{"id":287059,"date":"2026-03-23T13:45:01","date_gmt":"2026-03-23T13:45:01","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/surecookie\/"},"modified":"2026-08-24T09:20:02","modified_gmt":"2026-08-24T09:20:02","slug":"surecookie","status":"publish","type":"plugin","link":"https:\/\/bal.wordpress.org\/plugins\/surecookie\/","author":8309777,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"1.4.0","stable_tag":"1.4.0","tested":"7.0.4","requires":"6.7","requires_php":"7.4","requires_plugins":null,"header_name":"SureCookie","header_author":"SureCookie","header_description":"Smarter Cookie Consent solution.","assets_banners_color":"80ba9c","last_updated":"2026-08-24 09:20:02","external_support_url":"","external_repository_url":"","donate_link":"https:\/\/www.paypal.me\/BrainstormForce","header_plugin_uri":"https:\/\/surecookie.com","header_author_uri":"https:\/\/surecookie.com\/","rating":5,"author_block_rating":0,"active_installs":30000,"downloads":98720,"num_ratings":9,"support_threads":1,"support_threads_resolved":0,"author_block_count":0,"sections":["description","installation","faq","changelog"],"tags":{"0.0.0-alpha.1":{"tag":"0.0.0-alpha.1","author":"brainstormworg","date":"2026-03-23 13:44:41"},"0.0.0-alpha.2":{"tag":"0.0.0-alpha.2","author":"brainstormworg","date":"2026-03-31 12:01:34"},"0.0.0-alpha.3":{"tag":"0.0.0-alpha.3","author":"brainstormworg","date":"2026-04-03 10:33:49"},"0.0.1-beta.1":{"tag":"0.0.1-beta.1","author":"brainstormworg","date":"2026-04-13 12:37:59"},"0.0.1-beta.2":{"tag":"0.0.1-beta.2","author":"brainstormworg","date":"2026-05-01 07:55:53"},"0.0.1-beta.3":{"tag":"0.0.1-beta.3","author":"brainstormworg","date":"2026-05-19 11:59:04"},"0.0.1-beta.4":{"tag":"0.0.1-beta.4","author":"brainstormworg","date":"2026-05-20 10:13:05"},"1.0.0":{"tag":"1.0.0","author":"brainstormworg","date":"2026-06-08 10:25:02"},"1.1.0":{"tag":"1.1.0","author":"brainstormworg","date":"2026-06-15 10:40:38"},"1.2.0":{"tag":"1.2.0","author":"brainstormworg","date":"2026-06-29 04:29:37"},"1.2.1":{"tag":"1.2.1","author":"brainstormworg","date":"2026-07-09 05:41:13"},"1.2.2":{"tag":"1.2.2","author":"brainstormworg","date":"2026-07-10 12:17:32"},"1.2.3":{"tag":"1.2.3","author":"brainstormworg","date":"2026-07-14 10:54:53"},"1.2.4":{"tag":"1.2.4","author":"brainstormworg","date":"2026-07-21 11:31:46"},"1.3.0":{"tag":"1.3.0","author":"brainstormworg","date":"2026-08-03 12:55:47"},"1.3.1":{"tag":"1.3.1","author":"brainstormworg","date":"2026-08-03 14:35:35"},"1.4.0":{"tag":"1.4.0","author":"brainstormworg","date":"2026-08-24 09:20:02"}},"upgrade_notice":{"1.4.0":"<p>Adds Data Requests, Import \/ Export and a wider AI assistant surface. Fixes several cases where blocking silently did nothing: very large pages, post types templated by another plugin, and CDN-served sites. Recommended for every site.<\/p>","1.3.1":"<p>Cookies with the same name are no longer duplicated when scanned again. Scanned cookies now update existing entries instead of being added again.<\/p>","1.3.0":"<p>Adds the Known Services library, browser-based scanning for sites where the scanner is blocked, the new Scripts and Embeds page, bulk cookie category changes, remembered manual categories, and duplicate cookie fixes.<\/p>","1.2.0":"<p>Adds Re-request Consent, monthly automatic scanning foundation, scan history change detection, background overlay controls, consent log improvements, and better Google script handling.<\/p>","1.1.0":"<p>Adds AI Assistants integration, HTML support in banner content fields, improved settings organization, multilingual improvements, and cookie policy timestamp support.<\/p>","1.0.0":"<p>Initial public release of SureCookie.<\/p>"},"ratings":{"1":0,"2":0,"3":0,"4":0,"5":9},"assets_icons":{"icon-128x128.gif":{"filename":"icon-128x128.gif","revision":3498125,"resolution":"128x128","location":"assets","locale":"","width":128,"height":128},"icon-256x256.gif":{"filename":"icon-256x256.gif","revision":3498125,"resolution":"256x256","location":"assets","locale":"","width":256,"height":256}},"assets_banners":{"banner-1544x500.jpg":{"filename":"banner-1544x500.jpg","revision":3498125,"resolution":"1544x500","location":"assets","locale":"","width":1544,"height":500},"banner-772x250.jpg":{"filename":"banner-772x250.jpg","revision":3498125,"resolution":"772x250","location":"assets","locale":"","width":772,"height":250}},"assets_blueprints":{},"all_blocks":[],"tagged_versions":["0.0.0-alpha.1","0.0.0-alpha.2","0.0.0-alpha.3","0.0.1-beta.1","0.0.1-beta.2","0.0.1-beta.3","0.0.1-beta.4","1.0.0","1.1.0","1.2.0","1.2.1","1.2.2","1.2.3","1.2.4","1.3.0","1.3.1","1.4.0"],"block_files":[],"assets_screenshots":{"screenshot-1.jpg":{"filename":"screenshot-1.jpg","revision":3498125,"resolution":"1","location":"assets","locale":"","width":1504,"height":896},"screenshot-2.jpg":{"filename":"screenshot-2.jpg","revision":3498125,"resolution":"2","location":"assets","locale":"","width":1504,"height":896},"screenshot-3.jpg":{"filename":"screenshot-3.jpg","revision":3498125,"resolution":"3","location":"assets","locale":"","width":1504,"height":896},"screenshot-4.jpg":{"filename":"screenshot-4.jpg","revision":3498125,"resolution":"4","location":"assets","locale":"","width":1504,"height":896},"screenshot-5.jpg":{"filename":"screenshot-5.jpg","revision":3498125,"resolution":"5","location":"assets","locale":"","width":1504,"height":896},"screenshot-6.jpg":{"filename":"screenshot-6.jpg","revision":3498125,"resolution":"6","location":"assets","locale":"","width":1504,"height":896},"screenshot-7.jpg":{"filename":"screenshot-7.jpg","revision":3498125,"resolution":"7","location":"assets","locale":"","width":1504,"height":896}},"screenshots":{"1":"SureCookie dashboard overview.","2":"Cookie scan and detected cookies.","3":"Cookie banner customization.","4":"Preference modal customization.","5":"Resource blocking settings.","6":"Consent logs.","7":"Cookie policy page."}},"plugin_section":[],"plugin_tags":[166295,277201,20272,16626,27671],"plugin_category":[54],"plugin_contributors":[77954],"plugin_business_model":[],"class_list":["post-287059","plugin","type-plugin","status-publish","hentry","plugin_tags-ccpa","plugin_tags-consent-logs","plugin_tags-cookie-banner","plugin_tags-cookie-consent","plugin_tags-cookie-policy","plugin_category-security-and-spam-protection","plugin_contributors-brainstormforce","plugin_committers-brainstormforce","plugin_committers-brainstormworg","plugin_committers-patilvikasj","plugin_committers-pratikchaskar","plugin_committers-sujaypawar","plugin_support_reps-avi1020p","plugin_support_reps-brainstormteam","plugin_support_reps-namratabsf"],"banners":{"banner":"https:\/\/ps.w.org\/surecookie\/assets\/banner-772x250.jpg?rev=3498125","banner_2x":"https:\/\/ps.w.org\/surecookie\/assets\/banner-1544x500.jpg?rev=3498125","banner_rtl":false,"banner_2x_rtl":false},"icons":{"svg":false,"icon":"https:\/\/ps.w.org\/surecookie\/assets\/icon-128x128.gif?rev=3498125","icon_2x":"https:\/\/ps.w.org\/surecookie\/assets\/icon-256x256.gif?rev=3498125","generated":false},"screenshots":[{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-1.jpg?rev=3498125","caption":"SureCookie dashboard overview."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-2.jpg?rev=3498125","caption":"Cookie scan and detected cookies."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-3.jpg?rev=3498125","caption":"Cookie banner customization."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-4.jpg?rev=3498125","caption":"Preference modal customization."