What does riskified.com track?
Before any consent, riskified.com loaded 4 tracking companies and set 6 advertising or analytics cookies.
That's more tracking companies than 70% of the 2,450 sites we scanned.
Scanned October 2, 2026 from Germany, loading www.riskified.com once and clicking nothing. How we scan
- Tracking companies
- 4
- Tracking cookies
- 6
- Third-party hosts
- 31
- Cookies in total
- 25
Consent banner
The page loaded OneTrust, a consent management platform. Everything below was recorded before anyone answered it. 4 tracking companies still loaded while it was unanswered.
Companies contacted before consent
4 of the 13 companies it contacted before consent were unclassified.
- Google Ads7 requestsAdvertising
www.googleadservices.com, googleads.g.doubleclick.net, ad.doubleclick.net, www.google.de
- Meta3 requestsSocial media
connect.facebook.net, www.facebook.com
- HubSpot13 requestsAnalytics
track.hubspot.com, forms-na1.hsforms.com, js.hsforms.net, forms.hsforms.com
- Google Analytics2 requestsAnalytics
www.googletagmanager.com
Other third parties (content delivery, consent, functional, unclassified)
- brilliantlocco.com11 requestsUnclassified
obs.brilliantlocco.com, ob.brilliantlocco.com
- webless.ai2 requestsUnclassified
store.webless.ai, api.webless.ai
- lookbookhq.com2 requestsUnclassified
app.cdn.lookbookhq.com
- docketai.com1 requestUnclassified
manthan.app.docketai.com
- OneTrust11 requestsConsent banner
cdn.cookielaw.org, geolocation.onetrust.com
- Google6 requestsFunctional
www.google.com, fonts.googleapis.com
- accessiBe2 requestsFunctional
acsbapp.com, cdn.acsbapp.com
- Amazon Web Services10 requestsContent delivery
d33t2173eag6fx.cloudfront.net
- Cloudinary2 requestsContent delivery
res.cloudinary.com
Cookies set before consent
The longest-lived tracking cookie it set was __hstc, from HubSpot, lasting about 6 months.
| Cookie | Purpose | Set by | Lasts |
|---|---|---|---|
| __hssc | Advertising | riskified.com | Under a day |
| __hssrc | Advertising | riskified.com | Session |
| __hstc | Advertising | riskified.com | 6 months |
| _fbp | Advertising | riskified.com | 3 months |
| _gcl_au | Advertising | riskified.com | 3 months |
| hubspotutk | Advertising | riskified.com | 6 months |
| _cq_pxg | Unclassified | riskified.com | 1 day |
| _cq_s | Unclassified | riskified.com | 7 days |
| _cq_session | Unclassified | riskified.com | 13 months |
| cg_uuid | Unclassified | obs.brilliantlocco.com (third party) | 11 months |
| ruid | Unclassified | riskified.com | 6 months |
| __cf_bm | Functional | riskified.com | Under a day |
| __cf_bm | Functional | hsforms.net (third party) | Under a day |
| __cf_bm | Functional | www.riskified.com | Under a day |
| __cf_bm | Functional | hsforms.com (third party) | Under a day |
| __cf_bm | Functional | hs-scripts.com (third party) | Under a day |
| __cf_bm | Functional | hs-analytics.net (third party) | Under a day |
| __cf_bm | Functional | hs-banner.com (third party) | Under a day |
| __cf_bm | Functional | hubspot.com (third party) | Under a day |
| _cq_duid | Functional | riskified.com | 3 months |
| _cq_suid | Functional | riskified.com | Session |
| cf_clearance | Functional | www.riskified.com | 12 months |
| OptanonConsent | Functional | www.riskified.com | 12 months |
| test_cookie | Functional | doubleclick.net (third party) | Under a day |
| wp-wpml_current_language | Functional | www.riskified.com | Session |
The page also wrote 4 keys to local storage, which works like a cookie but isn't sent with requests.
Understanding this page
- How to see which cookies and trackers a website loads
A hands-on walkthrough for checking what a site sets before you've clicked anything, using Chrome and Firefox's built-in tools, plus how CookieTosser automates the same check every month.
- What counts as valid cookie consent in the EU
The rules that actually govern cookie banners — the ePrivacy Directive, the GDPR consent standard, the Planet49 ruling, the strictly-necessary exemption, and what "reject" has to offer compared with "accept.
- Consent management platforms explained
What a CMP banner is actually doing behind the scenes, how the IAB's TCF standard and Google's Consent Mode v2 fit in, and why a banner being present is no guarantee that nothing loads before you answer it.