Cookie Compliance for WordPress – Cookie Consent, GDPR & CCPA
by Humanityco · Privacy & Consent
Consent management platform for WordPress — GDPR, CCPA & ePrivacy cookie consent, autoblocking, consent records, Google Consent Mode v2 & GPC.
91 health vs 66 average across 513 Privacy & Consent plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Well optimized
Biggest win: Support resolution
To rank higher: Mark more forum threads resolved — the resolved ratio feeds the ranking.
Get the full rank-higher report →Daily downloads
Since 2022-10-05 · 1,421 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
1.2M
now · peak 1.6M
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Rating trend
Star average over time · dips mark rough releases
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Actively maintainedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
20
releases in the last 12 months
1mo ago
latest release · v3.1.3
128
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 39% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “900K+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2015-03-19 · 1,496 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price.
Details
Recent review vibe
read from the latest 12 reviews to 2026-07-08Recent reviewers report ajax save errors, broken flipbooks, and unanswered support requests, a sharp turn from the older run of praise for easy setup and customization.
Recent reviews
All reviews on wp.org ↗- ★★★★★ fotografus2mo ago
The plugin does a decent job at its core function of blocking cookies before consent is given. However, its business model is incredibly frustrating for small business owners and those managing their own websites. Currently, Google Consent Mode v2 is a strict requirement for Google Ads and Google Analytics 4 to function correctly. While the free version of this plugin successfully blocks the scripts, it deliberately restricts the ability to send the “Granted” consent state back to Google unless you upgrade to the Pro tier. As a result, the free plan Compliance by Hu-manity.co completely paralyzes conversion tracking and analytics. The worst part is that you only discover this critical missing feature after wasting time on setup and debugging errors in Google Tag Assistant. For anyone relying on Google’s advertising tools for their marketing, the free tier is practically useless. I highly recommend looking for officially certified Google CMP partners who include Consent Mode v2 in their free plans instead.
Read on wp.org ↗ - ★★★★★ jeckllcradlesong2mo ago
Been running the plugin for more than 6 months now without any issues.
Read on wp.org ↗ - ★★★★★ Corrado Prever3mo ago
Il plugin “”Compliance by Hu-manity.co”” ultima versione 3.0.5 si comporta in modo davvero strano 1) la stessa versione del plugin se viene reinstallata cambia grafica 2) il salvataggio della posizione del banner top/bottom genera un errore ajax 3) abilitando wordfence tool su quella chiamata in whitelist l’errore scompare 4) anche disabilitando wordfence e cache dopo aver salvato senza errore faccio il refresh della pagina e di fatto non è stato recepito il salvataggio ed il banner finisce sempre bottom
Read on wp.org ↗ - ★★★★★ Luke5mo ago
Installed it to handle the cookie notice on my site. The setup was pretty simple, and it started working right away. Good options to customize the banner, too. Overall works well for my needs. tnx devs.
Read on wp.org ↗ - ★★★★★ Umberto6mo ago
I have a website with several flipbooks. When a user accepts or declines the banner, [Cookie Notice & Compliance for GDPR / CCPA] modifies a JavaScript file, and the flipbooks no longer load. I deactivated the plugin, and all the flipbooks are visible again and everything works properly.I asked for support, but no one responded.
Read on wp.org ↗ - ★★★★★ dendenzilla6mo ago
After the, low, threshold is reached they will send you emails hinting that you’ll get fined and try to scare you into buying a pro license. Untrustworthy behavior.
Read on wp.org ↗ - ★★★★★ Silhouettist9mo ago
I’m not a fan of increasingly of asking everybody to confirm increasingly complex cookie options. However, it must be done! This plugin works well, makes the job bearable, and even the basic version has lots of customisation options so you can make it blend well with the theme of your site.
Read on wp.org ↗ - ★★★★★ jgasba9mo ago
Once again a notification is polluting the dashboard. “Microsoft Clarity Enforcement Begins October 31 — Add Consent Support Now”. I don’t really care and would prefer to ignore it. I click the dedicated link “Ignore notification”. Which does nothing, is hooked to no script and triggers no link. Is that a (recurring) bug or is there something I don’t know about those links?