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-5.jpg?rev=3498125","caption":"Resource blocking settings."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-6.jpg?rev=3498125","caption":"Consent logs."},{"src":"https:\/\/ps.w.org\/surecookie\/assets\/screenshot-7.jpg?rev=3498125","caption":"Cookie policy page."}],"raw_content":"<!--section=description-->\n<p>SureCookie is a WordPress cookie consent plugin that helps you scan cookies, display a customizable cookie banner, block non-essential scripts before consent, and store consent logs inside your WordPress database.<\/p>\n\n<p>It is built for site owners, E-commerce stores, agencies, bloggers, and WordPress professionals who want more than a basic cookie notice. SureCookie helps you understand what cookies and third-party services are running on your site, lets visitors manage their choices, and gives you a practical consent workflow without visitor-based pricing.<\/p>\n\n<p>\ud83d\udc49 <a href=\"https:\/\/app.zipwp.com\/blueprint\/surecookie-n9i\" rel=\"noopener\">Try the live demo of SureCookie.<\/a><\/p>\n\n<p>[youtube https:\/\/www.youtube.com\/watch?v=IwU3Qa1VQYI]<\/p>\n\n<h4>Not Just a Cookie Banner<\/h4>\n\n<p>A cookie notice can tell visitors that your site uses cookies, but that alone does not manage consent. If analytics scripts, marketing pixels, video embeds, maps, or tag manager scripts run before visitors choose, the banner is only cosmetic. SureCookie connects the banner to the rest of the workflow: scan the site, review detected cookies, block non-essential scripts before consent, store consent logs locally, and keep your cookie policy easier to maintain.<\/p>\n\n<h4>How SureCookie Works<\/h4>\n\n<p>SureCookie follows a simple WordPress cookie consent workflow:<\/p>\n\n<ol>\n<li>Scan selected pages with the real browser cookie scanner.<\/li>\n<li>Review detected cookies, scripts, resources, and third-party domains.<\/li>\n<li>Organize cookies into consent categories such as Essential, Functional, Analytics, and Marketing.<\/li>\n<li>Enable script blocking so non-essential scripts wait for consent.<\/li>\n<li>Show the cookie consent banner and preference modal to visitors.<\/li>\n<li>Store consent logs locally in WordPress for review and export.<\/li>\n<li>Generate or connect a cookie policy page that reflects your cookie setup.<\/li>\n<\/ol>\n\n<p>This makes SureCookie more than a WordPress cookie banner. Many cookie plugins focus only on the visitor-facing notice, while SureCookie focuses on what happens before and after it: cookie detection, script blocking, consent records, and policy support.<\/p>\n\n<h4>Free Features Included<\/h4>\n\n<p>The WordPress.org version of SureCookie includes the core consent workflow:<\/p>\n\n<ul>\n<li>Cookie consent banner: Show a clean banner or notice for visitors.<\/li>\n<li>Preference modal: Let visitors review and manage cookie categories.<\/li>\n<li>Accept, Accept All, Decline, and Preferences buttons: Control the button text and order.<\/li>\n<li>Real browser cookie scanner: Scan selected pages using a browser-based scanning service.<\/li>\n<li>Cookie categories: Use Essential, Functional, Analytics, Marketing, and Uncategorized categories. See <a href=\"https:\/\/surecookie.com\/docs\/manage-cookie-categories\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=cookie_categories_docs\">managing cookie categories<\/a>.<\/li>\n<li>Custom cookies: Add and manage cookies manually when needed.<\/li>\n<li>Script blocking: Block non-essential scripts before consent is given.<\/li>\n<li>Resource blocking: Manage scripts, iframes, embeds, and objects found during scans.<\/li>\n<li>Consent logs: Store visitor choices inside your WordPress database.<\/li>\n<li>Consent log filters: Search and filter logs by action, country, IP, and session ID.<\/li>\n<li>Consent PDF export: Export individual consent records for documentation.<\/li>\n<li>Consent retention settings: Control how long consent logs are kept.<\/li>\n<li>Monthly automatic scanning: Schedule recurring scans on the free plan.<\/li>\n<li>Scan history and change detection: See what changed between scans, including newly detected cookies and domains.<\/li>\n<li>Rule-based category suggestions: Get suggested categories for newly detected cookies.<\/li>\n<li>Cookie policy page: Generate a page with dynamic cookie tables.<\/li>\n<li>Re-consent controls: Add a Cookie Preferences link through a shortcode or menu item.<\/li>\n<li>Re-request consent: Ask all visitors to review choices again when needed.<\/li>\n<li>Google Consent Mode support: Send consent states to supported Google services.<\/li>\n<li>WP Consent API support: Share consent state with compatible WordPress plugins.<\/li>\n<li>Multilingual support: Work with WPML and Polylang for banner and admin text.<\/li>\n<li>RTL support: Display frontend cookie policy content correctly for RTL languages.<\/li>\n<li>MCP and WordPress Abilities support: Enable AI assistant access to SureCookie management actions when supported.<\/li>\n<li>No visitor-based limits: SureCookie does not charge by traffic or monthly visitors.<\/li>\n<\/ul>\n\n<h4>Free vs Pro Clarity<\/h4>\n\n<p>Everything listed above is in the free plugin. Advanced workflows are reserved for SureCookie Pro: weekly automatic scans, email scan digests, auto-apply behavior, compliance guard workflows, <a href=\"https:\/\/surecookie.com\/docs\/how-to-set-up-geographic-targeting\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=geo_targeting_docs\">geographic targeting<\/a> (which applies CCPA-style opt-out rules per region), and consent forwarding. Compare on the <a href=\"https:\/\/surecookie.com\/features\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=features_page\">features<\/a> page or see <a href=\"https:\/\/surecookie.com\/pricing\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=pricing_page\">plans and pricing<\/a>.<\/p>\n\n<h4>Real Browser Cookie Scanner<\/h4>\n\n<p>SureCookie uses a browser-based scanning service at <a href=\"https:\/\/library.surecookie.com\/\">https:\/\/library.surecookie.com\/<\/a> to inspect selected pages. See how the <a href=\"https:\/\/surecookie.com\/docs\/cookie-scanner\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=cookie_scanner_docs\">cookie scanner<\/a> works.<\/p>\n\n<p>Instead of only reading static HTML, the scanner loads your pages in a real browser environment. This helps detect cookies and resources that appear after page load, through tag managers, or through third-party scripts.<\/p>\n\n<p>The scanner can help identify:<\/p>\n\n<ul>\n<li>Analytics, marketing, advertising, functional, and preference cookies<\/li>\n<li>WooCommerce and WordPress session cookies<\/li>\n<li>Third-party domains and resources<\/li>\n<li>Tag manager loaded and dynamically injected scripts<\/li>\n<\/ul>\n\n<h4>Monthly Automatic Scanning<\/h4>\n\n<p>When enabled, SureCookie runs scheduled monthly scans through WP-Cron. The scan uses the same scanner engine, respects the configured scan scope, and records the latest scan history. Full setup is in the <a href=\"https:\/\/surecookie.com\/docs\/automatic-scheduled-scanning\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=auto_scanning_docs\">automatic scheduled scanning<\/a> guide.<\/p>\n\n<p>The scan history can show:<\/p>\n\n<ul>\n<li>Newly detected cookies<\/li>\n<li>Removed cookies<\/li>\n<li>Recategorized cookies<\/li>\n<li>Newly detected third-party domains<\/li>\n<li>Whether the scan was manual or automatic<\/li>\n<li>The last scan date and cookie count<\/li>\n<\/ul>\n\n<h4>Script Blocking Before Consent<\/h4>\n\n<p>SureCookie can block non-essential scripts before the visitor gives consent.