How to set Auto Pilot or a custom consent model per region (New Version)

Overview


Consent logic lives on Settings > Consent model & regions. Banner look lives on Settings > Banner (Layout, Content, Style).


Pick one consent model:


Model

Merchant label

Typical use

optin

Strict opt-in

Visitor must Accept before non-essential collection (GDPR-style).

optout

Standard opt-out

Collection can start; visitor can Decline.

smart

Auto Pilot

Opt-in in the EU (and similar), opt-out elsewhere by location.

flexible

Custom

You mark which regions are strict opt-in.


This replaced Legacy Geolocation plus Banner Policy Mode. Conceptual background: Consent Model & Regions (New Version).


Banner UI (notice vs preferences) is independent. Google still needs preferences access for many ads setups. See How to create a banner that meets Google’s banner requirements (New Version).


New Banner. For stores with the New version badge on Settings > Banner. On the Legacy Banner, see How to switch to the new banner or switch back to the previous version.


Before you start


  • Use the New Banner. Legacy stores still use Geolocation / Behavior policy mode.
  • For most worldwide stores, start with Auto Pilot, then use Custom only if you must override specific countries.



  1. Open Shopify Admin > Apps > Pandectes GDPR Compliance.
  2. Go to Settings > Consent model & regions.
  3. Choose the consent model.
  4. Set Worldwide visibility or a region list. See How to show the banner only in selected regions (New Version).
  5. If you chose Custom, open region lists (Recommended / Rest of the world) and enable strict opt-in for each region that needs it (all EU/EEA + UK if you sell to Europe).
  6. Save.


Consent model choices: Strict opt-in, Standard opt-out, Auto-pilot, and Custom


Custom configuration may require a Premium or Enterprise plan. If the option is locked, open Dashboard > Plans.


Align Shopify Customer Privacy


Pandectes Privacy works with Shopify’s Customer Privacy API. After you save, confirm Shopify Settings > Customer privacy regions still match how you sell (especially US sale-of-data). For the in-banner DNS toggle, see How to show Do not sell or share my data on the banner (New Version).


Verify


  1. Check the Banner status summary (for example Strict opt-in — Worldwide or a region count).
  2. Test an EU IP or market: non-essential tags should wait for Accept when the model is opt-in.
  3. Test a US IP or market: opt-out or Auto Pilot should match what you configured.
  4. On Custom, confirm every EU/EEA + UK region you serve is opt-in.



Updated on: 15/09/2026

Was this article helpful?

Share your feedback

Cancel

Thank you!