Read on wp.org ↗
Latest updates
via wp.org changelogRecent releases and news for this plugin
- — Version 3.1.4 Fix: On sites protected by a security plugin or firewall (such as WordFence), saving your settings after adding Google Tag Manager or analytics code could fail with a “403” error. The plugin now sends that code in a form 3.1.4
- — Version 3.1.3 Fix: On sites that use SiteGround Speed Optimizer, LiteSpeed Cache, or Breeze to combine, defer, or minify JavaScript, the plugin now reliably keeps the Cookie Compliance script out of those optimizations — so the banner 3.1.3
- — Version 3.1.2 Compatibility: Verified and confirmed compatible with WordPress 7.0. Fix: Banner position and banner size now save correctly on sites without a Cookie Compliance subscription — since 3.0.1 these settings appeared to save 3.1.2
- — Version 3.1.1 Fix: The cookie compliance banner and per-form privacy consent prompts now render correctly on sites where Cloudflare Rocket Loader or a caching/optimizer plugin (WP Rocket, LiteSpeed Cache, Autoptimize, NitroPack, Jetpa 3.1.1
- — Version 3.1.0 New: WP Consent API integration — Compliance now registers as the active Consent Management Platform under the WP Consent API when that plugin is installed, so cooperative plugins like WooCommerce, Google Site Kit, Burst 3.1.0
- — Version 3.0.6 Tweak: The Consent Security Policy (CSP) warning on the Compliance settings page now clears immediately once a valid .htaccess is detected — reloading the page, clicking Purge Cache, or clicking Pull Configuration each r 3.0.6
Known vulnerabilities
via Wordfence Intelligence6 disclosed vulnerabilities on record for this plugin, all fixed in the current version. Sites on older versions stay exposed until they update.
- 2025-11-21 CVE-2025-11186 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.8 Patched in 2.5.9
- Medium · 6.4 Cookie Notice & Compliance for GDPR / CCPA <= 2.5.8 - Authenticated (Author+) Stored Cross-Site Scripting ↗2025-10-21 CVE-2025-67554 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.5.8 Patched in 2.5.9
- Medium · 4.4 Cookie Notice & Compliance for GDPR / CCPA <= 2.4.17.1 - Authenticated (Admin+) Stored Cross-Site Scripting ↗2024-08-15 CVE-2022-3399 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.4.17.1 Patched in 2.4.18
- 2023-03-06 CVE-2023-0823 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.4.6 Patched in 2.4.7
- 2023-03-02 CVE-2023-24400 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects <= 2.4.6 Patched in 2.4.7
- Medium · 4.8 Cookie Notice & Compliance for GDPR / CCPA <= 2.1.1 - Authenticated (Admin+) Stored Cross-Site Scripting ↗2021-08-30 CVE-2021-24569 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Affects < 2.1.2 Patched in 2.1.2
Vulnerability records provided by Wordfence Intelligence. Copyright 2012-2026 Defiant Inc. License and terms.
CVE records: Copyright 1999-2026 The MITRE Corporation. CVE terms of use.
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 7.0.1
Languages
via translate.wordpress.orgTranslated into 53 languages, 6 at 90% or more
Plus 29 more locales with partial translations.
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2026-01-29 1M+ → 900K+ down
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
-
Pressidium Cookie Consent 10K+ installs · 4.6★ · 4 shared tags B -
FAZ Cookie Manager 1K+ installs · 4.6★ · 4 shared tags B -
IL Privacy & Cookie Consent 100+ installs · 4.1★ · 4 shared tags B -
CookiePal Banner 100+ installs · 3.6★ · 4 shared tags B -
WP Consent API 200K+ installs · 4.1★ · 3 shared tags B -
Termly – GDPR/CCPA Cookie Consent Banner 80K+ installs · 3.7★ · 3 shared tags B
Embed this report card
Drop a live Pulse card for Cookie Compliance for WordPress – Cookie Consent, GDPR & CCPA into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/cookie-notice" width="480" height="300" style="border:0" loading="lazy" title="Cookie Compliance for WordPress – Cookie Consent, GDPR & CCPA — Plugin Pulse"></iframe> Cookie Compliance for WordPress – Cookie Consent, GDPR & CCPA: 900K+ active installs, 4.8★ (3,024 reviews). Plugin Pulse (WP Mayor), as of 2026-08-25. https://plugins.wpmayor.com/plugin/cookie-notice