shouldiuse.io

Categories

VERDICT

Should I use Cookie consent (detected on Italist.com)?

We and our partners, including Shopify, use cookies and other technologies to personalize your experience, show you ads, and perform analytics, and we will not use cookies or other technologies for these purposes unless you accept them. - italist.com

Skip. There is no product to buy at this URL — the detected 'Cookie consent' is just the Shopify-powered compliance banner on Italist, a luxury fashion marketplace. Confidence is low because sources cover consent tools generally, not this page; if you need consent management, buy a dedicated CMP.

Confidence

Low. Based on ~50 public sources; all cover cookie-consent tools generally — none describe Italist's banner as a buyable product, hence low confidence.

Ratings

  • Value for moneyNo vendor or pricing exists
  • Ease of useNothing to evaluate
  • Feature depthBanner only, no product
  • Support qualityNo vendor support exists
  • Security postureNo findings for this banner

Pricing

$0 – ~$10k+/yr

Category market (not this page)

ModelNot disclosed
Monthly feesNot disclosed
HardwareNot disclosed
Free tierYes

Best for

  • Sites with EU visitors and trackers
  • Shopify stores wanting a native banner
  • Retailers running ads and analytics

Not for

  • Fashion shoppers — is a store, not software
  • Anyone comparing consent vendors — this page isn't one
  • Sites with zero third-party tracking cookies
  • Teams wanting enterprise governance from a banner

Gotchas - check before you buy

high

WordPress consent plugins have repeated XSS/CSRF CVEs; vet and patch anything you install

high

Attackers actively exploited a consent plugin bug across 1.5M WordPress sites

high

Regulators fine sloppy banners — France hit Google and Facebook for $238M combined in 2022

medium

Enterprise CMPs reportedly cost ~$10k/year — budget before choosing a vendor

Pros and cons

Pros

  • Blocks non-essential cookies until users actively accept
  • Discloses partners, including Shopify, up front

Cons

  • Not a product — one retailer's banner, no vendor or support
  • Users broadly resent and distrust cookie banners
  • Some sites hide the decline option — a dark pattern
  • Category leader reportedly costs ~$10k/year

Sources & method

Analyzed 10/05/2026 - 14 sources - No vulnerabilities reported for Italist's own banner; the wider WordPress consent-plugin space has an active CVE history.

official x5review x4security x4news x1
  • Real Cookie Banner (WordPress) ≤5.3.5 — stored XSS, Unauthenticated stored cross-site scripting via comments in a popular consent plugin.
  • WPLP Cookie Consent — CSRF (CVE-2026-85131), Cross-site request forgery flaw disclosed in the WordPress consent plugin.
  • WordPress cookie banner plugin — security bypass (CVE-2023-3388), Bypass vulnerability documented in NVD for a WordPress consent plugin.

Key stats

  • Not rated

    Rating

  • $0 – ~$10k+/yr

    Starting price

  • 14

    Sources

  • Analyzed

  • Value for money. No vendor or pricing exists
  • Ease of use. Nothing to evaluate
  • Feature depth. Banner only, no product
  • Support quality. No vendor support exists
  • Security posture. No findings for this banner
  • $0 Category price floor Free banners and freemium CMPs are common
  • ~$10k/yr Enterprise CMP cost Market leader, per practitioner reports
  • $238M Largest EU cookie fines France: Google $170M + Facebook $68M (2022)
  • £17.5M UK ICO max fine For cookie-regulation breaches

Pricing

Category market (not this page)

$0 – ~$10k+/yr

  • Free and freemium banners common among SMB tools
  • Enterprise leaders reported at ~$10k/year

Security

No vulnerabilities reported for Italist's own banner; the wider WordPress consent-plugin space has an active CVE history.

  • Real Cookie Banner (WordPress) ≤5.3.5 — stored XSSUnauthenticated stored cross-site scripting via comments in a popular consent plugin.⁶
  • WPLP Cookie Consent — CSRF (CVE-2026-85131)Cross-site request forgery flaw disclosed in the WordPress consent plugin.⁷
  • WordPress cookie banner plugin — security bypass (CVE-2023-3388)Bypass vulnerability documented in NVD for a WordPress consent plugin.⁸

What users say

Users find cookie banners annoying and sometimes deceptive, and complain enterprise consent tools are expensive.

“Cookies consent banners are basically useless”
Reddit, r/TechNook
“This website straight up hiding the option to decline”
Reddit, r/assholedesign
“~$10k/year for cookie consent”
Reddit, r/saasbuild

Alternatives

Compare Cookie consent (detected on Italist.com) with each alternative.

Companies that use it

Companies that could

  • NEJM13 Uses TrustArc instead
  • The Langley School14 Uses Cookiebot instead
Full analysis

Based on ~50 public sources; all cover cookie-consent tools generally — none describe Italist's banner as a buyable product, hence low confidence.

Not a product: it's the GDPR cookie banner on Italist, a Shopify fashion store. Nothing to buy here; use a real CMP if you need one.

Methodology

Based on ~50 public sources; all cover cookie-consent tools generally — none describe Italist's banner as a buyable product, hence low confidence.

Sources

  1. official
  2. review
  3. review
  4. review
  5. news
  6. security
  7. security
  8. security
  9. security
  10. CookieYes Pricingcookieyes.com
    official
  11. official
  12. review
  13. official
  14. official

Rate this review

Anonymous. You can change your vote.

Loading votes…

Comments

One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.

Save a name to write a comment.

0 / 200 words

No comments yet.