<\/p>\n\n<p>When blocking is enabled, SureCookie processes the frontend HTML and converts matching resources so they do not execute until the relevant cookie category is allowed. It can handle scripts as well as embedded content such as iframes, embeds, and objects.<\/p>\n\n<p>This matters because a banner alone does not stop tracking. SureCookie is designed to connect consent choices with technical enforcement.<\/p>\n\n<p>The script blocker also includes safeguards so it skips admin pages, REST requests, AJAX requests, feeds, JSON responses, XML responses, and scanner bypass requests. The <a href=\"https:\/\/surecookie.com\/docs\/resource-blocking\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=resource_blocking_docs\">resource and script blocking<\/a> guide covers how scripts, iframes and embeds are matched.<\/p>\n\n<h4>Customizable Banner and Preferences<\/h4>\n\n<p>SureCookie gives you control over the visitor-facing consent experience.<\/p>\n\n<p>You can customize:<\/p>\n\n<ul>\n<li>Banner message and description<\/li>\n<li>Rich text banner content<\/li>\n<li>Accept, Accept All, Decline, and Preferences button labels<\/li>\n<li>Button order<\/li>\n<li>Banner position and width<\/li>\n<li>Banner logo<\/li>\n<li>Banner animation<\/li>\n<li>Background overlay<\/li>\n<li>Preference modal heading and description<\/li>\n<li>Cookie category labels and descriptions<\/li>\n<li>Custom CSS<\/li>\n<\/ul>\n\n<p>Visitors can accept all cookies, decline non-essential cookies, or open the preferences modal and choose specific categories. See <a href=\"https:\/\/surecookie.com\/docs\/customizing-banner-content\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=banner_content_docs\">customizing banner content<\/a> and <a href=\"https:\/\/surecookie.com\/docs\/customizing-banner-layout\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=banner_layout_docs\">banner layout<\/a> for every option, and <a href=\"https:\/\/surecookie.com\/docs\/custom-css-for-banner-styling\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=banner_css_docs\">custom CSS for banner styling<\/a> if you need finer control.<\/p>\n\n<h4>Consent Logs Stored Locally<\/h4>\n\n<p>SureCookie stores consent records inside your WordPress database.<\/p>\n\n<p>This is different from many SaaS consent management platforms where consent records live on an external platform. With SureCookie, your consent logs stay on your WordPress site and can be reviewed from the admin area.<\/p>\n\n<p>Consent logs can include:<\/p>\n\n<ul>\n<li>User session ID<\/li>\n<li>Consent action, such as accepted, declined, or partially accepted<\/li>\n<li>Cookie category preferences<\/li>\n<li>Masked IP address<\/li>\n<li>Timestamp<\/li>\n<li>Country<\/li>\n<\/ul>\n\n<p>Admins can view, search, filter, delete, and export logs from WordPress. SureCookie also includes retention settings so you can control how long logs are kept. See <a href=\"https:\/\/surecookie.com\/docs\/understanding-surecookie-logs\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=consent_logs_docs\">understanding consent logs<\/a> and <a href=\"https:\/\/surecookie.com\/docs\/exporting-consent-logs-pdf-csv\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=consent_logs_export_docs\">exporting consent logs to PDF or CSV<\/a>.<\/p>\n\n<h4>Cookie Policy Page and Generator<\/h4>\n\n<p>SureCookie includes a cookie policy generator that can create a Cookie Policy page for your website.<\/p>\n\n<p>The generated page uses native WordPress blocks and includes a dynamic shortcode that displays cookie tables grouped by category and provider. The cookie policy content can include:<\/p>\n\n<ul>\n<li>Cookie categories<\/li>\n<li>Cookie names<\/li>\n<li>Purpose or description<\/li>\n<li>Duration<\/li>\n<li>Domain<\/li>\n<li>Last updated timestamp<\/li>\n<li>A table of contents when multiple categories are available<\/li>\n<\/ul>\n\n<p>You can edit the generated policy page in the WordPress editor and keep the dynamic cookie table connected to your scanned and manually added cookies. Walkthrough: <a href=\"https:\/\/surecookie.com\/docs\/how-to-generate-cookie-policy-page\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=cookie_policy_docs\">how to generate a cookie policy page<\/a>.<\/p>\n\n<h4>Re-Consent and Re-Request Consent<\/h4>\n\n<p>Visitors should be able to change their choices later.<\/p>\n\n<p>SureCookie includes a re-consent shortcode:<\/p>\n\n<pre><code>[surecookie_reconsent_button]\n<\/code><\/pre>\n\n<p>You can use it to add a Cookie Preferences button on your site. SureCookie can also add a virtual Cookie Preferences item to a selected WordPress navigation menu.<\/p>\n\n<p>Admins can also re-request consent from all visitors. This is useful after updating your cookie policy, adding new tracking tools, changing categories, or making a major consent workflow change. See the <a href=\"https:\/\/surecookie.com\/docs\/re-consent\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=reconsent_docs\">re-consent<\/a> guide.<\/p>\n\n<h4>Google Consent Mode<\/h4>\n\n<p>When enabled, SureCookie sends consent states for supported Google services and updates them when visitors change their preferences. Setup steps: <a href=\"https:\/\/surecookie.com\/docs\/setting-up-google-consent-mode-v2\/?utm_source=wporg&amp;utm_medium=readme&amp;utm_campaign=core_plugin&amp;utm_content=consent_mode_docs\">setting up Google Consent Mode v2<\/a>. It maps SureCookie categories to Google consent signals, detects Google services from enqueued scripts or the page HTML, and hides block toggles that Google Consent Mode already manages.<\/p>\n\n<h4>WP Consent API<\/h4>\n\n<p>SureCookie reads its consent cookie and syncs the visitor's consent state so compatible WordPress plugins can check consent using the standardized WP Consent API flow.<\/p>\n\n<p>Default category mapping includes:<\/p>\n\n<ul>\n<li>Essential to functional<\/li>\n<li>Functional to preferences<\/li>\n<li>Analytics to statistics<\/li>\n<li>Marketing to marketing<\/li>\n<\/ul>\n\n<p>Developers can customize mappings through filters.<\/p>\n\n<h4>Multilingual and RTL Support<\/h4>\n\n<p>SureCookie includes multilingual compatibility for WPML and Polylang.<\/p>\n\n<p>It can register and translate banner text, button labels, preference modal text, category labels, and related frontend strings. It also includes RTL support for cookie policy layouts.<\/p>\n\n<h4>MCP and WordPress Abilities<\/h4>\n\n<p>When enabled, AI assistants and compatible tools can use structured SureCookie abilities to manage settings, cookie categories, consent logs, cookie management, and site scanner actions. Scanner start actions still require care because they contact an external scanning service.<\/p>\n\n<h4>Who Should Use SureCookie?<\/h4>\n\n<p>SureCookie is a good fit for:<\/p>\n\n<ul>\n<li>WordPress site owners and agencies who need a cookie consent banner across client sites<\/li>\n<li>E-commerce stores and publishers using analytics, ads, pixels, embeds, or marketing tools<\/li>\n<li>Businesses running tag managers, heatmaps, video embeds, maps, forms, or CRM and conversion tracking<\/li>\n<li>Developers who want a WordPress-native consent workflow with hooks and APIs, and consent logs kept inside WordPress<\/li>\n<\/ul>\n\n<h4>Important Legal Note<\/h4>\n\n<p>SureCookie provides technical tools for cookie scanning, script blocking, consent collection, consent logging, and cookie policy management.