GDPRChecker

Home / Knowledge Base / How Does CookieYes Work Regarding Pages Per Scan: A Practical Guide for Website Owners

Website Compliance

How Does CookieYes Work Regarding Pages Per Scan: A Practical Guide for Website Owners

This guide explains how CookieYes's pages-per-scan setting affects GDPR compliance, offering step-by-step implementation, common mistakes, and validation using GDPRChecker. It includes a comparison table, real-world examples, a checklist, and FAQs to help website owners ensure complete cookie coverage.

Author

GDPRChecker Editorial Team

Reviewed by

Privacy & Compliance Research Team

Last updated

August 2026

Reading time

11 min read

Educational guidance for compliance readiness — not legal advice. Requirements vary by jurisdiction and your specific processing activities.

Introduction

*Updated for 2026 compliance practices.*

Understanding how CookieYes works regarding pages per scan is essential for website owners who want to maintain GDPR compliance without surprises. When you deploy a consent management platform (CMP) like CookieYes, the scanner crawls your site to detect cookies and trackers, but the number of pages it scans directly affects the completeness of your cookie inventory. This guide explains what pages-per-scan means in practice, how it influences your compliance posture, and how to verify your setup using GDPRChecker’s scanning tools. We’ll cover implementation steps, common pitfalls, and a validation checklist—all grounded in official guidance from the European Data Protection Board and GDPR.eu.

What Is Pages Per Scan in CookieYes?

Pages per scan refers to the maximum number of unique URLs that CookieYes will crawl during a single scan of your website. This setting determines how deeply the scanner explores your site to build a cookie inventory. For example, if your plan allows 100 pages per scan, CookieYes will visit up to 100 distinct pages, following internal links from your starting URL. It then identifies cookies set by your own domain and third-party services, categorizes them, and populates your cookie declaration.

Why does this matter for GDPR compliance? Under the GDPR’s transparency principle, you must provide users with accurate information about the cookies and trackers your site uses. If your scan misses pages—especially those with embedded videos, forms, or e-commerce checkouts—you might overlook cookies that require consent. The EDPB emphasizes that consent must be informed, meaning your cookie list must be complete. A limited pages-per-scan setting can create gaps in your inventory, leading to non-compliance.

CookieYes typically offers tiered plans with different scan limits. A basic plan might scan 100 pages, while higher tiers allow thousands. The scanner starts at your homepage and follows links, but it won’t crawl password-protected areas or pages excluded by robots.txt. Understanding this limit helps you plan your scan strategy and decide if you need to upgrade or supplement with manual checks.

How Pages Per Scan Affects Compliance Requirements

Your GDPR obligations don’t change based on your CMP’s scan limit, but your ability to meet them does. The regulation requires you to: - Obtain prior consent for non-essential cookies (Article 6). - Provide clear and comprehensive information about cookies (Article 13). - Maintain records of consent (Article 7).

If CookieYes scans only a fraction of your site, you risk an incomplete cookie declaration. For instance, a blog with 500 articles might have different third-party embeds on older posts. A 100-page scan could miss those, leaving cookies undisclosed. This is a common mistake we’ll explore later.

Google’s Consent Mode v2 adds another layer. It requires accurate signaling of user consent choices to Google tags. If your scan misses pages where Google Analytics or Ads tags fire without consent checks, you could break Consent Mode’s requirements. Our guide on consent mode v2 vs google certified cmp explains the distinction, but the key point is: your scanner must cover all pages where Google services run.

Step-by-Step Implementation: Configuring Pages Per Scan

Here’s how to set up and optimize your CookieYes scan for maximum coverage:

  1. **Determine your site’s size**: Count your public pages. Use a sitemap or a tool like Screaming Frog to get an accurate number. If you have more pages than your plan’s limit, prioritize.
  2. **Set the starting URL**: Usually your homepage. CookieYes will crawl from there. Ensure your site’s internal linking is solid so the scanner can discover pages naturally.
  3. **Adjust scan frequency**: CookieYes can run recurring scans. Set a schedule that matches your update frequency—weekly for active sites, monthly for static ones.
  4. **Exclude irrelevant pages**: Use the exclusion list to skip admin pages, thank-you pages, or staging environments. This saves your scan quota for real user-facing pages.
  5. **Run a manual scan**: Trigger a scan and review the results. Check the number of pages crawled versus your total. If it’s lower than expected, investigate broken links or redirects.
  6. **Supplement with manual checks**: For pages beyond your scan limit, manually inspect them using browser developer tools or GDPRChecker’s scanner (more on that below).

