WordPress.org

Plugin Directory

SureCookie – GDPR Cookie Consent Banner, Cookie Scanner & Script Blocking

SureCookie – GDPR Cookie Consent Banner, Cookie Scanner & Script Blocking

Descripción

SureCookie es un plugin de consentimiento de cookies para WordPress que te ayuda a escanear cookies, mostrar un banner de cookies personalizable, bloquear scripts no esenciales antes del consentimiento y almacenar registros de consentimiento dentro de tu base de datos de WordPress.

Está diseñado para propietarios de sitios, tiendas de comercio electrónico, agencias, blogueros y profesionales de WordPress que quieren algo más que un aviso de cookies básico. SureCookie te ayuda a entender qué cookies y servicios de terceros se ejecutan en tu sitio, permite a los visitantes gestionar sus elecciones y te ofrece un flujo de trabajo de consentimiento práctico sin precios basados en visitantes.

👉 Prueba la demo en vivo de SureCookie.

No solo un banner de cookies

A cookie notice can tell visitors that your site uses cookies, but that alone does not manage consent. If analytics scripts, marketing pixels, video embeds, maps, or tag manager scripts run before visitors choose, the banner is only cosmetic. SureCookie connects the banner to the rest of the workflow: scan the site, review detected cookies, block non-essential scripts before consent, store consent logs locally, and keep your cookie policy easier to maintain.

Cómo funciona SureCookie

SureCookie sigue un flujo de trabajo simple de consentimiento de cookies para WordPress:

  1. Escanea las páginas seleccionadas con el escáner de cookies en navegador real.
  2. Revisa las cookies, scripts, recursos y dominios de terceros detectados.
  3. Organiza las cookies en categorías de consentimiento como Esenciales, Funcionales, Analíticas y Marketing.
  4. Activa el bloqueo de scripts para que los scripts no esenciales esperen el consentimiento.
  5. Muestra el banner de consentimiento de cookies y el modal de preferencias a los visitantes.
  6. Almacena registros de consentimiento localmente en WordPress para su revisión y exportación.
  7. Genera o conecta una página de política de cookies que refleje tu configuración de cookies.

This makes SureCookie more than a WordPress cookie banner. Many cookie plugins focus only on the visitor-facing notice, while SureCookie focuses on what happens before and after it: cookie detection, script blocking, consent records, and policy support.

Características gratuitas incluidas

La versión de WordPress.org de SureCookie incluye el flujo de trabajo de consentimiento principal:

  • Banner de consentimiento de cookies: muestra un banner o aviso limpio para los visitantes.
  • Modal de preferencias: permite a los visitantes revisar y gestionar las categorías de cookies.
  • Botones Aceptar, Aceptar todo, Rechazar y Preferencias: controla el texto y el orden de los botones.
  • Escáner de cookies en navegador real: escanea las páginas seleccionadas utilizando un servicio de escaneo basado en navegador.
  • Cookie categories: Use Essential, Functional, Analytics, Marketing, and Uncategorized categories. See managing cookie categories.
  • Cookies personalizadas: añade y gestiona cookies manualmente cuando sea necesario.
  • Bloqueo de scripts: bloquea scripts no esenciales antes de que se dé el consentimiento.
  • Bloqueo de recursos: gestiona scripts, iframes, incrustaciones y objetos encontrados durante los escaneos.
  • Registros de consentimiento: almacena las elecciones de los visitantes dentro de tu base de datos de WordPress.
  • Filtros de registros de consentimiento: busca y filtra registros por acción, país, IP e ID de sesión.
  • Exportación en PDF de consentimiento: exporta registros de consentimiento individuales para documentación.
  • Ajustes de retención de consentimiento: controla durante cuánto tiempo se conservan los registros de consentimiento.
  • Escaneo automático mensual: programa escaneos recurrentes en el plan gratuito.
  • Historial de escaneo y detección de cambios: ve lo que ha cambiado entre escaneos, incluyendo cookies y dominios recién detectados.
  • Sugerencias de categorías basadas en reglas: obtén categorías sugeridas para cookies recién detectadas.
  • Página de política de cookies: genera una página con tablas de cookies dinámicas.
  • Controles de reconsentimiento: añade un enlace de preferencias de cookies a través de un shortcode o elemento de menú.
  • Volver a solicitar consentimiento: pide a todos los visitantes que revisen sus elecciones de nuevo cuando sea necesario.
  • Soporte para Google Consent Mode: envía estados de consentimiento a los servicios de Google compatibles.
  • Soporte para WP Consent API: comparte el estado del consentimiento con plugins de WordPress compatibles.
  • Soporte multilingüe: funciona con WPML y Polylang para el texto del banner y de administración.
  • Soporte RTL: muestra correctamente el contenido de la política de cookies en la parte pública para idiomas RTL.
  • Soporte para MCP y WordPress Abilities: permite el acceso de asistentes de IA a las acciones de gestión de SureCookie cuando sea compatible.
  • Sin límites basados en visitantes: SureCookie no cobra por tráfico ni por visitantes mensuales.

Claridad entre la versión gratuita y Pro

Everything listed above is in the free plugin. Advanced workflows are reserved for SureCookie Pro: weekly automatic scans, email scan digests, auto-apply behavior, compliance guard workflows, geographic targeting (which applies CCPA-style opt-out rules per region), and consent forwarding. Compare on the features page or see plans and pricing.

Escáner de cookies en navegador real

SureCookie uses a browser-based scanning service at https://library.surecookie.com/ to inspect selected pages. See how the cookie scanner works.