<\/p>\n\n<p>No WordPress plugin can guarantee legal compliance on its own. Privacy and cookie requirements depend on your website, visitors, region, policies, data processing practices, and legal obligations. For legal advice, consult a qualified legal professional.<\/p>\n\n<h3>External Services<\/h3>\n\n<p>SureCookie uses external services for cookie scanning, site verification, and geolocation.<\/p>\n\n<h4>Cookie Scanning<\/h4>\n\n<p>SureCookie connects to <a href=\"https:\/\/library.surecookie.com\/\">https:\/\/library.surecookie.com\/<\/a> to provide real browser-based cookie scanning and smart categorization.<\/p>\n\n<p>When you run a scan, SureCookie sends the selected page URLs to the scanning service. A browser-based scanner visits those pages and detects cookies, scripts, resources, and third-party domains.<\/p>\n\n<h4>Scanner Registration and Authentication<\/h4>\n\n<p>Before the first scan, SureCookie performs a one-time registration handshake with <code>library.surecookie.com\/api\/register<\/code>.<\/p>\n\n<p>The request sends:<\/p>\n\n<ul>\n<li>Site URL<\/li>\n<li>WordPress admin email<\/li>\n<li>SureCookie version<\/li>\n<li>A temporary installation nonce (one-time, random)<\/li>\n<\/ul>\n\n<p>The scanning service verifies the site through a temporary REST endpoint, then returns site-specific credentials and a verification token. These credentials are stored locally in a non-autoloaded WordPress option and are used for authenticated scan requests.<\/p>\n\n<h4>Consent IP Logs and Region Detection<\/h4>\n\n<p>For consent logging and country detection, visitor IP addresses may be processed through MaxMind-backed region detection through SureCookie's service. This helps SureCookie record the country in the consent log.<\/p>\n\n<p>IP addresses are masked before being stored in your WordPress database.<\/p>\n\n<p>MaxMind attribution: <a href=\"https:\/\/www.maxmind.com\">https:\/\/www.maxmind.com<\/a><\/p>\n\n<h4>Service URLs<\/h4>\n\n<ul>\n<li>SureCookie scanning and geolocation service: <a href=\"https:\/\/library.surecookie.com\/\">https:\/\/library.surecookie.com\/<\/a><\/li>\n<li>SureCookie privacy policy: <a href=\"https:\/\/surecookie.com\/privacy-policy\/\">https:\/\/surecookie.com\/privacy-policy\/<\/a><\/li>\n<li>MaxMind: <a href=\"https:\/\/www.maxmind.com\">https:\/\/www.maxmind.com<\/a><\/li>\n<\/ul>\n\n<h3>Data Stored Locally<\/h3>\n\n<p>SureCookie stores plugin settings and consent data in your WordPress database.<\/p>\n\n<p>This can include:<\/p>\n\n<ul>\n<li>Banner and preference modal settings<\/li>\n<li>Cookie categories<\/li>\n<li>Custom cookies<\/li>\n<li>Scanned cookies<\/li>\n<li>Scanned resources<\/li>\n<li>Scan history<\/li>\n<li>Consent logs<\/li>\n<li>Cookie policy page ID<\/li>\n<li>Automatic scan settings<\/li>\n<li>Scanner credentials<\/li>\n<\/ul>\n\n<p>Consent logs and scan results can be viewed, exported, or deleted from the WordPress admin.<\/p>\n\n<h3>Privacy and Data Processing<\/h3>\n\n<p>SureCookie processes data through its API service at <code>library.surecookie.com<\/code> for cookie scanning, scanner authentication, and region-aware consent logging. Here is what happens and why.<\/p>\n\n<h4>What We Send to SureCookie Services<\/h4>\n\n<p>During the one-time scanner registration and site verification flow, SureCookie sends the site URL, the WordPress administrator email, the SureCookie version, and a temporary installation nonce. The scanning service uses these to verify your site and issue credentials, then returns a verification token that SureCookie exposes at a temporary REST endpoint for domain verification.<\/p>\n\n<p>After registration, scan requests use site-specific credentials stored locally in WordPress and do not resend the admin email.<\/p>\n\n<p>When a scan runs, SureCookie sends selected page URLs to the scanning service so a real browser can detect cookies, scripts, resources, and third-party domains.<\/p>\n\n<h4>What Is Processed and Why<\/h4>\n\n<ul>\n<li>Cookie scanning: Selected page URLs are scanned in a real browser environment to detect cookies, scripts, resources, and third-party domains.<\/li>\n<li>Cookie categorization: Detected cookie details, such as names, domains, and durations, are used to help categorize cookies.<\/li>\n<li>Region detection: Visitor IP addresses may be processed through MaxMind-backed region detection to determine country-level location for consent logs. IP addresses are masked before being stored in your WordPress database.<\/li>\n<li>Consent records: Consent choices, timestamps, category preferences, and session details are logged locally in your WordPress database.<\/li>\n<\/ul>\n\n<h4>Where Data Lives<\/h4>\n\n<ul>\n<li>Consent logs, scan results, settings, and scanner credentials are stored in your WordPress database.<\/li>\n<li>Data sent to <code>library.surecookie.com<\/code> for scanning and geolocation may be temporarily processed for those features.<\/li>\n<li>SureCookie does not sell this data or use it for advertising.<\/li>\n<\/ul>\n\n<h4>Data Retention and Control<\/h4>\n\n<ul>\n<li>Consent logs and scan results can be viewed, exported, or deleted from your WordPress admin.<\/li>\n<li>Consent log retention periods are configurable in plugin settings.<\/li>\n<li>Scanner credentials are stored locally in a non-autoloaded WordPress option.<\/li>\n<\/ul>\n\n<h4>Security<\/h4>\n\n<ul>\n<li>API communication uses HTTPS.<\/li>\n<li>Scan requests use authenticated site credentials after the registration flow.<\/li>\n<li>Site credentials are used to sign later scan requests.<\/li>\n<\/ul>\n\n<p>Because visitor data and selected page URLs can be processed through SureCookie services, you should mention this in your site's privacy policy where appropriate.<\/p>\n\n<p>Full details: <a href=\"https:\/\/surecookie.com\/privacy-policy\/\">https:\/\/surecookie.com\/privacy-policy\/<\/a><\/p>\n\n<p>For questions about data processing, visit <a href=\"https:\/\/surecookie.com\/support\/\">https:\/\/surecookie.com\/support\/<\/a>.<\/p>\n\n<h3>Useful Links<\/h3>\n\n<ul>\n<li><a href=\"https:\/\/surecookie.com\/\">SureCookie Website<\/a><\/li>\n<li><a href=\"https:\/\/surecookie.com\/docs\/\">Documentation<\/a><\/li>\n<li><a href=\"https:\/\/wordpress.org\/support\/plugin\/surecookie\/\">Support Forum<\/a><\/li>\n<li><a href=\"https:\/\/surecookie.com\/privacy-policy\/\">Privacy Policy<\/a><\/li>\n<li><a href=\"https:\/\/app.zipwp.com\/blueprint\/surecookie-n9i\">Live Demo<\/a><\/li>\n<\/ul>\n\n<h3>About Brainstorm Force<\/h3>\n\n<p>SureCookie is built by Brainstorm Force, the team behind Astra and other widely used WordPress products.<\/p>\n\n<!--section=installation-->\n<ol>\n<li>Upload the plugin files to the <code>\/wp-content\/plugins\/surecookie<\/code> directory, or install the plugin through the WordPress Plugins screen.<\/li>\n<li>Activate SureCookie from the Plugins screen.<\/li>\n<li>Go to the SureCookie dashboard in WordPress.<\/li>\n<li>Configure your banner content, cookie categories, and consent settings.<\/li>\n<li>Select pages and run a cookie scan.<\/li>\n<li>Review detected cookies and resources.<\/li>\n<li>Enable script blocking if you want non-essential scripts blocked before consent.<\/li>\n<li>Generate or connect your Cookie Policy page.<\/li>\n<li>Test the banner and preference modal on the frontend.