Executive dashboard
14-day consent trend, compliance checklist, top domains by acceptance rate, synthetic activity KPIs.
- 14-day consent trend
- Dynamic compliance checklist
- Top 4 domains by acceptance rate
- 4 KPIs: domains, consents, rate, compliance
A consent platform is not just a banner. It's the junction point between your site, your marketing, your security and the law. Palladium Cookies handles that junction end-to-end — and speaks the language of all your tools.
Banner compliant with GDPR art. 7 and 4(11), proof register art. 30, data-subject rights art. 12-22, processing art. 28. CNIL guidelines followed.
ePrivacy directive, CNIL and EDPB guidelines, Spanish LSSI-CE, German TTDSG, US GPC. Automatic detection of visitor jurisdiction.
PBKDF2-HMAC-SHA256 password hashing (210k iterations, per-user salt), optional TOTP MFA RFC 6238, RBAC, HttpOnly + Secure + SameSite sessions, session rotation via SecurityStamp. OpenID Connect SSO under development.
Google Consent Mode v2, IAB TCF 2.2, Meta Pixel, Microsoft Clarity, LinkedIn, TikTok. Tag managers, CRM, CMS, e-commerce — already wired.
Async snippet served from a multi-PoP CDN. No Largest Contentful Paint blocking. Core Web Vitals compatible.
EU hosting by default, Art. 28 DPA, EU subprocessors prioritised, transfers framed by 2021 SCCs and TIA.
Each module addresses a concrete need: compliance, management, measurement, integration. Here is what ships, per module, with applicable plans.
14-day consent trend, compliance checklist, top domains by acceptance rate, synthetic activity KPIs.
Add, suspend, archive. Lifecycle status. Per-domain tracking of cookie count, acceptance rate and latest scan.
Palladium's visual differentiator. 8 layouts, 9 animations, 6 fonts, gradients, shadows, badges, multi-language — all in a visual editor.
Each detected cookie: name, category, vendor, duration, type, description, injection mode. Search, filters, bulk classification.
Multi-page crawl, HTML analysis, native recognition of over 70 major third-party cookies, regex heuristics for first-party cookies, Set-Cookie header capture.
Consent ID, UTC timestamp, per-purpose flags, SHA-256 IP hash, coarse geolocation. Statistical summary. CSV / JSON export for audit.
Leaflet map: circle size = volume, colour = acceptance rate. Top 15 countries, top 25 cities. Time and domain filters. A/B testing included.
Regulatory compliance dashboard with score, exportable CNIL report and auto-remediation suggestions.
Ready-to-paste HTML snippet (defer attribute), dedicated tabs for HTML / React / Next.js / Shopify / WordPress, one-click install verifier.
API reference, cURL / Node.js / Python snippets, GDPR best-practice guides, template library, status page, changelog, FAQ.
Multi-user console with 4 roles, active / inactive state management, granular per-domain permissions on Business+.
Operator-only console: customer account list, per-account KPIs, bulk operations. Ideal for digital agencies and resellers.
Real-time domain and consent meters, visual bars, billing history, prorated upgrade and downgrade paths.
Documented endpoints, real-time signed webhooks on consent events, per-domain bcrypt-hashed API keys, full request logging.
Pricing-page tool: prospect inputs (monthly visits, domains, legal hours), outputs (recommended plan, cost, projected savings).
Automatic visitor-jurisdiction detection, automatic switching of consent model (opt-in / opt-out), adherence to current standards.
GDPR, authentication, partner ecosystem. Here is what is covered and who we work with, in detail.
Consent end-to-end, no blind spot.
No weak link on the identity side.
Keep your stack. We speak its language.
The scanner crawls your pages, analyses the HTML and automatically categorises every known third-party cookie. For the rest, regex heuristics take over on first-party cookies.
Documented OpenAPI 3.1, signed webhooks, official JavaScript and server SDKs. Anything doable in the UI is doable via the API.
/v1/consent
/v1/consent/{id}
/v1/consent/export
/v1/cookies
/v1/scan
/v1/health
/v1/webhooks
/v1/webhooks/{id}
curl -X POST https://api.palladium.cookies/v1/consent \
-H "Authorization: Bearer plm_a9f4..." \
-H "Content-Type: application/json" \
-d '{
"domain": "monsite.fr",
"user_ref": "anon-7f3a",
"locale": "fr-FR",
"categories": {
"necessary": true,
"preferences": true,
"statistics": true,
"marketing": false
}
}'@palladium/sdk-js
Official browser SDK, < 8 KB gzipped, zero dependencies.
@palladium/sdk-node
For Node.js, JWT signing, webhook verification, Python and cURL examples.
consent.created · updated · revoked
HMAC-SHA256 signing, exponential retry, full per-webhook log.
Official standards, web measurement, advertising, tag managers, identity, CMS, CRM. Each is wired to honour the declared consent state.
Thirteen key features and their availability by plan. For detailed pricing see the pricing page.
| Feature | Free | Pro | Business | Enterprise |
|---|---|---|---|---|
| Domains included | 1 | 10 | 50 | Unlimited |
| Consents / month | 1,000 | 100,000 | 1,000,000 | Unlimited |
| Register retention | 3 months | 24 months | 60 months | 60 months + archive |
| Banner customisation | — | Full | Full | Full |
| Advanced statistics + A/B | — | ✓ | ✓ | ✓ |
| Google Consent Mode v2 | — | ✓ | ✓ | ✓ |
| TCF 2.2 IAB | — | — | ✓ | ✓ |
| Webhooks and REST API | — | — | ✓ | ✓ |
| Automated S3/GCS/SFTP exports | — | — | ✓ | ✓ |
| OpenID Connect SSO (roadmap) | — | — | Roadmap | Roadmap |
| TOTP MFA | ✓ | ✓ | ✓ | ✓ |
| Dedicated EU hosting | Shared | Shared | Shared | ✓ |
| Signed DPA | — | On request | ✓ | ✓ |
| Dedicated account manager | — | — | — | ✓ |
From the independent merchant to the digital agency. Here is how Palladium adapts to your shape.
« Complete GDPR compliance and a premium banner for €49/month, deployed in minutes on Shopify or WordPress. »
« Manage 50 brands from a single console, export consent proofs to your data lake, offer role-based access. »
« Sovereign French hosting, TOTP MFA, contracted SLA, dedicated account manager and DPO consulting. OIDC SSO added during the year. »
« Resell Palladium in white-label, manage your customer portfolio from the multi-client console, build recurring margin. »
Additional domains, white-label, DPO consulting, training, enhanced support. Each option is billed separately.
14-day free trial, no credit card. Set up in minutes.