and keep your cookie policy up to date.