En lugar de solo leer HTML estático, el escáner carga tus páginas en un entorno de navegador real. Esto ayuda a detectar cookies y recursos que aparecen después de la carga de la página, a través de gestores de etiquetas o a través de scripts de terceros.

El escáner puede ayudar a identificar:

  • Analytics, marketing, advertising, functional, and preference cookies
  • Cookies de sesión de WooCommerce y WordPress
  • Dominios y recursos de terceros
  • Tag manager loaded and dynamically injected scripts

Escaneo automático mensual

When enabled, SureCookie runs scheduled monthly scans through WP-Cron. The scan uses the same scanner engine, respects the configured scan scope, and records the latest scan history. Full setup is in the automatic scheduled scanning guide.

El historial de escaneo puede mostrar:

  • Cookies recién detectadas
  • Cookies eliminadas
  • Cookies recategorizadas
  • Dominios de terceros recién detectados
  • Si el escaneo fue manual o automático
  • La fecha del último escaneo y el número de cookies

Bloqueo de scripts antes del consentimiento

SureCookie puede bloquear scripts no esenciales antes de que el visitante dé su consentimiento.

Cuando el bloqueo está activado, SureCookie procesa el HTML de la parte pública y convierte los recursos coincidentes para que no se ejecuten hasta que se permita la categoría de cookies correspondiente. Puede manejar scripts, así como contenido incrustado como iframes, incrustaciones y objetos.

Esto es importante porque un banner por sí solo no detiene el seguimiento. SureCookie está diseñado para conectar las elecciones de consentimiento con la aplicación técnica.

The script blocker also includes safeguards so it skips admin pages, REST requests, AJAX requests, feeds, JSON responses, XML responses, and scanner bypass requests. The resource and script blocking guide covers how scripts, iframes and embeds are matched.

Banner y preferencias personalizables

SureCookie te da control sobre la experiencia de consentimiento que ven los visitantes.

Puedes personalizar:

  • Mensaje y descripción del banner
  • Contenido del banner en texto enriquecido
  • Etiquetas de los botones Aceptar, Aceptar todo, Rechazar y Preferencias
  • Orden de los botones
  • Posición y anchura del banner
  • Logo del banner
  • Animación del banner
  • Superposición de fondo
  • Título y descripción del modal de preferencias
  • Etiquetas y descripciones de las categorías de cookies
  • CSS personalizado

Visitors can accept all cookies, decline non-essential cookies, or open the preferences modal and choose specific categories. See customizing banner content and banner layout for every option, and custom CSS for banner styling if you need finer control.

Registros de consentimiento almacenados localmente

SureCookie almacena los registros de consentimiento dentro de tu base de datos de WordPress.

Esto es diferente de muchas plataformas de gestión de consentimiento SaaS donde los registros de consentimiento viven en una plataforma externa. Con SureCookie, tus registros de consentimiento permanecen en tu sitio WordPress y pueden revisarse desde el área de administración.

Los registros de consentimiento pueden incluir:

  • ID de sesión del usuario
  • Acción de consentimiento, como aceptado, rechazado o aceptado parcialmente
  • Preferencias de categorías de cookies
  • Dirección IP enmascarada
  • Marca de tiempo
  • País

Admins can view, search, filter, delete, and export logs from WordPress. SureCookie also includes retention settings so you can control how long logs are kept. See understanding consent logs and exporting consent logs to PDF or CSV.

Cookie Policy Page and Generator

SureCookie incluye un generador de política de cookies que puede crear una página de política de cookies para tu sitio web.

La página generada utiliza bloques nativos de WordPress e incluye un shortcode dinámico que muestra tablas de cookies agrupadas por categoría y proveedor. El contenido de la política de cookies puede incluir:

  • Categorías de cookies
  • Nombres de cookies
  • Finalidad o descripción
  • Duración
  • Dominio
  • Marca de tiempo de la última actualización
  • Un índice cuando hay varias categorías disponibles

You can edit the generated policy page in the WordPress editor and keep the dynamic cookie table connected to your scanned and manually added cookies. Walkthrough: how to generate a cookie policy page.

Reconsentimiento y volver a solicitar consentimiento

Los visitantes deberían poder cambiar sus elecciones más tarde.

SureCookie incluye un shortcode de reconsentimiento:

[surecookie_reconsent_button]

Puedes usarlo para añadir un botón de preferencias de cookies en tu sitio. SureCookie también puede añadir un elemento virtual de preferencias de cookies a un menú de navegación de WordPress seleccionado.

Admins can also re-request consent from all visitors. This is useful after updating your cookie policy, adding new tracking tools, changing categories, or making a major consent workflow change. See the re-consent guide.

Google Consent Mode

When enabled, SureCookie sends consent states for supported Google services and updates them when visitors change their preferences. Setup steps: setting up Google Consent Mode v2. It maps SureCookie categories to Google consent signals, detects Google services from enqueued scripts or the page HTML, and hides block toggles that Google Consent Mode already manages.

WP Consent API

SureCookie reads its consent cookie and syncs the visitor’s consent state so compatible WordPress plugins can check consent using the standardized WP Consent API flow.

La asignación de categorías predeterminada incluye:

  • Esencial a funcional
  • Funcional a preferencias
  • Análisis a estadísticas
  • Marketing a marketing

Los desarrolladores pueden personalizar las asignaciones a través de filtros.

Soporte multilingüe y RTL

SureCookie incluye compatibilidad multilingüe para WPML y Polylang.

Puede registrar y traducir el texto del banner, las etiquetas de los botones, el texto del modal de preferencias, las etiquetas de las categorías y las cadenas relacionadas de la parte pública. También incluye soporte RTL para los diseños de la política de cookies.