**Example**: A small e-commerce site with 200 product pages, a blog with 50 posts, and standard pages (contact, about) totals ~260 pages. On a 100-page plan, CookieYes might scan the homepage, category pages, and top products, but miss older blog posts. You’d need to manually check those or upgrade.

Common Mistakes and How to Avoid Them

Many website owners stumble on pages-per-scan limits. Here are the top mistakes and fixes:

  1. **Assuming one scan covers everything**: Even if your plan says “100 pages,” the scanner might crawl fewer due to JavaScript-rendered links or slow load times. Always verify the actual count in the scan report.
  2. **Ignoring dynamic content**: Pages with infinite scroll or AJAX-loaded content may not reveal all cookies in a single scan. Use GDPRChecker to test specific user journeys.
  3. **Forgetting subdomains**: CookieYes scans the domain you configure. If you have a blog on a subdomain (blog.example.com), you need a separate scan or a plan that covers it.
  4. **Not rescanning after changes**: Adding a new plugin, changing your analytics setup, or embedding a video can introduce new cookies. Rescan immediately and update your cookie banner. Our guide on [common cookie banner mistakes](/guides/common-cookie-banner-mistakes) highlights how outdated banners lead to non-compliance.
  5. **Overlooking pre-consent requests**: Some cookies fire before the user interacts with the banner. If your scan doesn’t catch these, you’re in violation. Use a tool like GDPRChecker to [test your cookie banner before consent](/guides/test-cookie-banner-before-consent).

**Real-world example**: A news site used CookieYes on a 500-page plan but only scanned 200 pages because its article archives were behind a “load more” button. The scanner missed 300 pages with third-party ad cookies. They fixed it by adding XML sitemap URLs to the scan configuration.

How to Validate with GDPRChecker

GDPRChecker complements CookieYes by providing an independent verification layer. While CookieYes builds your inventory, GDPRChecker audits your live site for compliance gaps. Here’s how to use it:

  1. **Run a public scan**: Enter your URL and let GDPRChecker crawl your pages. It checks for pre-consent network requests, banner behavior, and policy links.
  2. **Review the report**: Look for “pre-consent requests”—cookies or trackers that fired before consent. If any appear, your CookieYes configuration might be blocking too late.
  3. **Check page coverage**: GDPRChecker shows how many pages it scanned. Compare this to your CookieYes scan. If GDPRChecker finds cookies on pages CookieYes missed, you have a gap.
  4. **Test specific flows**: Use GDPRChecker’s scanner to simulate user journeys (e.g., landing on a blog post, adding an item to cart). This reveals cookies that only fire on certain pages.
  5. **Monitor over time**: Set up recurring scans in GDPRChecker to catch new cookies as your site evolves.

For a deeper dive into scanner differences, see our comparison of gdpr scanner vs gdpr checker. Remember, GDPRChecker is a verification tool, not a CMP. It won’t block cookies, but it will tell you if your CMP is working.

Comparison: CookieYes Pages Per Scan vs. Manual Verification

| Aspect | CookieYes Scanner | Manual Verification with GDPRChecker | |--------|-------------------|--------------------------------------| | Coverage | Limited by plan; automated crawl | On-demand; you choose pages to test | | Depth | Follows internal links; may miss JS-heavy pages | Can test specific user interactions | | Cookie detection | Identifies cookies set during crawl | Detects network requests in real-time | | Consent validation | Checks if banner is present | Verifies if cookies fire before consent | | Reporting | Generates cookie declaration | Provides compliance score and gap analysis | | Best for | Building initial inventory | Auditing and ongoing monitoring |

**Example**: A SaaS company used CookieYes to scan 500 pages and found 20 cookies. GDPRChecker scanned 50 key pages and found 5 additional cookies on a pricing page that loaded a chat widget. The widget’s cookies weren’t in the CookieYes inventory because the scanner didn’t trigger the chat.

Implementation Checklist

Use this checklist to ensure your pages-per-scan setup is airtight:

  1. Count total public pages on your site.
  2. Confirm your CookieYes plan’s pages-per-scan limit.
  3. Configure the scan to start from your homepage.
  4. Add your XML sitemap URL to the scan settings if supported.
  5. Exclude non-user-facing pages (admin, staging).
  6. Run a manual scan and note the number of pages crawled.
  7. Compare crawled pages to your total page count.
  8. Manually inspect any high-risk pages not scanned (checkout, forms).
  9. Use GDPRChecker to scan for pre-consent requests on key pages.
  10. Update your cookie declaration with any missing cookies.
  11. Set a recurring scan schedule in CookieYes.
  12. Document your scan configuration and results for accountability.

