What is the sbjs_migrations cookie?
sbjs_migrations is set by Sourcebuster.js, an open-source script used by the WooCommerce plugin (and other WordPress traffic-source extensions) to track where a shop's visitors originally came from.
The cookie is created the first time a visitor loads a page on a WooCommerce site that has traffic-source tracking enabled, typically used to attribute orders to the correct marketing channel.
What data it stores
sbjs_migrations does not store directly identifying personal data; it holds an internal marker tied to the data schema version used by the sbjs_* cookie family (e.g. sbjs_current, sbjs_first, sbjs_udata), preventing conflicts when the plugin updates that data structure.
Its value is typically a short string generated and read only by the Sourcebuster script on the site; the data stays in the visitor's browser and is not normally sent to third-party servers.
What it is used for
Its practical purpose is technical: it keeps traffic-attribution data (source, channel, campaign) consistent when WooCommerce updates its internal tracking logic, avoiding misreads of older sbjs_* cookies.
For the site owner, it indirectly supports order-attribution reporting — showing where sales originated — which is useful for evaluating marketing campaigns.
Does it require consent?
Because it belongs to the sbjs_* cookie suite used to analyze visitor behavior and origin, CookieFix classifies sbjs_migrations under statistics (analytics).
- Under GDPR and the ePrivacy Directive (2002/58/EC, transposed in Romania via Law 506/2004), cookies in this category require prior visitor consent, since they are not strictly necessary for the site to function.
- Site owners should list it in their cookie policy with its purpose, duration (session), and provider (WooCommerce/Sourcebuster), and only allow it to load after consent is given.
How to block or delete sbjs_migrations
Visitors can delete or block sbjs_migrations via their browser's privacy/cookie settings (Chrome, Firefox, Edge, Safari), individually or by clearing session cookies; since it's a session cookie, it disappears automatically when the browser closes.
Site owners can use a consent management platform like CookieFix to automatically block the Sourcebuster/WooCommerce script responsible for this cookie until the visitor consents to the statistics category, preventing it from being set prematurely without consent.
Frequently asked questions
It's a session cookie set by the Sourcebuster.js library within WooCommerce, marking the internal version of the data structure used for traffic-source tracking.
Yes, as part of the sbjs_* analytics cookie suite, it requires prior visitor consent under GDPR and the ePrivacy rules.
It's a session cookie, so it is automatically deleted when the browser is closed.
You can use a consent management platform that blocks the Sourcebuster/WooCommerce script until the visitor accepts the statistics category.