MCP y WordPress Abilities

Cuando está activado, los asistentes de IA y las herramientas compatibles pueden utilizar las capacidades estructuradas de SureCookie para gestionar ajustes, categorías de cookies, registros de consentimiento, gestión de cookies y acciones del escáner del sitio. Las acciones de inicio del escáner aún requieren cuidado porque contactan con un servicio de escaneo externo.

¿Quién debería usar SureCookie?

SureCookie es adecuado para:

  • WordPress site owners and agencies who need a cookie consent banner across client sites
  • E-commerce stores and publishers using analytics, ads, pixels, embeds, or marketing tools
  • Businesses running tag managers, heatmaps, video embeds, maps, forms, or CRM and conversion tracking
  • Developers who want a WordPress-native consent workflow with hooks and APIs, and consent logs kept inside WordPress

Aviso legal importante

SureCookie proporciona herramientas técnicas para el escaneo de cookies, el bloqueo de scripts, la recogida de consentimiento, el registro de consentimiento y la gestión de la política de cookies.

Ningún plugin de WordPress puede garantizar por sí solo el cumplimiento legal. Los requisitos de privacidad y cookies dependen de tu sitio web, visitantes, región, políticas, prácticas de procesamiento de datos y obligaciones legales. Para obtener asesoramiento legal, consulta a un profesional legal cualificado.

Servicios externos

SureCookie utiliza servicios externos para el escaneo de cookies, la verificación del sitio y la geolocalización.

Escaneo de cookies

SureCookie se conecta a https://library.surecookie.com/ para proporcionar escaneo de cookies en navegador real y categorización inteligente.

Cuando ejecutas un escaneo, SureCookie envía las URL de las páginas seleccionadas al servicio de escaneo. Un escáner basado en navegador visita esas páginas y detecta cookies, scripts, recursos y dominios de terceros.

Registro y autenticación del escáner

Antes del primer escaneo, SureCookie realiza un handshake de registro único con library.surecookie.com/api/register.

La solicitud envía:

  • URL del sitio
  • Correo electrónico del administrador de WordPress
  • Versión de SureCookie
  • Un nonce de instalación temporal (único, aleatorio)

El servicio de escaneo verifica el sitio a través de un endpoint REST temporal, luego devuelve credenciales específicas del sitio y un token de verificación. Estas credenciales se almacenan localmente en una opción de WordPress no autoload y se utilizan para solicitudes de escaneo autenticadas.

Registros de IP de consentimiento y detección de región

Para el registro de consentimiento y la detección de país, las direcciones IP de los visitantes pueden procesarse a través de la detección de región respaldada por MaxMind a través del servicio de SureCookie. Esto ayuda a SureCookie a registrar el país en el registro de consentimiento.

Las direcciones IP se enmascaran antes de almacenarse en tu base de datos de WordPress.

Atribución de MaxMind: https://www.maxmind.com

URL de los servicios

Datos almacenados localmente

SureCookie almacena los ajustes del plugin y los datos de consentimiento en tu base de datos de WordPress.

Esto puede incluir:

  • Ajustes del banner y del modal de preferencias
  • Categorías de cookies
  • Cookies personalizadas
  • Cookies escaneadas
  • Recursos escaneados
  • Historial de escaneo
  • Registros de consentimiento
  • ID de la página de política de cookies
  • Ajustes de escaneo automático
  • Credenciales del escáner

Los registros de consentimiento y los resultados de escaneo se pueden ver, exportar o eliminar desde la administración de WordPress.

Privacidad y procesamiento de datos

SureCookie procesa datos a través de su servicio API en library.surecookie.com para el escaneo de cookies, la autenticación del escáner y el registro de consentimiento con detección de región. Esto es lo que ocurre y por qué.

Qué enviamos a los servicios de SureCookie

Durante el flujo de registro único del escáner y verificación del sitio, SureCookie envía la URL del sitio, el correo electrónico del administrador de WordPress, la versión de SureCookie y un nonce de instalación temporal. El servicio de escaneo utiliza estos datos para verificar tu sitio y emitir credenciales, luego devuelve un token de verificación que SureCookie expone en un endpoint REST temporal para la verificación del dominio.

Después del registro, las solicitudes de escaneo utilizan credenciales específicas del sitio almacenadas localmente en WordPress y no reenvían el correo del administrador.

Cuando se ejecuta un escaneo, SureCookie envía las URL de las páginas seleccionadas al servicio de escaneo para que un navegador real pueda detectar cookies, scripts, recursos y dominios de terceros.

Qué se procesa y por qué

  • Escaneo de cookies: las URL de las páginas seleccionadas se escanean en un entorno de navegador real para detectar cookies, scripts, recursos y dominios de terceros.
  • Categorización de cookies: los detalles de las cookies detectadas, como nombres, dominios y duraciones, se utilizan para ayudar a categorizar las cookies.
  • Region detection: Visitor IP addresses may be processed through MaxMind-backed region detection to determine country-level location for consent logs. IP addresses are masked before being stored in your WordPress database.
  • Consent records: Consent choices, timestamps, category preferences, and session details are logged locally in your WordPress database.

Where Data Lives

  • Consent logs, scan results, settings, and scanner credentials are stored in your WordPress database.
  • Data sent to library.surecookie.com for scanning and geolocation may be temporarily processed for those features.
  • SureCookie does not sell this data or use it for advertising.

Data Retention and Control

  • Consent logs and scan results can be viewed, exported, or deleted from your WordPress admin.
  • Consent log retention periods are configurable in plugin settings.
  • Scanner credentials are stored locally in a non-autoloaded WordPress option.

Security

  • API communication uses HTTPS.
  • Scan requests use authenticated site credentials after the registration flow.
  • Site credentials are used to sign later scan requests.