<\/li>\n<\/ol>\n\n<!--section=faq-->\n<dl>\n<dt id=\"is%20surecookie%20a%20consent%20management%20platform%3F\"><h3>Is SureCookie a consent management platform?<\/h3><\/dt>\n<dd><p>SureCookie provides consent management features inside WordPress, including a cookie banner, preference modal, cookie scanner, script blocking, consent logs, and cookie policy support. It is not a SaaS platform that charges by visitor count.<\/p><\/dd>\n<dt id=\"can%20surecookie%20be%20used%20as%20a%20cookie%20blocker%3F\"><h3>Can SureCookie be used as a cookie blocker?<\/h3><\/dt>\n<dd><p>Yes. When script blocking is enabled, SureCookie can act as a cookie blocker for non-essential scripts and embedded resources until the visitor gives consent for the related category.<\/p><\/dd>\n<dt id=\"does%20surecookie%20help%20with%20cookie%20compliance%3F\"><h3>Does SureCookie help with cookie compliance?<\/h3><\/dt>\n<dd><p>SureCookie helps with the technical parts of cookie compliance, such as scanning cookies, showing a consent banner, blocking non-essential scripts, storing consent logs, and maintaining a cookie policy page. It does not replace legal advice or guarantee compliance by itself.<\/p><\/dd>\n<dt id=\"is%20surecookie%20just%20a%20cookie%20banner%20plugin%3F\"><h3>Is SureCookie just a cookie banner plugin?<\/h3><\/dt>\n<dd><p>No. SureCookie includes a cookie banner, but it also includes cookie scanning, script blocking, consent logs, cookie policy page support, re-consent controls, Google Consent Mode, WP Consent API, and monthly automatic scanning in the free plugin.<\/p><\/dd>\n<dt id=\"what%20features%20are%20included%20in%20the%20free%20plugin%3F\"><h3>What features are included in the free plugin?<\/h3><\/dt>\n<dd><p>The free plugin includes the banner, preference modal, real browser cookie scanner, custom cookies, script blocking, consent logs, consent log export, cookie policy page generation, re-consent button, re-request consent, monthly automatic scanning, scan history, Google Consent Mode, WP Consent API, multilingual support, and no visitor-based limits.<\/p><\/dd>\n<dt id=\"how%20does%20the%20cookie%20scanner%20work%3F\"><h3>How does the cookie scanner work?<\/h3><\/dt>\n<dd><p>SureCookie sends selected page URLs to <code>library.surecookie.com<\/code>, where a browser-based scanner loads the pages and detects cookies, third-party domains, scripts, and resources. This helps detect cookies that may not appear in static HTML.<\/p><\/dd>\n<dt id=\"does%20surecookie%20support%20automatic%20scanning%3F\"><h3>Does SureCookie support automatic scanning?<\/h3><\/dt>\n<dd><p>Yes. The free plugin includes monthly automatic scanning through WP-Cron. Weekly scanning, email digests, auto-apply, and compliance guard behavior are Pro extensions.<\/p><\/dd>\n<dt id=\"can%20surecookie%20show%20what%20changed%20between%20scans%3F\"><h3>Can SureCookie show what changed between scans?<\/h3><\/dt>\n<dd><p>Yes. SureCookie records the latest scan history and can show newly detected cookies, removed cookies, recategorized cookies, and new third-party domains.<\/p><\/dd>\n<dt id=\"can%20surecookie%20block%20scripts%20before%20consent%3F\"><h3>Can SureCookie block scripts before consent?<\/h3><\/dt>\n<dd><p>Yes. SureCookie can block non-essential scripts and embedded resources before consent is given. It can process scripts, iframes, embeds, and objects when blocking is enabled.<\/p><\/dd>\n<dt id=\"does%20surecookie%20support%20google%20consent%20mode%3F\"><h3>Does SureCookie support Google Consent Mode?<\/h3><\/dt>\n<dd><p>Yes. SureCookie includes Google Consent Mode support and can update Google consent signals based on visitor choices.<\/p><\/dd>\n<dt id=\"does%20surecookie%20support%20wp%20consent%20api%3F\"><h3>Does SureCookie support WP Consent API?<\/h3><\/dt>\n<dd><p>Yes. SureCookie can sync consent state with WP Consent API so compatible plugins can read consent through the standardized API.<\/p><\/dd>\n<dt id=\"can%20visitors%20change%20their%20consent%20choices%20later%3F\"><h3>Can visitors change their consent choices later?<\/h3><\/dt>\n<dd><p>Yes. Visitors can reopen the preferences modal through the settings button, a shortcode, or a configured menu item.<\/p><\/dd>\n<dt id=\"what%20shortcode%20opens%20cookie%20preferences%3F\"><h3>What shortcode opens Cookie Preferences?<\/h3><\/dt>\n<dd><p>You can use this shortcode:<\/p>\n\n<pre><code>[surecookie_reconsent_button]\n<\/code><\/pre>\n\n<p>It renders a Cookie Preferences button that opens the preferences modal.<\/p><\/dd>\n<dt id=\"can%20i%20re-request%20consent%20from%20all%20visitors%3F\"><h3>Can I re-request consent from all visitors?<\/h3><\/dt>\n<dd><p>Yes. SureCookie includes a Re-request Consent option. When used, existing consent is treated as stale and visitors are asked to make a new choice.<\/p><\/dd>\n<dt id=\"are%20consent%20logs%20stored%20locally%3F\"><h3>Are consent logs stored locally?<\/h3><\/dt>\n<dd><p>Yes. Consent logs are stored in your WordPress database. Logs can include the action, preferences, timestamp, masked IP address, country, and session ID.<\/p><\/dd>\n<dt id=\"can%20i%20export%20consent%20logs%3F\"><h3>Can I export consent logs?<\/h3><\/dt>\n<dd><p>Yes. SureCookie supports consent log PDF export for individual records.<\/p><\/dd>\n<dt id=\"does%20surecookie%20generate%20a%20cookie%20policy%20page%3F\"><h3>Does SureCookie generate a cookie policy page?<\/h3><\/dt>\n<dd><p>Yes. SureCookie can generate a WordPress page with editable policy content and a dynamic cookie table shortcode.<\/p><\/dd>\n<dt id=\"does%20surecookie%20work%20with%20woocommerce%3F\"><h3>Does SureCookie work with WooCommerce?<\/h3><\/dt>\n<dd><p>Yes. SureCookie is designed for WordPress sites, including E-commerce stores. It can recognize common WooCommerce session cookies as essential during classification.<\/p><\/dd>\n<dt id=\"does%20surecookie%20work%20with%20multilingual%20websites%3F\"><h3>Does SureCookie work with multilingual websites?<\/h3><\/dt>\n<dd><p>Yes. SureCookie includes WPML and Polylang compatibility for banner text, preference modal text, category labels, and other frontend strings.<\/p><\/dd>\n<dt id=\"does%20surecookie%20support%20rtl%20languages%3F\"><h3>Does SureCookie support RTL languages?<\/h3><\/dt>\n<dd><p>Yes. SureCookie includes RTL styling support, including for the cookie policy page.<\/p><\/dd>\n<dt id=\"does%20surecookie%20include%20ai%20assistant%20support%3F\"><h3>Does SureCookie include AI assistant support?<\/h3><\/dt>\n<dd><p>SureCookie includes MCP and WordPress Abilities integration for supported setups. When enabled, compatible AI assistants can interact with structured SureCookie management actions.<\/p><\/dd>\n<dt id=\"will%20surecookie%20slow%20down%20my%20website%3F\"><h3>Will SureCookie slow down my website?<\/h3><\/dt>\n<dd><p>SureCookie is designed to stay lightweight on the frontend. Script blocking runs only where needed and skips admin, AJAX, REST, feeds, JSON, and XML responses.<\/p><\/dd>\n<dt id=\"are%20there%20visitor%20limits%3F\"><h3>Are there visitor limits?<\/h3><\/dt>\n<dd><p>No. SureCookie does not charge by visitors, traffic, or pageviews.<\/p><\/dd>\n<dt id=\"does%20surecookie%20guarantee%20gdpr%20or%20ccpa%20compliance%3F\"><h3>Does SureCookie guarantee GDPR or CCPA compliance?<\/h3><\/dt>\n<dd><p>No. SureCookie provides tools for cookie consent workflows, but no plugin can guarantee legal compliance by itself. Your compliance depends on your site, region, policies, and data practices. Please consult a legal professional for legal advice.