ConsentGuard by Relevance Lab
Enterprise cookie consent management, from first scan to proof of consent
Scan your websites for cookies and show each visitor the consent banner for their region, with nine regional frameworks built in. Where regional settings require it, known tracking scripts are held until the visitor agrees.
- 9
- Regional privacy frameworks, preconfigured
- 4
- Banner layouts to choose from
- 4
- Standard cookie categories
- 1
- Line of script to install
Cookie consent takes more than a banner
Your teams need visibility into website cookies, clear controls for visitor preferences, and records that support accountability. ConsentGuard connects cookie discovery, visitor preferences, and consent records in one console.
How it works
-
Register your website
Add each website with its domain, banner layout, brand color, and default region.
-
Scan for cookies
The scanner finds cookies and third-party trackers and suggests a category for each. You review the results before anything is saved.
-
Design and deploy
Build the banner in the visual designer, preview it, then add the one-line script tag to your pages.
-
Monitor and prove
Watch consent metrics update live, and export timestamped consent records when an audit calls for them.
Know which cookies your websites set
Each scan reads the cookies your server sets and checks the page code for third-party trackers and pixels. Review what it finds, then keep one categorized inventory your teams can manage.
- Scans before and after launch Scan live websites, and staging websites that sit behind a username and password (HTTP Basic Authentication). The staging login can be saved for later scans.
- Review before anything is saved Check the cookies each scan detects, adjust their details, and add the ones you choose in one click. Cookies already in your inventory are flagged, so nothing is entered twice.
- Four standard categories Each scan suggests a category for every cookie: strictly necessary, performance and analytics, functional, or targeting. Your team can change it.
- Details for each cookie Record the cookie’s name, host or third-party domain, expiration period, and legal processing purpose. Cookies can also be added or edited by hand.
- Search and sync Find cookies by name, category, or website. The active inventory syncs with the preference center on your website, so visitors see current cookie information.
Banners that match your brand
Make cookie choices clear and easy to find, with customizable banners and a preference center that works category by category.
- Four banner layouts Use a top or bottom bar, floating card, or centered modal. Add your brand color and logo and see the change as you make it.
- Desktop and mobile preview Check both layouts before you publish. You can also preview the preference center and see how the banner looks under different regional settings.
- Category-level choices for visitors Visitors can review cookie category descriptions and choose their preferences for non-essential cookies. Strictly necessary cookies remain enabled.
Consent settings for each region
ConsentGuard uses visitor timezone and IP signals to apply regional banner text and script blocking rules. Nine preconfigured frameworks are included, and administrators can restore the standard settings in one click.
- Opt-in regions
- Non-essential cookies stay off until the visitor agrees. EU GDPR / ePrivacy, UK GDPR / PECR, Brazil LGPD, Quebec Law 25 / PIPEDA
- Opt-out regions
- Visitors get a clear notice and a way to opt out. California CCPA / CPRA, US multi-state privacy laws (Virginia, Colorado, Connecticut, Utah, Texas)
- Notice regions
- Visitors see a transparency banner with cookie preference controls. Australia Privacy Act, Japan APPI, and a global baseline for everywhere else
Tracking that follows each visitor’s choice
Visitor choices are applied to known tracking scripts and passed to Google’s tools.
Script blocking before consent
Where regional settings require consent first, ConsentGuard watches each page for scripts as they are added and pauses known trackers before the browser runs them.
Its tracker catalog includes Google Analytics, Meta Pixel, Hotjar, TikTok, and LinkedIn. Paused scripts stay queued, then run in their original order once the visitor agrees.
Google Consent Mode v2
Consent Mode is how Google’s advertising and analytics tags learn what a visitor agreed to. ConsentGuard automatically updates signals for analytics, ad storage, ad user data, ad personalization, and functionality as visitors select their preferences.
Consent signals default to denied for EEA and UK visitors until they consent. This also supports Google Ads conversion modeling.
Proof of consent, ready for audit
See how visitors respond to your consent banner, and keep immutable, timestamped records you can use for internal reviews and audits.
- Live consent metrics View consent volumes, overall opt-in rate, active websites, compliance score, and acceptance by cookie category. Figures update as visitors interact with banners.
- Filters for website and region Filter analytics by website and see how consent activity is spread across regions.
- A record of each consent event Each record holds the timestamp, website identifier, visitor country or region, category choices, and user agent.
- Privacy-preserving consent records ConsentGuard maintains anonymous consent records without storing personally identifiable information.
- Search and export Filter records by website, date range, or jurisdiction, then export structured logs for legal audits. The records support proof-of-consent documentation and accountability reviews.
Manage and deploy across your websites
Manage consent for all your websites in one place, with each website keeping its own branding and settings.
-
Unified governance console
Register unlimited websites, each with its own identifier. Set the banner layout, brand color, and default region for each one, and see its script blocking status and active cookie count.
-
One line to install
Copy the ready-made, one-line script tag for each website. It comes pre-populated with that website’s details, ready to add to your pages.
-
Shadow DOM isolation
The banner and preference center run inside a closed Shadow DOM, keeping the consent interface separate from your website’s styles and scripts.
-
WAF and Azure Gateway safe
Many consent tools save choices as JSON, which some firewall rules mistake for an attack and block with a 403 Forbidden error. ConsentGuard saves a plain alphanumeric list instead. The format works with Azure Application Gateway v2, AWS WAF, and Cloudflare.
Security and architecture
Protect administrative access and connect consent controls with your website architecture.
- Admin access
- A dedicated login page protects the dashboard. Edge middleware intercepts unauthenticated traffic to dashboard routes and redirects it to the login.
- Sessions
- HttpOnly session cookies use SameSite=Lax and a 24-hour lifetime. Signing out ends the session and destroys the cookie.
- APIs
- Public endpoints support website configuration and consent logging. Management APIs require authenticated access.
Technical details
- Script blocking
-
A MutationObserver watches the page for newly
injected script tags. Matching scripts are
switched to
text/plain, held in an in-memory queue, and released in their original DOM order after consent. - Consent categories
-
C0001Strictly Necessary,C0002Performance and Analytics,C0003Functional,C0004Targeting. - Consent Mode v2 mapping
-
C0004maps toad_storage,ad_user_data, andad_personalization.C0002maps toanalytics_storage.C0003maps tofunctionality_storage. - Consent storage
-
The consent cookie holds a comma-delimited
alphanumeric list of category codes.
Detailed metadata stays in the browser’s
localStorage. - Embedded SDK
- Runs in a closed Shadow DOM on the host website.
Discuss your cookie consent requirements
Tell us about your websites, the regions you serve, and the tracking tools you use. Explore how ConsentGuard can fit your consent management requirements.