Because visitor data and selected page URLs can be processed through SureCookie services, you should mention this in your site’s privacy policy where appropriate.

Full details: https://surecookie.com/privacy-policy/

For questions about data processing, visit https://surecookie.com/support/.

Useful Links

About Brainstorm Force

SureCookie is built by Brainstorm Force, the team behind Astra and other widely used WordPress products.

Capturas

Instalación

  1. Sube los archivos del plugin al directorio /wp-content/plugins/surecookie, o instala el plugin a través de la pantalla de Plugins de WordPress.
  2. Activa SureCookie desde la pantalla de Plugins.
  3. Ve al Escritorio de SureCookie en WordPress.
  4. Configura el contenido de tu banner, las categorías de cookies y los ajustes de consentimiento.
  5. Selecciona páginas y ejecuta un escaneo de cookies.
  6. Revisa las cookies y los recursos detectados.
  7. Activa el bloqueo de scripts si quieres que los scripts no esenciales se bloqueen antes del consentimiento.
  8. Genera o conecta tu página de política de cookies.
  9. Prueba el banner y el modal de preferencias en la parte pública.

FAQ

¿Es SureCookie una plataforma de gestión de consentimiento?

SureCookie proporciona características de gestión de consentimiento dentro de WordPress, incluyendo un banner de cookies, modal de preferencias, escáner de cookies, bloqueo de scripts, registros de consentimiento y soporte para política de cookies. No es una plataforma SaaS que cobre por número de visitantes.

¿Se puede usar SureCookie como bloqueador de cookies?

Sí. Cuando el bloqueo de scripts está activado, SureCookie puede actuar como un bloqueador de cookies para scripts no esenciales y recursos incrustados hasta que el visitante dé su consentimiento para la categoría correspondiente.

¿Ayuda SureCookie con el cumplimiento de cookies?

SureCookie ayuda con las partes técnicas del cumplimiento de cookies, como escanear cookies, mostrar un banner de consentimiento, bloquear scripts no esenciales, almacenar registros de consentimiento y mantener una página de política de cookies. No sustituye al asesoramiento legal ni garantiza el cumplimiento por sí solo.

¿Es SureCookie solo un plugin de banner de cookies?

No. SureCookie incluye un banner de cookies, pero también incluye escaneo de cookies, bloqueo de scripts, registros de consentimiento, soporte para página de política de cookies, controles de reconsentimiento, Google Consent Mode, WP Consent API y escaneo automático mensual en el plugin gratuito.

¿Qué características incluye el plugin gratuito?

El plugin gratuito incluye el banner, el modal de preferencias, el escáner de cookies en navegador real, cookies personalizadas, bloqueo de scripts, registros de consentimiento, exportación de registros de consentimiento, generación de página de política de cookies, botón de reconsentimiento, volver a solicitar consentimiento, escaneo automático mensual, historial de escaneo, Google Consent Mode, WP Consent API, soporte multilingüe y sin límites basados en visitantes.

¿Cómo funciona el escáner de cookies?

SureCookie envía las URL de las páginas seleccionadas a library.surecookie.com, donde un escáner basado en navegador carga las páginas y detecta cookies, dominios de terceros, scripts y recursos. Esto ayuda a detectar cookies que pueden no aparecer en el HTML estático.

¿Es compatible SureCookie con el escaneo automático?

Sí. El plugin gratuito incluye escaneo automático mensual a través de WP-Cron. El escaneo semanal, los resúmenes por correo, la aplicación automática y el comportamiento de guardia de cumplimiento son extensiones Pro.

¿Puede SureCookie mostrar lo que ha cambiado entre escaneos?

Sí. SureCookie registra el historial de escaneo más reciente y puede mostrar cookies recién detectadas, cookies eliminadas, cookies recategorizadas y nuevos dominios de terceros.

¿Puede SureCookie bloquear scripts antes del consentimiento?

Sí. SureCookie puede bloquear scripts no esenciales y recursos incrustados antes de que se dé el consentimiento. Puede procesar scripts, iframes, incrustaciones y objetos cuando el bloqueo está activado.

¿Es compatible SureCookie con Google Consent Mode?

Sí. SureCookie incluye soporte para Google Consent Mode y puede actualizar las señales de consentimiento de Google según las elecciones de los visitantes.

¿Es compatible SureCookie con WP Consent API?

Sí. SureCookie puede sincronizar el estado del consentimiento con WP Consent API para que los plugins compatibles puedan leer el consentimiento a través de la API estandarizada.

¿Pueden los visitantes cambiar sus elecciones de consentimiento más tarde?

Sí. Los visitantes pueden volver a abrir el modal de preferencias a través del botón de ajustes, un shortcode o un elemento de menú configurado.

¿Qué shortcode abre las preferencias de cookies?

Puedes usar este shortcode:

[surecookie_reconsent_button]

Muestra un botón de preferencias de cookies que abre el modal de preferencias.

¿Puedo volver a solicitar el consentimiento de todos los visitantes?

Sí. SureCookie incluye una opción de volver a solicitar consentimiento. Cuando se usa, el consentimiento existente se considera caducado y se pide a los visitantes que hagan una nueva elección.

¿Se almacenan los registros de consentimiento localmente?

Sí. Los registros de consentimiento se almacenan en tu base de datos de WordPress. Los registros pueden incluir la acción, las preferencias, la marca de tiempo, la dirección IP enmascarada, el país y el ID de sesión.

¿Puedo exportar los registros de consentimiento?

Sí. SureCookie admite la exportación en PDF de registros de consentimiento individuales.

¿Genera SureCookie una página de política de cookies?