<\/p><\/dd>\n<dt id=\"what%20data%20is%20sent%20to%20external%20services%3F\"><h3>What data is sent to external services?<\/h3><\/dt>\n<dd><p>For cookie scanning, selected page URLs and site verification details are sent to <code>library.surecookie.com<\/code>. For country detection in consent logs, visitor IP addresses may be processed through the SureCookie service using MaxMind-backed data.<\/p><\/dd>\n\n<\/dl>\n\n<!--section=changelog-->\n<h4>1.4.0 - 24-August-2026<\/h4>\n\n<ul>\n<li>New: A \"Data Requests\" screen where visitor GDPR and CCPA requests arrive and are tracked against their response deadline. Answering them is a SureCookie Pro feature; the free screen explains the workflow. ( https:\/\/surecookie.com\/docs\/handling-data-requests\/ )<\/li>\n<li>New: Import \/ Export for settings, cookie categories and custom cookies, so you can copy a configuration between sites or keep a backup. ( https:\/\/surecookie.com\/docs\/importing-and-exporting-surecookie-settings\/ )<\/li>\n<li>New: AI assistants now reach most of the plugin: a diagnostic summary of your setup, blocked scripts and embeds, the Known Services library, and the pages and menus your settings point to. ( https:\/\/surecookie.com\/docs\/surecookie-mcp-abilities\/ )<\/li>\n<li>New: Settings &gt; Advanced &gt; Blocked Content UI, for customizing the placeholder shown in place of blocked content. ( https:\/\/surecookie.com\/docs\/customizing-the-blocked-content-ui\/ )<\/li>\n<li>New: \"Hide Unused Categories\" under Manage Categories hides categories that have nothing on your site from the visitor preferences modal. Off by default.<\/li>\n<li>New: Date filter on consent logs.<\/li>\n<li>New: \"Astra Global Palette\" for banner colors, matching the Astra theme palette.<\/li>\n<li>New: Ask an AI assistant to recategorize cookies in bulk, or to report your remaining scan allowance before it starts a scan.<\/li>\n<li>New: Verify your domain with a DNS TXT record, for sites where a firewall or security plugin blocks our scanner. Allowlisting the scanner still works too. ( https:\/\/surecookie.com\/docs\/verifying-your-domain-with-a-dns-record\/ )<\/li>\n<li>Improvement: Every settings, Tracking Manager and Learn screen now links to its own documentation from the page header.<\/li>\n<li>Improvement: Settings offered to an AI assistant now describe their allowed values and flag the ones that change what visitors see before they consent.<\/li>\n<li>Improvement: Trackers that a plugin or theme injects with JavaScript after page load are now held behind consent, showing the usual \"Accept &amp; Load\" placeholder.<\/li>\n<li>Improvement: Script and embed matching is no longer case-sensitive.<\/li>\n<li>Improvement: The \"Managed by Google Consent Mode\" list now notes that Consent Mode does not cover the non-Google tags you deploy through Tag Manager.<\/li>\n<li>Improvement: Presto Player videos and embeds now follow the category set on the Scripts and Embeds page.<\/li>\n<li>Improvement: Resources blocked by the built-in service list now appear on the Scripts and Embeds page, so you can change their category.<\/li>\n<li>Improvement: The blocked-content message now says the content would connect to the service, instead of saying it requires cookies.<\/li>\n<li>Compatibility: YouTube videos added with Elementor's Video widget are now held behind consent, and play in place once accepted.<\/li>\n<li>Compatibility: Fixed the banner not appearing when a caching plugin combines JavaScript, most often LiteSpeed Cache.<\/li>\n<li>Compatibility: Improved cached CSS and JS handling with WP Rocket, W3 Total Cache, LiteSpeed Cache and Flying Press.<\/li>\n<li>Compatibility: Fixed the admin dashboard shrinking when MemberPress Courses is active.<\/li>\n<li>Fix: The Google Consent Mode screen now describes the rule actually in force, and warns you when a category is granted before the visitor answers the banner.<\/li>\n<li>Fix: Blocking did nothing on sites using a performance plugin that inlines scripts as data: URIs, such as Perfmatters. Those scripts are now blocked like any other.<\/li>\n<li>Fix: Sites using Google Consent Mode found almost no cookies when scanning. A scan now sees your site the way a visitor who has accepted would.<\/li>\n<li>Fix: An AI assistant could not read or change any setting.<\/li>\n<li>Fix: Banner and preferences modal descriptions now normalize non-breaking spaces and wrap long unbreakable content without overflowing.<\/li>\n<li>Fix: Asking an AI assistant to scan a specific list of pages scanned the site's default pages instead.<\/li>\n<li>Fix: Changing a setting through an AI assistant no longer leaves caching plugins serving the old banner.<\/li>\n<li>Fix: Consent log filters offered to an AI assistant were missing several actions and columns.<\/li>\n<li>Fix: Blocking could silently stop on a page carrying one very large inline script, such as a page builder's template data. Those pages are now rewritten correctly, and the limit is written to the scan log if it is ever reached.<\/li>\n<li>Fix: On sites serving files through a CDN, blocking could hold back WordPress core and theme files instead of a tracker. Core files now always load, browser import maps and speculation rules are never held back, and asset-delivery CDNs are treated as Essential: Bunny, Kinsta, NitroPack, Optimole, StackPath, ImageKit, EWWW Easy IO, RocketCDN, CDN77, Statically, Jetpack Site Accelerator and BootstrapCDN.<\/li>\n<li>Fix: Blocking and the consent banner did nothing on post types whose templates come from another plugin. Both now work whichever plugin renders the template.<\/li>\n<li>Fix: A category set on a script or embed was ignored when the match was made on the script's contents rather than its address.<\/li>\n<li>Fix: \"Do not block\" was hidden whenever SureCookie Pro was active. There is now one option, on every site, that behaves the same with or without Pro.<\/li>\n<li>Fix: \"Accept &amp; Load\" did nothing on blocked videos in pages cached before this release. Those placeholders are now repaired in the browser.<\/li>\n<li>Fix: The built-in service list stopped at 200 services, silently dropping later blocking patterns. The limit is raised and truncation is recorded in the scan log.<\/li>\n<li>Fix: The Known Services confirmation, the Scripts and Embeds notice and the Detected and Managed Resources table each described blocking incorrectly.<\/li>\n<li>Fix: When domain verification failed, SureCookie guessed at the reason and often guessed wrong. It now reports the reason the scanning service actually gave.<\/li>\n<\/ul>\n\n<h4>1.3.1 - 03-August-2026<\/h4>\n\n<ul>\n<li>Fix: Prevented duplicate cookies by ensuring scanned cookies with the same name are update existing entries instead of being added again.<\/li>\n<\/ul>\n\n<h4>1.3.0 - 03-August-2026<\/h4>\n\n<ul>\n<li>New: Introducing \"Known Services\", a library of popular third-party services (Google Analytics, Meta Pixel, YouTube, Stripe, Hotjar and more) that you can add in one click. Adding a service declares its cookies in your cookie list and cookie policy, and blocks its scripts and embeds until consent, without waiting for a scan to find them. The free plan includes 5 services; SureCookie Pro unlocks the full automated library of 150+ services. ( https:\/\/surecookie.com\/docs\/using-known-services\/ )<\/li>\n<li>New: Introducing Assisted Scanner mechanism i.e. \"Scan from Your Browser\", a fallback scan for sites where the hosting firewall blocks SureCookie Scanner agent. ( https:\/\/surecookie.com\/docs\/scanning-your-site-from-your-browser\/ )<\/li>\n<li>New: \"Resource Blocking\" has been rebuilt as the \"Scripts and Embeds\" page, a single list of every script and embed found on your site plus any you add yourself.