FAQ

What is how does cookieyes work regarding pages per scan? Pages per scan is the maximum number of URLs CookieYes will crawl in one scan to detect cookies. It determines how much of your site is covered in the cookie inventory. If your site has more pages than the limit, some may be missed, requiring manual checks.

Do I need how does cookieyes work regarding pages per scan for GDPR? Yes, because GDPR requires a complete and accurate cookie declaration. If your scan misses pages, you might not disclose all cookies, violating transparency rules. You must ensure your scan covers all pages where cookies are set.

How do I implement how does cookieyes work regarding pages per scan? Start by counting your site’s pages. Configure CookieYes with your starting URL, set exclusions, and run a scan. Compare the crawled count to your total. For pages beyond the limit, manually inspect them or upgrade your plan.

How can I verify how does cookieyes work regarding pages per scan with a scanner? Use GDPRChecker to scan your site independently. It checks for cookies and pre-consent requests on any page you specify. Compare its findings to your CookieYes inventory to identify gaps. See our guide on what does a gdpr checker test.

What are common how does cookieyes work regarding pages per scan mistakes? Common mistakes include assuming the scanner covers all pages, ignoring dynamic content, forgetting subdomains, not rescanning after site changes, and overlooking pre-consent cookies. Always verify scan results and supplement with manual checks.

Which cookies and trackers should I check for how does cookieyes work regarding pages per scan? Check for analytics cookies (Google Analytics), marketing cookies (Facebook Pixel), functional cookies (chat widgets), and any third-party embeds (YouTube, Vimeo). Pay special attention to cookies that fire before consent, as these are a compliance risk.

How often should I review how does cookieyes work regarding pages per scan? Review your scan coverage monthly or whenever you add new pages, plugins, or third-party services. Set recurring scans in CookieYes and use GDPRChecker for spot checks after major updates.

What evidence should I keep for how does cookieyes work regarding pages per scan? Keep records of your scan configuration, the number of pages scanned, the cookie inventory generated, and any manual checks performed. This documentation demonstrates your efforts to maintain compliance if questioned by a supervisory authority.

Next Steps for Compliance

Understanding how CookieYes works regarding pages per scan is just one piece of the compliance puzzle. To close gaps and improve your score, integrate regular scanning with GDPRChecker. Our tool helps you improve your gdpr compliance score by identifying pre-consent requests, banner issues, and policy gaps. Start with a free scan today and ensure every page on your site respects user consent.

Next step

Run a GDPRChecker scan to validate consent behavior, trackers, and disclosures after you implement the checklist above.

Practical examples

Example 1: A small ecommerce site

A shop changes its cookie banner wording before a seasonal campaign. The operator records the previous and new banner version, tests Reject all and Accept all, and stores screenshots plus the resulting network checks. That creates a clear before-and-after record without relying on memory.

Example 2: A B2B lead-generation site

A marketing team adds a form analytics tag through its tag manager. Before publishing, it documents the consent category, the tag trigger, the privacy notice update, and a test showing that the request does not fire after a visitor rejects optional cookies.

Example 3: A multi-page content site

An editor notices that a new embedded video adds a third-party request. The team scans the affected pages, compares the result with the last scan, updates the cookie disclosure if necessary, and keeps the scan report with the deployment reference.

> This guide is technical implementation guidance for website owners. It is not legal advice.

Article schema

```json { "@context": "https://schema.org", "@type": "Article", "headline": "How Does CookieYes Work Regarding Pages Per Scan: A Practical Guide for Website Owners", "description": "Understand how CookieYes handles pages per scan, its impact on GDPR compliance, and how to verify your setup with GDPRChecker's scanner. Practical steps, common mistakes, and a complete checklist.", "mainEntityOfPage": { "@type": "WebPage", "@id": "https://www.gdprchecker.online/guides/how-does-cookieyes-work-regarding-pages-per-scan" }, "publisher": { "@type": "Organization", "name": "GDPRChecker", "url": "https://www.gdprchecker.online" } } ```

GDPRChecker guides are educational resources and do not constitute legal advice. Use them to understand technical and operational privacy requirements, and consult qualified counsel for legal interpretation.

Check Your Website in Under 60 Seconds

  • No signup required
  • GDPR-focused checks
  • Cookie banner detection
  • Privacy policy verification