- 07-Jun-2025
- Cyber and Technology Law
Cookies are small data files stored on users’ devices to enhance website functionality, track usage, and personalize experiences. However, storing cookies without user consent raises privacy concerns and is regulated by various data protection laws worldwide.
Under privacy laws like the EU’s GDPR and similar emerging frameworks globally, including India’s evolving data protection laws, websites must obtain informed consent before storing cookies that collect personal data or track users.
Websites should provide clear cookie policies explaining what cookies are used, their purpose, and obtain user consent via pop-ups or banners before storing non-essential cookies.
Users should be able to accept, reject, or customize cookie preferences easily, ensuring meaningful control over their data.
While India does not yet have a comprehensive cookie-specific law, the IT Act and proposed Personal Data Protection Bill emphasize user consent and transparency in data collection, including cookies.
Failure to obtain proper consent may lead to regulatory penalties, legal claims, and reputational damage.
A news website places analytics cookies to track reading habits but provides no cookie notice or consent option.
Users’ privacy is compromised, and the website risks complaints to regulatory bodies and loss of user trust.
Answer By Law4u TeamDiscover clear and detailed answers to common questions about Cyber and Technology Law. Learn about procedures and more in straightforward language.