<\/li>\n<li>New: You can now choose the consent state Google Consent Mode starts from before a visitor answers the banner. A \"Worldwide\" rule sets the baseline for Functional, Analytics and Marketing \/ Ads storage, and the regional rules below it override that baseline for the countries you list, so a region such as the EU can stay denied while other regions start from your own setting. Everything stays denied until you change it, so existing sites are unaffected.<\/li>\n<li>New: Under Scripts and Embeds, you can now add your own scripts and embeds to block, even if they are not detected by a scan. This is useful for scripts that only run on certain pages or under certain conditions, such as tag managers, marketing pixels, or custom embeds.<\/li>\n<li>New: You can now change the category of several cookies at once. Select them on the All Cookies page and move them together, with a reminder of what a category change means for visitor consent.<\/li>\n<li>New: Deleting a cookie category now asks where its cookies should go, with a \"Move Cookies To\" picker instead of always sending them to Uncategorized.<\/li>\n<li>Improvement: The built-in service catalog has grown to 150+ services with reviewed categories, so services such as Stripe, Cloudflare Turnstile, hCaptcha and Google Sign-In are treated as Essential or Functional instead of falling into Marketing. The catalog also refreshes on its daily schedule as intended.<\/li>\n<li>Improvement: The admin has been reorganized. \"Cookie Manager\" is now \"Tracking Manager\" and holds Scanning, Known Services, Cookies (All Cookies and Cookie Policy), Scripts and Embeds, Geographic Rules and Consent Sharing in one place.<\/li>\n<li>Improvement: Reduced the plugin's footprint on every page load. The scan log, active scan state, connection details and notice state are no longer loaded on requests that do not need them, and the scan log is capped at 500 lines so sites running automatic scans no longer grow it without limit.<\/li>\n<li>Improvement: Hardened the security of the plugin.<\/li>\n<li>Improvement: The review request now waits until your site has logged 30 visitor consents, instead of appearing after your first cookie scan, so it only shows up once SureCookie has demonstrably done its job. It also steps aside when another SureCookie notice is already on screen, and once you rate the plugin or choose \"I already did\" it stays away for every administrator on the site rather than just the one who answered.<\/li>\n<li>Compatibility: If you use SureCookie Pro, update it to 1.1.0 or later alongside this release. Geographic Rules and Consent Sharing now live under Tracking Manager, and older Pro versions still register those pages at their previous location.<\/li>\n<li>Fix: Consent log PDF exports breaks in right-to-left languages such as Arabic and Hebrew.<\/li>\n<li>Fix: A cookie category you assign by hand is now remembered. Previously the next scan re-sorted that cookie using the scanner's own classification and your change was lost, including when a cookie stopped being detected and came back later.<\/li>\n<li>Fix: Security cookies and scripts found by a scan, such as captcha, bot protection and CSRF tokens, were filed as Marketing or left Uncategorized. They are now treated as Essential, so a visitor who declines marketing no longer breaks logins, forms and captchas on your site. Run a scan to re-sort anything already detected.<\/li>\n<li>Fix: Google Consent Mode sent no consent signals at all on sites that load Google Tag Manager from their own domain or through server-side tagging. SureCookie looked for Google's own script URLs to decide whether to act, and those setups have none, so neither the consent defaults nor the visitor's later choice ever reached Google. With Google Consent Mode turned on, the consent defaults are now always set at the top of every page before your tags run, no matter how those tags are loaded, and the visitor's choice is sent to Google as soon as they answer the banner.<\/li>\n<li>Fix: The Provider and Duration columns showed \"-\" for every scanned cookie. Both now fill in, including on cookies already stored, so no rescan is needed.<\/li>\n<li>Fix: Blocked embeds added to the page later, lazy loaded or loaded over AJAX, showed an empty box with no \"Accept &amp; Load\" button.<\/li>\n<li>Fix: The Google Consent Mode conflict warning for Site Kit never appeared in the WordPress admin.<\/li>\n<li>Fix: Consent submissions returned an error when consent logging was turned off, even though the visitor's choice was saved correctly.<\/li>\n<li>Fix: Screen readers announced every blocked embed on a page with the same \"Accept &amp; Load\" label; each button now names the service it will load.<\/li>\n<li>Fix: Removed the \"Replace data on next scan\" toggle. It had no effect, as every scan already replaces the detected resource list.<\/li>\n<li>Fix: Deactivating or uninstalling the plugin now clears the scheduled tasks and cached service data added in this release.<\/li>\n<li>Tweak: Scan results now tell you what actually happened. Separate notices cover a scan blocked by your host, a scan that reached the site but found nothing, a scan taking longer than usual, and a scan that finished only part of its pages. A retry adds to what was already found instead of replacing it, and the completion notice now points at both places results land, the Cookies page and the Scripts and Embeds page.<\/li>\n<li>Tweak: The Consent Logs table header now wraps on narrow screens instead of overflowing.<\/li>\n<li>Tweak: Scans could sit at \"Queued...\" forever on hosts where WordPress cron does not run, even though the scan had already finished. Opening the Scanning screen now refreshes the status directly.<\/li>\n<li>Tweak: When a hosting firewall blocked our scanner, the Scanning screen simply reported 0 cookies with no explanation. It now says the host blocked the scan, links to the allowlisting guide, and lists anything it could still detect. An invalid, expired or self-signed SSL certificate is now reported as a certificate problem rather than a firewall problem.<\/li>\n<\/ul>\n\n<h4>1.2.4 - 21-July-2026<\/h4>\n\n<ul>\n<li>Improvement: The banner button order setting now displays a notice, with a shortcut to your Geographic Targeting rules, explaining that visitors matched by a region-specific rule see that region's button order instead of the global one.<\/li>\n<li>Improvement: The admin \"What's New\" panel no longer loads its font from Google's servers, removing an external request while keeping its appearance unchanged.<\/li>\n<li>Compatibility: SureCookie now blocks Presto Player video and audio embeds (YouTube, Vimeo, Bunny.net, self-hosted, and audio) until the visitor consents, showing an \"Accept &amp; Load\" placeholder and restoring the player in place once the matching cookie category is accepted.<\/li>\n<li>Fix: Licensed users no longer see a misleading \"5 pages per scan\" limit before their site connects with SureCookie; the cookie scanner now prompts them to run their first scan to unlock their plan's full scan limits.