I click on the link and see that ublock origin blocks a total of 15 tracking scripts on your health-related website. At the bottom there is a "cookie management" popup and I wonder what went wrong that your website includes Google, Intercom, Stripe, and several others BEFORE the user has clicked through the "cookie" dialog.
Is this yet another US-based startup that totally misunderstands that GDPR is not about blocking "cookies" but instead that it is about not telling Google that someone just visited an ADHD-related website?
I'm dumbfounded by the ignorance every single time. Why do people spend effort on cookie banners and stuff when they simply include every tracking script on first load of the website?
I'm not advocating that you need to be GDPR compliant if you are US-based and dgaf about EU customers. But if you do these shenanigans with cookie banner then at least do them correctly. And even for non-EU customers it is extremely rude to share visits to a health related website with so many third party companies that clearly build tracking profiles and utilize them to extract as much money from you as possible.
Ah the shimmer.care/indy site is a subpath for our main site (shimmer.care) which uses all of those scripts, but you're right that some of them aren't necessary for indy's site. We'll look into how to separate the two so cookie management is more straightforward for indy's site as this is a separate app still.