Features Pricing GDPR cookie banner Google Consent Mode v2 WordPress plugin Cookiebot alternative For Agencies GDPR ePrivacy About Contact
RO | EN
Start Free →

What is the ePrivacy Directive and how does it relate to cookies?

The ePrivacy Directive (2002/58/EC) — known as the "Cookie Law" — requires informed consent before storing or accessing information on a user's device. It complements GDPR: ePrivacy sets the rules for cookies specifically, while GDPR defines what constitutes valid consent.

  • Requires informed consent before setting any non-essential cookie
  • Exemption only for cookies strictly necessary for the website to function
  • Each EU member state transposes the directive into national law

Frequently asked questions about the ePrivacy Directive

Directive 2002/58/EC, amended in 2009, is transposed into national law in every EU member state. Article 5(3) requires the user's consent before information is stored on or accessed from their device, i.e. before any non-essential cookie is set.

ePrivacy specifically regulates cookies and electronic communications, i.e. when consent is required. GDPR defines what valid consent looks like and how the resulting personal data is processed. They apply together: ePrivacy says "ask for consent", GDPR says "this is what valid consent looks like".

Yes. The directive refers to "storing or accessing information" on terminal equipment, so it covers localStorage, sessionStorage, tracking pixels, SDKs and fingerprinting techniques, not only HTTP cookies.

The proposed ePrivacy Regulation, meant to replace the directive, was officially withdrawn by the European Commission in 2025. The 2002 directive and national laws remain in force and authorities enforce them through guidance and fines.

Clear information about cookie purposes, category-level choices (necessary, preferences, statistics, marketing), equally prominent "Accept all" and "Reject all" buttons, the ability to change the choice at any time and effective script blocking until consent is given.

Ensure ePrivacy and GDPR compliance

Set up CookieFix in 5 minutes and ensure your website meets both ePrivacy and GDPR requirements.

Create free account