<\/li>\n<li>Fix: SureCookie Pro users can now activate their license during onboarding, so their premium plan and higher scan limits are detected correctly instead of the site being set up on the free tier.<\/li>\n<li>Fix: Re-consent entry points (the shortcode button and menu item) now open the cookie preferences even when the consent banner is turned off site-wide, instead of appearing as unresponsive controls.<\/li>\n<li>Fix: The SureCookie review request notice in the WordPress admin now displays its logo icon at the correct, compact size instead of appearing oversized.<\/li>\n<li>Developer note: Custom post types can now be included in the site scanner and Cookie Policy pickers (and the automatic \"All Published Content\" scan scope) via the <code>surecookie_searchable_post_types<\/code> filter, with picker results grouped by content type. ( https:\/\/surecookie.com\/docs\/including-custom-post-types-in-scanning-and-the-cookie-policy-picker\/ )<\/li>\n<\/ul>\n\n<h4>1.2.3 - 14-July-2026<\/h4>\n\n<ul>\n<li>Improvement: Added notification dot for unread consent logs in admin menu.<\/li>\n<li>Improvement: The consent banner stylesheet now loads without blocking page render (served asynchronously), taking it off the critical rendering path and improving FCP \/ LCP \/ Lighthouse scores.<\/li>\n<li>Improvement: The bundled Figtree fonts are now served as woff2 (about 60% smaller) and use font-display: swap, so banner text paints immediately in a fallback font and the fonts no longer sit on the critical path.<\/li>\n<li>Fix: Accessibility issue with focus outlines for buttons and links in the banner interface.<\/li>\n<li>Fix: Script blocking now works even if the remote list fails, using a built-in baseline of common third-party scripts.<\/li>\n<li>Compatibility: SureCookie now activates cleanly on SQLite-based WordPress installs by skipping MySQL-only steps, fixing prior index and column errors.<\/li>\n<\/ul>\n\n<h4>1.2.2 - 10-July-2026<\/h4>\n\n<ul>\n<li>Fix: Enabling Resource Blocking could break the page layout on WordPress 7.0 sites using classic themes with block-based content - block and global styles were pushed into the page body instead of the header, inverting the CSS cascade and collapsing multi-column sections. Resource Blocking no longer interferes with WordPress 7.0's on-demand block-style loading.<\/li>\n<li>Fix: Blocked video embeds (Vimeo, YouTube, and other WordPress responsive embeds) no longer leave a large empty gap around the \"content is blocked\" placeholder. The placeholder now overlays the embed's reserved aspect-ratio space instead of adding its own height on top of it.<\/li>\n<\/ul>\n\n<h4>1.2.1 - 09-July-2026<\/h4>\n\n<ul>\n<li>Improvement: Reduced the consent banner script (public.js) by over 96% - from ~1.4 MB to ~50 KB minified - by removing admin-only code that was bundled into the public page.<\/li>\n<li>Improvement: Frontend scripts now load with the defer strategy and no longer pull in WordPress's api-fetch library, shrinking the script dependency chain and improving LCP \/ Lighthouse scores.<\/li>\n<li>Improvement: Consent-log delivery failures now log a console warning instead of failing silently.<\/li>\n<li>Improvement: A misbehaving surecookie-pro's floating widget can no longer prevent the consent banner from rendering.<\/li>\n<li>Improvement: On local and development sites (localhost, .local, .localhost, and private\/loopback IP ranges), cookie scanning is now blocked up front with a clear notice - instead of appearing to start and then failing - since the SureCookie agent app cannot reach a local site.<\/li>\n<li>Compatibility: The consent banner now renders reliably alongside JS-delay\/optimization plugins (e.g. WP Rocket, Perfmatters) that run scripts after the page has loaded.<\/li>\n<li>Compatibility: The Cookie Policy page link, cookie category names and descriptions, and the Re-request Consent button label now translate via WPML and Polylang to match the active language.<\/li>\n<li>Fix: Consent-log entries are no longer silently lost on pages served from a long-lived page cache - the banner now automatically refreshes its security token and retries.<\/li>\n<li>Fix: Added .site, .test domain support to the SureCookie agent app for staging development environments for further testing and scanning.<\/li>\n<li>Fix: The bullet-number lists in the messages editor now renders correctly when the description text includes HTML.<\/li>\n<li>Fix: Deleting a core cookie category unable to process and stuck in the deleting state.<\/li>\n<li>Fix: SureCookie agent's auth details not getting deleted when the plugin's \"Delete Data on Uninstall\" option is enabled.<\/li>\n<li>Fix: \"Powered by\" label from the banner is not being translated with provided translation files.<\/li>\n<li>Developer note: <code>window.surecookieManager<\/code> is available from DOMContentLoaded (never at HTML parse time). Integrations should use the <code>surecookie_*<\/code> events, and third-party scripts registering <code>surecookie.*<\/code> filters should be enqueued with the defer strategy.<\/li>\n<\/ul>\n\n<h4>1.2.0 - 25-June-2026<\/h4>\n\n<ul>\n<li>New: Introducing \"Automatic Scanning\" feature to keep your site compliant with regular interval scheduled scan.<\/li>\n<li>New: Introducing \"Re-request Consent\" feature to allow admins to trigger a new consent request for all visitors.<\/li>\n<li>New: Introducing \"Background Overlay\" option to the banner layout settings, which dims the page behind the banner until a choice is made.<\/li>\n<li>New: Added highlighting logs count to the SureCookie admin menu &gt; Logs, to show the number of new consent logs since the last visit.<\/li>\n<li>Improvement: Added \"Reset to Default\" button for the Banner Content and Preference Modal Description fields, allowing admins to revert to default text easily.<\/li>\n<li>Improvement: Updated scanning capacity sync with the SureCookie agent app for a more consistent scanning experience.<\/li>\n<li>Fix: The content blocker scanner showed a block toggle for Google scripts managed by Google Consent Mode, even though the toggle had no effect. These resources now display an explanatory note instead, clarifying that Consent Mode manages them.<\/li>\n<li>Fix: Deactivation conflict with other plugins resolved on network setup level.<\/li>\n<li>Compatibility - Synced up Resource blocked scripts with Google consent mode scripts, so that the toggle is not shown for Google scripts managed by Consent Mode.<\/li>\n<\/ul>\n\n<p>Older releases, including the 1.0.x and pre-release builds, are listed in the <a href=\"https:\/\/surecookie.com\/changelog\/\">full SureCookie changelog<\/a>.<\/p>","raw_excerpt":"Cookie consent banner with real browser scanning, script blocking, Google Consent Mode, GDPR\/CCPA consent logs, and a cookie policy page.","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/287059","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=287059"}],"author":[{"embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/brainstormforce"}],"wp:attachment":[{"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=287059"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=287059"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=287059"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=287059"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=287059"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/bal.wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=287059"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}