Sí. SureCookie puede generar una página de WordPress con contenido de política editable y un shortcode de tabla de cookies dinámica.

¿Funciona SureCookie con WooCommerce?

Sí. SureCookie está diseñado para sitios WordPress, incluidas las tiendas de comercio electrónico. Puede reconocer las cookies de sesión comunes de WooCommerce como esenciales durante la clasificación.

¿Funciona SureCookie con sitios web multilingües?

Sí. SureCookie incluye compatibilidad con WPML y Polylang para el texto del banner, el texto del modal de preferencias, las etiquetas de las categorías y otras cadenas de la parte pública.

¿Es compatible SureCookie con idiomas RTL?

Sí. SureCookie incluye soporte de estilos RTL, incluso para la página de política de cookies.

¿Incluye SureCookie soporte para asistentes de IA?

SureCookie incluye integración con MCP y WordPress Abilities para configuraciones compatibles. Cuando está activado, los asistentes de IA compatibles pueden interactuar con las acciones de gestión estructuradas de SureCookie.

¿Ralentizará SureCookie mi sitio web?

SureCookie está diseñado para ser ligero en la parte pública. El bloqueo de scripts solo se ejecuta donde es necesario y omite las respuestas de administración, AJAX, REST, feeds, JSON y XML.

¿Hay límites de visitantes?

No. SureCookie no cobra por visitantes, tráfico o visitas a páginas.

¿Garantiza SureCookie el cumplimiento del GDPR o CCPA?

No. SureCookie proporciona herramientas para los flujos de trabajo de consentimiento de cookies, pero ningún plugin puede garantizar por sí solo el cumplimiento legal. Tu cumplimiento depende de tu sitio, región, políticas y prácticas de datos. Consulta a un profesional legal para obtener asesoramiento jurídico.

¿Qué datos se envían a servicios externos?

Para el escaneo de cookies, las URL de las páginas seleccionadas y los detalles de verificación del sitio se envían a library.surecookie.com. Para la detección de país en los registros de consentimiento, las direcciones IP de los visitantes pueden procesarse a través del servicio de SureCookie utilizando datos respaldados por MaxMind.

Reseñas

3 de septiembre de 2026
I’ve tried just about every consent plugin there is and this one is definitely the most accurate of them so far. The developer has answered all of my questions with clarity & detail and taken into account any reported issues rather than responding with canned replies – they actually read and think about what you ask or report before giving you an answer. This is the only plugin so far that I’ve tested that actually does block all the cookies you set and scripts with minimal hassle.
2 de septiembre de 2026
The support team is fast to answer your queries and fix any potential issues! They are also very helpful in other matters!
1 de septiembre de 2026 1 respuesta
Like all the plugins you’ve developed, it can’t be used in a way that’s 100% compliant with data protection regulations. Borlabs Cookie also performs a scan — and does so very reliably, even without logging into an account — where, as with Surecart and all your other services, data is transmitted to you and collected. As you can see, parts of a visitor’s IP address can be masked, but who can tell us here when (before or after transmission) and whether this is actually 100% the case? Once again, we have to take your word for it, and since I’ve already hit a dead end with Surecart and using this shop system poses a high risk in Europe, I’d rather warn my fellow users here with this post. It would really help users in Europe if you relied on built-in system functions instead of connecting your data collector for everything. Thank you in advance! 2 stars, because you always put a lot of effort into the back-end and front-end design.
27 de agosto de 2026
This is a must-have plugin by the Brainstorm Force Team. As always, their support is excellent: quick to reply, knowledgeable, and ready to help every step of the way to solve an issue. The SureCookie Team has created an outstanding plugin that covers key compliance issues with this banner, including detecting cookies, rescanning when you want, and blocking non-essential scripts, among other things. The most recent update added a data request form, and the plugin keeps getting better as the team continues to improve it and listen to customer feedback. The lifetime plan is a deal!
25 de agosto de 2026
Although my websites are not commercial and do not contain any adverts, I have been aware for years that consent management and other similar features are becoming increasingly necessary. However, no plugin had really convinced me. Having had good experiences with other products from the same developers (SureForms and SureRank), I immediately took notice when SureCookie was launched. So I installed it on several websites and purchased the Pro version. Like the other products from the same developers, SureCookie is user-friendly. After setting it up and testing it on two or three websites, and thus familiarising myself with the interface and features, I was able to install it on other websites in just a few minutes per site. SureCookie is simple to configure, and its operation is largely automated. I was also able to install it on a website using four languages. Having encountered a few difficulties, I contacted support, who took the time to provide me with detailed and clear answers, and even checked my website to ensure everything was set up correctly. All this was done with patience and kindness: a support service that reads customers’ queries carefully and provides personalised responses rather than pre-formulated ones. These developers’ products are all of high quality, and the exceptional standard of support would deserve an extra star on top of the five given here, if that were possible.
24 de agosto de 2026
I’ve been looking for a reliable cookie management solution for a long time and when I saw this one, I knew it had potential. It’s so straightforward to set up and it does exactly what it needs to do. Additionally, the support is outstanding. I’ll be using this on all my wordpress sites from now on.
Leer todas las 14 reseñas

Colaboradores y desarrolladores

«SureCookie – GDPR Cookie Consent Banner, Cookie Scanner & Script Blocking» es un software de código abierto. Las siguientes personas han colaborado con este plugin.

