Posts

Showing posts with the label blogger

What Does the Facebook Pixel Collect, and When Does It Need Permission?

  You added the Facebook pixel to see which ads bring sales. It's worth knowing what it actually sends to Meta, because that decides two things: how much your ads can learn, and when you need a visitor's permission first. What the pixel collects Meta lists five kinds of data the pixel can send: Browser details sent with each page request, such as the page being viewed Your pixel ID and the Facebook cookie that recognises the browser Button clicks , their labels and the pages they lead to Extra details you choose to send , like order value or product name Form field names , such as email or quantity If you switch on advanced matching, the pixel can also send details like email address and phone number. The pixel scrambles them into a code (a "hash") before sending. How Meta uses it for your ads Meta uses this data to measure which ads bring sales, to build retargeting lists of people who visited your site, and to find more people likely to buy. When you...

What Happens Between a Website Visit and a Lead?

  A lot. Between a visit and a lead, your site can load analytics and ad tags, set cookies, log the source and device, recognise return visits and link all of it to a contact once a form is filled. Most of this starts on page load, before the visitor makes any consent choice. Here is how it works, stage by stage. Stage 1: The page loads Your tag manager reads its rules. Tags set to run on all pages start at once. Each request carries the page address, the referrer, the browser type and the visitor's IP address. Cookies may be set in the same moment. Stage 2: The visitor browses Analytics records page views, scroll depth, clicks, downloads and video plays. A heatmap or session recording tool may capture mouse moves and taps. None of this needs a name. Stage 3: The visitor leaves GA4 closes a session after 30 minutes without activity by default. Ad platforms may already have added the visit to a retargeting audience. The visitor gave no signal at any point. Stage 4: The visi...

How to migrate from client-side to server-side Google Tag Manager

  Migrating from client-side to server-side Google Tag Manager is one of the most common analytics projects on marketing team backlogs right now. Ad blockers, Safari's Intelligent Tracking Prevention and consent regulations keep removing events before they reach GA4 or Google Ads. What server-side GTM actually is Client-side GTM loads a container script in the visitor's browser. That script fires tags. Server-side GTM adds a second container that runs on your own cloud infrastructure and receives events over a subdomain of your website. The browser sends one lean request to your subdomain. The server container reads it, applies any transformation or filtering logic, then forwards clean events to Google Ads, GA4, Meta Conversions API and any other supported endpoint. Why the migration matters Cookies set by your subdomain read as first-party, so Safari keeps them beyond the seven-day limit that hits browser-set cookies. Requests to your own subdomain sit outside typical ad...

How universal consent works, start to finish.

Image
Universal consent means one central record of every yes and no a person gives you, read by every system you run and updated the moment it changes. Your banner only sees one of those channels. Most companies collect consent well and carry it badly. Here's a plain walk through what happens when it works, plus the one arrival almost nobody has planned for. Step 1: Someone answers They land on your site. Or open your app. Or tick a box on a paper form at your counter. Or reply STOP to a text. All four are consent events. All four count in law, and only the first one usually gets built properly. Step 2: The answer goes to one place Rather than saving into whichever tool caught it, the answer gets written to a single central record. Stored alongside it: who they are, what they agreed to, when, which channel, and which law applied to them at that moment. That last field does a lot of quiet work. It's how you answer "was this lawful?" two years later. Step 3: Everything else ...

EU AI Act Compliance in 2026: Deadlines, Fines and the Four Risk Categories Explained

Image
  Artificial intelligence is now regulated law in Europe, and many businesses are further behind than they realise. The EU AI Act entered into force on 1 August 2024 as the first legal framework built entirely around AI. Its rules arrive in stages, and some of the most important ones already apply. The four risk categories The Act sorts every AI system into one of four tiers, and your obligations depend on where your systems land. Unacceptable risk systems are banned outright. Since 2 February 2025, the EU prohibits AI that manipulates people into harm, exploits vulnerable groups, runs social scoring for public authorities, scrapes facial images from the internet, or reads emotions in workplaces and schools. High-risk systems are allowed, with strict conditions. This tier covers AI used in hiring, credit scoring, education, critical infrastructure, law enforcement and border control. Providers must complete conformity assessments, keep detailed technical documentation, register...