Regulations
Every privacy framework we support, what it actually requires of your website, and how GrantCookie covers it.
-
Law 25 — Quebec Act to modernize legislative provisions as regards the protection of personal information
Quebec’s modernisation of its private-sector privacy law (originally Bill 64). Law 25 introduces several stricter obligations than PIPEDA — including a requirement that confidentiality…
-
PIPEDA — Personal Information Protection and Electronic Documents Act
PIPEDA is Canada’s federal private-sector privacy law. It sets out how organisations must collect, use and disclose personal information during commercial activity, including the…
-
LGPD — Lei Geral de Proteção de Dados Pessoais
Brazil’s general data protection law, broadly inspired by the GDPR. The LGPD requires a lawful basis for any processing of personal data — and…
-
Google Consent Mode V2 — Google Consent Mode, version 2
Google Consent Mode is a way of telling Google’s tags (Analytics, Ads, Tag Manager) what the user has consented to, so the tags can…
-
IAB TCF v2.3 — Transparency & Consent Framework, version 2.3
The TCF is the standard the European ad industry uses to pass consent signals between websites, publishers, advertising tech vendors and demand-side platforms. Version…
-
CPRA — California Privacy Rights Act
The CPRA amends and expands the CCPA. It adds the concept of ‘sensitive personal information’, new rights around correction and limiting the use of…
-
CCPA — California Consumer Privacy Act
The CCPA gives California residents the right to know what personal information businesses collect about them and the right to opt out of the…
-
GDPR — General Data Protection Regulation
The GDPR is the EU’s data protection law. It governs how organisations collect, use, store and share personal data of people in the EU…