Colaboradores

Registro de cambios

1.4.0 – 24-August-2026

  • New: A «Data Requests» screen where visitor GDPR and CCPA requests arrive and are tracked against their response deadline. Answering them is a SureCookie Pro feature; the free screen explains the workflow. ( https://surecookie.com/docs/handling-data-requests/ )
  • New: Import / Export for settings, cookie categories and custom cookies, so you can copy a configuration between sites or keep a backup. ( https://surecookie.com/docs/importing-and-exporting-surecookie-settings/ )
  • New: AI assistants now reach most of the plugin: a diagnostic summary of your setup, blocked scripts and embeds, the Known Services library, and the pages and menus your settings point to. ( https://surecookie.com/docs/surecookie-mcp-abilities/ )
  • New: Settings > Advanced > Blocked Content UI, for customizing the placeholder shown in place of blocked content. ( https://surecookie.com/docs/customizing-the-blocked-content-ui/ )
  • New: «Hide Unused Categories» under Manage Categories hides categories that have nothing on your site from the visitor preferences modal. Off by default.
  • New: Date filter on consent logs.
  • New: «Astra Global Palette» for banner colors, matching the Astra theme palette.
  • New: Ask an AI assistant to recategorize cookies in bulk, or to report your remaining scan allowance before it starts a scan.
  • New: Verify your domain with a DNS TXT record, for sites where a firewall or security plugin blocks our scanner. Allowlisting the scanner still works too. ( https://surecookie.com/docs/verifying-your-domain-with-a-dns-record/ )
  • Improvement: Every settings, Tracking Manager and Learn screen now links to its own documentation from the page header.
  • Improvement: Settings offered to an AI assistant now describe their allowed values and flag the ones that change what visitors see before they consent.
  • Improvement: Trackers that a plugin or theme injects with JavaScript after page load are now held behind consent, showing the usual «Accept & Load» placeholder.
  • Improvement: Script and embed matching is no longer case-sensitive.
  • Improvement: The «Managed by Google Consent Mode» list now notes that Consent Mode does not cover the non-Google tags you deploy through Tag Manager.
  • Improvement: Presto Player videos and embeds now follow the category set on the Scripts and Embeds page.
  • Improvement: Resources blocked by the built-in service list now appear on the Scripts and Embeds page, so you can change their category.
  • Improvement: The blocked-content message now says the content would connect to the service, instead of saying it requires cookies.
  • Compatibility: YouTube videos added with Elementor’s Video widget are now held behind consent, and play in place once accepted.
  • Compatibility: Fixed the banner not appearing when a caching plugin combines JavaScript, most often LiteSpeed Cache.
  • Compatibility: Improved cached CSS and JS handling with WP Rocket, W3 Total Cache, LiteSpeed Cache and Flying Press.
  • Compatibility: Fixed the admin dashboard shrinking when MemberPress Courses is active.
  • Fix: The Google Consent Mode screen now describes the rule actually in force, and warns you when a category is granted before the visitor answers the banner.
  • Fix: Blocking did nothing on sites using a performance plugin that inlines scripts as data: URIs, such as Perfmatters. Those scripts are now blocked like any other.
  • Fix: Sites using Google Consent Mode found almost no cookies when scanning. A scan now sees your site the way a visitor who has accepted would.
  • Fix: An AI assistant could not read or change any setting.
  • Fix: Banner and preferences modal descriptions now normalize non-breaking spaces and wrap long unbreakable content without overflowing.
  • Fix: Asking an AI assistant to scan a specific list of pages scanned the site’s default pages instead.
  • Fix: Changing a setting through an AI assistant no longer leaves caching plugins serving the old banner.
  • Fix: Consent log filters offered to an AI assistant were missing several actions and columns.
  • Fix: Blocking could silently stop on a page carrying one very large inline script, such as a page builder’s template data. Those pages are now rewritten correctly, and the limit is written to the scan log if it is ever reached.
  • Fix: On sites serving files through a CDN, blocking could hold back WordPress core and theme files instead of a tracker. Core files now always load, browser import maps and speculation rules are never held back, and asset-delivery CDNs are treated as Essential: Bunny, Kinsta, NitroPack, Optimole, StackPath, ImageKit, EWWW Easy IO, RocketCDN, CDN77, Statically, Jetpack Site Accelerator and BootstrapCDN.
  • Fix: Blocking and the consent banner did nothing on post types whose templates come from another plugin. Both now work whichever plugin renders the template.
  • Fix: A category set on a script or embed was ignored when the match was made on the script’s contents rather than its address.
  • Fix: «Do not block» was hidden whenever SureCookie Pro was active. There is now one option, on every site, that behaves the same with or without Pro.
  • Fix: «Accept & Load» did nothing on blocked videos in pages cached before this release. Those placeholders are now repaired in the browser.
  • Fix: The built-in service list stopped at 200 services, silently dropping later blocking patterns. The limit is raised and truncation is recorded in the scan log.
  • Fix: The Known Services confirmation, the Scripts and Embeds notice and the Detected and Managed Resources table each described blocking incorrectly.
  • Fix: When domain verification failed, SureCookie guessed at the reason and often guessed wrong. It now reports the reason the scanning service actually gave.

1.3.1 – 03-August-2026

  • Fix: Prevented duplicate cookies by ensuring scanned cookies with the same name are update existing entries instead of being added again.

