Cookies
Every Set-Cookie header on the initial page load, including the flag set (Secure, HttpOnly, SameSite) and the observed domain scope.
PrivacyWatch fetches any public URL over HTTPS, inventories every cookie it sets and every third-party script it loads, classifies known trackers, and emails you a compliance summary. No JavaScript is executed on the target — you will always see exactly what we see.
No scan yet
Paste a URL above and we will surface every cookie and third-party script this page drops on visitors.
Every Set-Cookie header on the initial page load, including the flag set (Secure, HttpOnly, SameSite) and the observed domain scope.
Every external and inline <script> tag, with its host, the async / defer flag, and the module-type.
A hand-maintained list of cross-site trackers — analytics and advertising networks — is matched against every observation, with a per-script occurrence count.
document.cookie = ... are not observed; a full headless browser would be required for those.