Consent – An Introduction
Cookie banners and Consent Management Platforms (CMPs) have been around for years, yet many organisations are still getting the basics wrong. Under the UK General Data Protection Regulation (UK GDPR) and the Privacy and Electronic Communications Regulations (PECR), compliance isn’t optional.
When consent is mismanaged the impact is felt in three ways: (1) regulatory exposure, (2) brand reputation and (3) the quality of your analytics data.
At 120Feet we’ve audited many consent implementations across financial services, retail, travel, education and beyond. We see the same issues time and again.
So, here are 15 of the most common mistakes we’re still seeing in 2025 – and, crucially, suggestions on how to fix them.
Consent Banner Design & UX
Mistake 1: Reject All Button Missing
Mistake 2: Vague Consent Declarations
The UK GDPR requires that consent is specific and informed. Users must be able to see:
- What the data is used for (purpose)
- Who sets it (vendor)
- How long it lasts (retention)
Example:
- Category: Analytics
_ga– Google Analytics, used to measure site traffic, expires after 13 monthsAMCV_####@AdobeOrg– Adobe Analytics, used for visitor ID, expires after 2 years
Mistake 3: No Manage Consent Option
Mistake 4: Dark Pattern Styling
Mistake 5: Poor Mobile Experience
Technical Implementation
Mistake 6: Consent Not Enforced in Tag Manager
Mistake 7: Data Sent Before Consent
Mistake 8: Over-Reliance on Auto-Blocking
Mistake 9: Misconfigured Consent Frameworks and APIs
Mistake 10: No Consent Testing in QA
Governance & Compliance
Mistake 11: “Set and Forget” Mentality
Mistake 12: Assuming CMP Alone Solves It
Mistake 13: No Consent Audit Trail
Mistake 14: Ignoring Regional Differences
Mistake 15: Vendor Transparency Missing
Conclusion
Getting consent right is about more than ticking a box. It builds trust with users, protects you from regulatory risk and ensures the data you rely on is lawful and accurate.
The organisations that succeed treat consent as an ongoing programme – tested regularly, updated as technology changes and integrated into their wider data strategy.
If you’re unsure where you stand, now is the time to audit and improve.
If you’d like help auditing your consent setup or advice on how to improve it, get in touch with us. We can work with any consent tool such as Usercentrics, OneTrust, CookieYes and others.
Unsure if your consent setup is working as it should?
Our team can review your implementation and highlight where improvements are possible.
Some of the Most Used CMPs We Have Worked With
Enterprise-grade consent & preference management. Widely adopted across large organisations with robust integrations and compliance features.
Visit OneTrustStrong EU focus: multi-language support, modern UX, clear dashboards, and granular control.
Visit UsercentricsAutomated cookie scans, global repository and customisable banners. Supports multiple languages and straightforward deployments.
Explore CookieBotBuilt-in consent features for clients already using Tealium’s tag manager or Customer Data Platform (CDP). Lets you enforce consent logic across client and server flows.
Learn about Tealium