GDPR & Cookies
GDPR Cookie Consent
…consent is not required for technical storage or access of the following cookies:
- cookies used for the sole purpose of carrying out the transmission of a communication
- cookies that are strictly necessary in order for the provider of an information society service explicitly required by the user to provide that service
Examples of cookies that generally do NOT require consent:
- user input cookies, for the duration of a session
- authentication cookies, for the duration of a session
- user-centric security cookies, used to detect authentication abuses and linked to the functionality explicitly requested by the user, for a limited persistent duration
- multimedia content player session cookies, such as flash player cookies, for the duration of a session
- load balancing session cookies and other technical cookies, for the duration of session
- user interface customisation cookies, for a browser session or a few hours, when additional information in a prominent location is provided (e.g. “uses cookies” written next to the customisation feature)
– The European Commission’s official Internet Handbook
Do I Need Prior Consent For Using Google Analytics?
The need to get prior consent from website visitors before tracking their data with Google Analytics depends on whether you will use that data for advertising or not.
If you use the data for advertising purposes, including remarketing or demographics and interests reporting, then you have to obtain prior consent before injecting cookies in your users’ computers to get the data you need. This duty applies to you only for your EU visitors, or if you are based in the EU, for all of your visitors.
However, if you use the data only for tracking the number of visits, where your visits come from, average time your visitors stay on your site, and so on, you can use Google Analytics without obtaining prior consent, but only if you make a few tweaks in the settings …
- Turn on the Anonymize IP feature to avoid collecting IP addresses, which is considered personal data under GDPR.
- Avoid Leaking Data to Google.
- Set the Allow Ad Features feature to false
- Disable the Remarketing and Advertising Reporting Features
- Do not link your Google Adwords account to the Google Analytics account, unless you need it.
- Set the retention data period in accordance with your privacy policy.
- Limit the Data Sharing Settings only to those you really need.
Cookie Banner Generators
- https://termly.io/products/tl/cookie-consent-manager/
- https://www.cookiebot.com/
- https://www.cookieyes.com/
- https://wordpress.org/plugins/cookie-law-info/
- https://wordpress.org/plugins/cookie-notice/