1.3.0 – 03-August-2026

  • New: Introducing «Known Services», a library of popular third-party services (Google Analytics, Meta Pixel, YouTube, Stripe, Hotjar and more) that you can add in one click. Adding a service declares its cookies in your cookie list and cookie policy, and blocks its scripts and embeds until consent, without waiting for a scan to find them. The free plan includes 5 services; SureCookie Pro unlocks the full automated library of 150+ services. ( https://surecookie.com/docs/using-known-services/ )
  • New: Introducing Assisted Scanner mechanism i.e. «Scan from Your Browser», a fallback scan for sites where the hosting firewall blocks SureCookie Scanner agent. ( https://surecookie.com/docs/scanning-your-site-from-your-browser/ )
  • New: «Resource Blocking» has been rebuilt as the «Scripts and Embeds» page, a single list of every script and embed found on your site plus any you add yourself.
  • New: You can now choose the consent state Google Consent Mode starts from before a visitor answers the banner. A «Worldwide» rule sets the baseline for Functional, Analytics and Marketing / Ads storage, and the regional rules below it override that baseline for the countries you list, so a region such as the EU can stay denied while other regions start from your own setting. Everything stays denied until you change it, so existing sites are unaffected.
  • New: Under Scripts and Embeds, you can now add your own scripts and embeds to block, even if they are not detected by a scan. This is useful for scripts that only run on certain pages or under certain conditions, such as tag managers, marketing pixels, or custom embeds.
  • New: You can now change the category of several cookies at once. Select them on the All Cookies page and move them together, with a reminder of what a category change means for visitor consent.
  • New: Deleting a cookie category now asks where its cookies should go, with a «Move Cookies To» picker instead of always sending them to Uncategorized.
  • Improvement: The built-in service catalog has grown to 150+ services with reviewed categories, so services such as Stripe, Cloudflare Turnstile, hCaptcha and Google Sign-In are treated as Essential or Functional instead of falling into Marketing. The catalog also refreshes on its daily schedule as intended.
  • Improvement: The admin has been reorganized. «Cookie Manager» is now «Tracking Manager» and holds Scanning, Known Services, Cookies (All Cookies and Cookie Policy), Scripts and Embeds, Geographic Rules and Consent Sharing in one place.
  • Improvement: Reduced the plugin’s footprint on every page load. The scan log, active scan state, connection details and notice state are no longer loaded on requests that do not need them, and the scan log is capped at 500 lines so sites running automatic scans no longer grow it without limit.
  • Improvement: Hardened the security of the plugin.
  • Improvement: The review request now waits until your site has logged 30 visitor consents, instead of appearing after your first cookie scan, so it only shows up once SureCookie has demonstrably done its job. It also steps aside when another SureCookie notice is already on screen, and once you rate the plugin or choose «I already did» it stays away for every administrator on the site rather than just the one who answered.
  • Compatibility: If you use SureCookie Pro, update it to 1.1.0 or later alongside this release. Geographic Rules and Consent Sharing now live under Tracking Manager, and older Pro versions still register those pages at their previous location.
  • Fix: Consent log PDF exports breaks in right-to-left languages such as Arabic and Hebrew.
  • Fix: A cookie category you assign by hand is now remembered. Previously the next scan re-sorted that cookie using the scanner’s own classification and your change was lost, including when a cookie stopped being detected and came back later.
  • Fix: Security cookies and scripts found by a scan, such as captcha, bot protection and CSRF tokens, were filed as Marketing or left Uncategorized. They are now treated as Essential, so a visitor who declines marketing no longer breaks logins, forms and captchas on your site. Run a scan to re-sort anything already detected.
  • Fix: Google Consent Mode sent no consent signals at all on sites that load Google Tag Manager from their own domain or through server-side tagging. SureCookie looked for Google’s own script URLs to decide whether to act, and those setups have none, so neither the consent defaults nor the visitor’s later choice ever reached Google. With Google Consent Mode turned on, the consent defaults are now always set at the top of every page before your tags run, no matter how those tags are loaded, and the visitor’s choice is sent to Google as soon as they answer the banner.
  • Fix: The Provider and Duration columns showed «-» for every scanned cookie. Both now fill in, including on cookies already stored, so no rescan is needed.
  • Fix: Blocked embeds added to the page later, lazy loaded or loaded over AJAX, showed an empty box with no «Accept & Load» button.
  • Fix: The Google Consent Mode conflict warning for Site Kit never appeared in the WordPress admin.
  • Fix: Consent submissions returned an error when consent logging was turned off, even though the visitor’s choice was saved correctly.
  • Fix: Screen readers announced every blocked embed on a page with the same «Accept & Load» label; each button now names the service it will load.
  • Fix: Removed the «Replace data on next scan» toggle. It had no effect, as every scan already replaces the detected resource list.
  • Fix: Deactivating or uninstalling the plugin now clears the scheduled tasks and cached service data added in this release.
  • Tweak: Scan results now tell you what actually happened. Separate notices cover a scan blocked by your host, a scan that reached the site but found nothing, a scan taking longer than usual, and a scan that finished only part of its pages. A retry adds to what was already found instead of replacing it, and the completion notice now points at both places results land, the Cookies page and the Scripts and Embeds page.
  • Tweak: The Consent Logs table header now wraps on narrow screens instead of overflowing.
  • Tweak: Scans could sit at «Queued…» forever on hosts where WordPress cron does not run, even though the scan had already finished. Opening the Scanning screen now refreshes the status directly.
  • Tweak: When a hosting firewall blocked our scanner, the Scanning screen simply reported 0 cookies with no explanation. It now says the host blocked the scan, links to the allowlisting guide, and lists anything it could still detect. An invalid, expired or self-signed SSL certificate is now reported as a certificate problem rather than a firewall problem.

