CookieShift – Cookie Consent Banner & Compliance Manager

Plugin Banner

CookieShift – Cookie Consent Banner & Compliance Manager

by cookieshift

Download
Description

CookieShift – Cookie Consent Banner & Compliance Manager is the WordPress connector for the CookieShift platform. After you connect a Site ID, the plugin loads the hosted CookieShift CMP (cmp.js) so visitors can review cookie categories and save preferences. Banner design, languages, blocking rules, scanning, and reports are managed in your CookieShift account.

This plugin does not guarantee legal compliance. It helps you present consent choices and review cookies found on your site. You remain responsible for your privacy notices, legal assessments, and how tags are implemented.

What the plugin does

  • Loads the CookieShift consent banner on the public site when a Site ID is saved
  • Lets administrators connect or disconnect the site from wp-admin
  • Shows consent activity summaries in wp-admin when the site is connected
  • Opens CookieShift dashboard tools for banner configuration, scanning, and reports
  • Stores the Site ID and an encrypted API token in WordPress options

CookieShift service (SaaS)

Scanning, scheduled scans, AI-assisted cookie analysis, plan limits, and extra websites are provided by CookieShift’s hosted service, not as locked local plugin code. Account limits depend on your CookieShift plan (for example one website on Free and Essential, unlimited domains on Agency). Details are listed on the CookieShift pricing page.

AI-assisted analysis

CookieShift can help identify and suggest cookie categories using platform AI tokens or, on Pro and higher plans, a key you provide (Bring Your Own AI). AI output is assistance only. It does not certify GDPR, CCPA, or any other legal standard.

External services

This plugin communicates with CookieShift. See External Services below, plus CookieShift’s Privacy Policy and Terms of Service.

Brand: CookieShift. This plugin is the WordPress integration for that service.

Configuration

  1. Open the CookieShift admin page and choose Create New CookieShift Account or Connect Existing Account.
  2. Complete the CookieShift connect flow. The plugin stores the Site ID and an encrypted API token.
  3. Customize the banner, languages, and blocking rules in the CookieShift dashboard.
  4. Use Sync on the plugin page to refresh module status when needed.
  5. Use Disconnect to remove the local API token. The Site ID is kept so you can reconnect the same property.

Usage

Administrators with the manage_options capability can connect the site, view consent summaries, sync module status, and open CookieShift dashboard tools.

On the public site, when a Site ID is present, the plugin enqueues CookieShift cmp.js in the document head so the consent UI can run before other tags where the browser and tag order allow.

Privacy / Data Handling

When connected, the plugin stores:

  • CookieShift Site ID
  • Encrypted module/API token (WordPress options; encrypted at rest using site salts)
  • Site URL / install identity used for property matching
  • Optional workspace metadata returned by CookieShift

On the public site, the hosted CookieShift CMP loads configuration and records consent decisions according to your CookieShift account settings.

Admin analytics, sync, disconnect, and health checks call CookieShift APIs from the server using the stored token. The token is not printed into public pages.

Uninstalling the plugin deletes these options from the WordPress database.

External Services

This plugin connects to the CookieShift service:

  • Service: CookieShift (https://cookieshift.com/)
  • Terms of Service: https://cookieshift.com/terms-and-conditions
  • Privacy Policy: https://cookieshift.com/legal/privacy
  • Purpose: Consent banner/CMP delivery, configuration sync, consent logging, analytics, cookie scanning, optional AI-assisted analysis, and module health
  • Data transmitted: Site ID, API token (server-side calls only), site URL headers for module authentication, consent-related payloads handled by the hosted CMP. AI features may send cookie/script metadata from scans according to your CookieShift account settings.
  • When: After you connect the site; on admin analytics, health, sync, and disconnect actions; and when visitors load pages that include the CMP
  • Primary endpoints: https://cookieshift.com/ (for example /cmp.js, /banner.js, /api/module/..., /api/plugin/analytics/..., /api/embed/health)

There is no advertising pixel, referral tracker, or unrelated CDN in this plugin. cmp.js is the CookieShift service script required for the banner. This plugin does not insert “Powered by” links in WordPress templates. The hosted CMP may show CookieShift branding unless you hide branding in your CookieShift account (where your plan allows it).

Support

Documentation: https://cookieshift.com/docs
Help center: https://cookieshift.com/help
Website: https://cookieshift.com/
Terms of Service: https://cookieshift.com/terms-and-conditions
Privacy Policy: https://cookieshift.com/legal/privacy

  1. Install from Plugins Add New, or upload the plugin ZIP.
  2. Activate CookieShift – Cookie Consent Banner & Compliance Manager.
  3. Open CookieShift in the WordPress admin menu.
  4. Create a CookieShift account or connect an existing account, then finish the connect flow while remaining logged in to WordPress.
  5. Configure the banner in the CookieShift dashboard.
  6. Confirm the banner appears on the public site.
Does CookieShift require an account?

Yes. You need a CookieShift account and Site ID to connect the plugin and manage banner configuration.

How do I connect my website?

Open CookieShift in wp-admin and use Connect Existing Account or Create New CookieShift Account. Stay logged in to WordPress until the connect flow returns to wp-admin.

How do I configure the cookie banner?

Banner appearance and rules are configured in the CookieShift dashboard (Configuration Banner). The plugin loads the resulting CMP configuration for your Site ID.

How do I disconnect the website?

On the CookieShift plugin page, click Disconnect. This clears the local API token. You can reconnect later without creating a duplicate property when possible.

Does CookieShift block third-party scripts?

The hosted CMP provides consent UI and enforcement capabilities. Browser limitations and tag order still apply. Review Implementation guidance in the CookieShift dashboard.

Does the plugin send data to an external service?

Yes. It uses CookieShift’s hosted CMP and APIs for configuration, consent handling, and (when connected) admin analytics and health checks. See External Services above.

Are scanning and AI included in the WordPress plugin files?

Cookie scanning and AI-assisted analysis run on CookieShift’s service after you connect. Plan limits (pages per scan, monthly scans, AI tokens, number of websites) are enforced by that service.

Does this plugin make my site legally compliant?

No. It helps you collect and manage consent preferences and review scan results. Legal compliance depends on your implementation, policies, and advice from qualified professionals.

How do visitors change cookie preferences?

Visitors use the CookieShift banner and preference center. Administrators manage categories and policies in the CookieShift dashboard.

1.0.0

  • Initial WordPress.org-ready release of CookieShift – Cookie Consent Banner & Compliance Manager.
  • WordPress coding standards cleanup: prefixes, escaping, nonces, safe redirects, and script enqueue for CMP.
  • Admin connect flow, encrypted token storage, uninstall cleanup, and hosted CMP loader.
Back to top