// Security
Cookie consent is the process of requesting, recording, and applying a person's choice about cookies or similar storage and access technologies when consent is the required legal basis. It is more than displaying a banner: the site must honour the choice in the technologies it activates. The applicable rule depends on the visitor's jurisdiction, the technology, its purpose, the data involved, and any exemption; some strictly necessary uses may not require consent.
Why it matters: Start with an inventory of technologies, providers, purposes, data, lifetimes, and trigger conditions. Where prior consent is required, keep optional technologies off until a valid choice; explain purposes in clear language; avoid preselected options; offer a genuine refusal; separate choices where purposes materially differ; record the decision; and make withdrawal as easy as acceptance. Test the initial visit, acceptance, refusal, partial choice, return visit, and withdrawal in the browser and network layer. A consent-management platform or passing banner scan does not establish legal compliance. Review the implementation against current requirements in every jurisdiction and seek qualified advice for the organisation's specific processing.
Explore related checks and guidance for cookie consent on your own site.
Open Cookie & Privacy AgentLooking for practical context? Start with the guidance behind these checks and definitions.
Read WebEnture's security guidance