1.2.4 – 21-July-2026

  • Improvement: The banner button order setting now displays a notice, with a shortcut to your Geographic Targeting rules, explaining that visitors matched by a region-specific rule see that region’s button order instead of the global one.
  • Improvement: The admin «What’s New» panel no longer loads its font from Google’s servers, removing an external request while keeping its appearance unchanged.
  • Compatibility: SureCookie now blocks Presto Player video and audio embeds (YouTube, Vimeo, Bunny.net, self-hosted, and audio) until the visitor consents, showing an «Accept & Load» placeholder and restoring the player in place once the matching cookie category is accepted.
  • Fix: Licensed users no longer see a misleading «5 pages per scan» limit before their site connects with SureCookie; the cookie scanner now prompts them to run their first scan to unlock their plan’s full scan limits.
  • Fix: SureCookie Pro users can now activate their license during onboarding, so their premium plan and higher scan limits are detected correctly instead of the site being set up on the free tier.
  • Fix: Re-consent entry points (the shortcode button and menu item) now open the cookie preferences even when the consent banner is turned off site-wide, instead of appearing as unresponsive controls.
  • Fix: The SureCookie review request notice in the WordPress admin now displays its logo icon at the correct, compact size instead of appearing oversized.
  • Developer note: Custom post types can now be included in the site scanner and Cookie Policy pickers (and the automatic «All Published Content» scan scope) via the surecookie_searchable_post_types filter, with picker results grouped by content type. ( https://surecookie.com/docs/including-custom-post-types-in-scanning-and-the-cookie-policy-picker/ )

1.2.3 – 14-July-2026

  • Improvement: Added notification dot for unread consent logs in admin menu.
  • Improvement: The consent banner stylesheet now loads without blocking page render (served asynchronously), taking it off the critical rendering path and improving FCP / LCP / Lighthouse scores.
  • Improvement: The bundled Figtree fonts are now served as woff2 (about 60% smaller) and use font-display: swap, so banner text paints immediately in a fallback font and the fonts no longer sit on the critical path.
  • Fix: Accessibility issue with focus outlines for buttons and links in the banner interface.
  • Fix: Script blocking now works even if the remote list fails, using a built-in baseline of common third-party scripts.
  • Compatibility: SureCookie now activates cleanly on SQLite-based WordPress installs by skipping MySQL-only steps, fixing prior index and column errors.

1.2.2 – 10-July-2026

  • Fix: Enabling Resource Blocking could break the page layout on WordPress 7.0 sites using classic themes with block-based content – block and global styles were pushed into the page body instead of the header, inverting the CSS cascade and collapsing multi-column sections. Resource Blocking no longer interferes with WordPress 7.0’s on-demand block-style loading.
  • Fix: Blocked video embeds (Vimeo, YouTube, and other WordPress responsive embeds) no longer leave a large empty gap around the «content is blocked» placeholder. The placeholder now overlays the embed’s reserved aspect-ratio space instead of adding its own height on top of it.

1.2.1 – 09-July-2026

  • Improvement: Reduced the consent banner script (public.js) by over 96% – from ~1.4 MB to ~50 KB minified – by removing admin-only code that was bundled into the public page.
  • Improvement: Frontend scripts now load with the defer strategy and no longer pull in WordPress’s api-fetch library, shrinking the script dependency chain and improving LCP / Lighthouse scores.
  • Improvement: Consent-log delivery failures now log a console warning instead of failing silently.
  • Improvement: A misbehaving surecookie-pro’s floating widget can no longer prevent the consent banner from rendering.
  • Improvement: On local and development sites (localhost, .local, .localhost, and private/loopback IP ranges), cookie scanning is now blocked up front with a clear notice – instead of appearing to start and then failing – since the SureCookie agent app cannot reach a local site.
  • Compatibility: The consent banner now renders reliably alongside JS-delay/optimization plugins (e.g. WP Rocket, Perfmatters) that run scripts after the page has loaded.
  • Compatibility: The Cookie Policy page link, cookie category names and descriptions, and the Re-request Consent button label now translate via WPML and Polylang to match the active language.
  • Fix: Consent-log entries are no longer silently lost on pages served from a long-lived page cache – the banner now automatically refreshes its security token and retries.
  • Fix: Added .site, .test domain support to the SureCookie agent app for staging development environments for further testing and scanning.
  • Fix: The bullet-number lists in the messages editor now renders correctly when the description text includes HTML.
  • Fix: Deleting a core cookie category unable to process and stuck in the deleting state.
  • Fix: SureCookie agent’s auth details not getting deleted when the plugin’s «Delete Data on Uninstall» option is enabled.
  • Fix: «Powered by» label from the banner is not being translated with provided translation files.
  • Developer note: window.surecookieManager is available from DOMContentLoaded (never at HTML parse time). Integrations should use the surecookie_* events, and third-party scripts registering surecookie.* filters should be enqueued with the defer strategy.

1.2.0 – 25-June-2026

  • New: Introducing «Automatic Scanning» feature to keep your site compliant with regular interval scheduled scan.
  • New: Introducing «Re-request Consent» feature to allow admins to trigger a new consent request for all visitors.
  • New: Introducing «Background Overlay» option to the banner layout settings, which dims the page behind the banner until a choice is made.
  • New: Added highlighting logs count to the SureCookie admin menu > Logs, to show the number of new consent logs since the last visit.
  • Improvement: Added «Reset to Default» button for the Banner Content and Preference Modal Description fields, allowing admins to revert to default text easily.
  • Improvement: Updated scanning capacity sync with the SureCookie agent app for a more consistent scanning experience.
  • Fix: The content blocker scanner showed a block toggle for Google scripts managed by Google Consent Mode, even though the toggle had no effect. These resources now display an explanatory note instead, clarifying that Consent Mode manages them.
  • Fix: Deactivation conflict with other plugins resolved on network setup level.
  • Compatibility – Synced up Resource blocked scripts with Google consent mode scripts, so that the toggle is not shown for Google scripts managed by Consent Mode.

Older releases, including the 1.0.x and pre-release builds, are listed in the full SureCookie changelog.