Your choices
On your first visit, HighLevel's native consent banner allows you to accept all optional technologies, reject nonessential technologies, or manage available categories before saving a selection. Strictly necessary technologies remain active because they support requested website, security, form, cart, checkout, or payment functions.
Technology categories
Strictly Necessary
Website rendering, security, consent storage, PAD media delivery, requested form functionality, cart and checkout operation, Stripe payment fields and fraud controls, Cloudflare Turnstile, and required HighLevel components. These technologies are not offered with an off switch when they are genuinely required for a visitor-requested function.
Analytics
Google Analytics and analytics tags delivered through Google Tag Manager are optional. The native banner is configured to classify the _ga.* cookie family as Analytics. Cloudflare Web Analytics is disclosed separately because its beacon uses in-memory performance information and network transmission rather than browser cookies or local storage.
Functional
The LeadConnector chat widget is optional functionality because visitors can also contact PAD by telephone, email, or form. HighLevel does not currently expose a dependable cookie-key inventory or a separate native control that was verified to delay the globally installed chat widget. Its observed behavior is disclosed below.
Advertising
No initialized Meta Pixel ID or PAD advertising event was verified on the PAD-owned domain. The separately hosted custom-scope form requested Facebook's fbevents.js library, but no initialized fbq object or Pixel ID was confirmed during testing. PAD does not represent that request as an active Meta Pixel without further evidence.
Uncategorized
Technology whose purpose or storage key cannot be verified is not treated as essential merely because it is present. Platform-generated identifiers that HighLevel does not document remain subject to continued review.
Verified inventory
| Technology or key | Provider | Category | Purpose and status | Domain/status | Duration | Data transmission |
|---|---|---|---|---|---|---|
_ga | Google Analytics | Analytics | Distinguishes visitors after Analytics consent. | First-party on precisionaerialdiagnostics.com | Default up to 2 years; browser limits may shorten it. | Analytics information is transmitted to Google. |
_ga_<container-id> | Google Analytics | Analytics | Persists GA4 session state after Analytics consent. | First-party on precisionaerialdiagnostics.com | Default up to 2 years; browser limits may shorten it. | Analytics information is transmitted to Google. |
GTM-NG4RN8N3 container | Google Tag Manager | Analytics | Delivers the PAD Google tag and approved interaction or lead-measurement tags. GTM itself is a script container rather than a cookie name. | Third-party Google script | Execution per page load; cookies depend on contained tags. | Requests are sent to Google when the container executes. |
G-T1XJTZ2YPJ | Google Analytics | Analytics | PAD's GA4 measurement identifier. | Third-party Google service using first-party GA cookies | Per page/event; related cookies described above. | Usage and event data may be transmitted to Google. |
| HighLevel native consent record | HighLevel / LeadConnector | Necessary | Remembers the visitor's native-banner selection. HighLevel generates the storage identifier and may change its exact key. | First-party platform-managed storage | Configured consent expiration: 90 days. | Selection information is processed by HighLevel. |
| HighLevel website runtime | HighLevel / LeadConnector | Necessary | Renders and operates PAD website and store pages. Some runtime requests may occur before consent. | Third-party service-provider scripts | Session or platform-controlled. | Technical request data is transmitted to HighLevel. |
| LeadConnector chat widget and widget storage | HighLevel / LeadConnector | Functional | Provides optional website chat. The widget's exact cookie/local-storage keys and independent native blocking were not exposed by HighLevel and remain a documented limitation. | Third-party widget on PAD pages | Session or provider-controlled; exact duration unverified. | Technical data is transmitted when the widget loads; visitor-provided data is transmitted when chat is used. |
| Cloudflare Web Analytics beacon | Cloudflare | Performance | Collects real-user performance metrics using browser performance APIs. Cloudflare states the RUM beacon does not use cookies, localStorage, sessionStorage, or IndexedDB. | Third-party beacon automatically present on PAD pages | In-memory for the page session; no browser-storage duration. | Performance metrics are transmitted to Cloudflare. |
| PAD image/media delivery | HighLevel FileSafe/CDN | Necessary | Displays the website's required images and downloadable media. | Third-party service-provider CDN | Request/cache duration varies; no PAD media cookie was verified. | Standard delivery request data is sent to the CDN. |
Stripe.js, Stripe Elements and payment identifiers such as __stripe_mid or __stripe_sid when set | Stripe | Necessary on checkout | Renders payment fields and supports fraud prevention after a visitor requests checkout. | Third-party Stripe scripts, frames, and storage | Stripe-controlled; session and persistent identifiers may be used. | Checkout and device/security data is transmitted to Stripe. |
| Cloudflare Turnstile and related security identifiers when challenged | Cloudflare | Necessary | Protects forms from abuse and automated submissions. | Third-party security service | Challenge/session dependent. | Security and challenge data is transmitted to Cloudflare. |
| LeadConnector phone-number library | HighLevel / LeadConnector | Necessary when a phone field is requested | Validates and formats visitor-requested phone fields. | Third-party script | Per page/session; no separate cookie was verified. | Library requests are transmitted to HighLevel's CDN. |
fbevents.js library on external custom-scope form | Meta/Facebook via HighLevel-hosted form | Advertising / unresolved | The library request was observed, but no initialized Meta Pixel ID or fbq event was verified. | Separate link.apisystem.tech form domain | No Meta cookie duration claimed because initialization was not verified. | A library request is made to Meta from the external form surface. |
HighLevel form attribution script (pixel.js) | HighLevel / Google-hosted asset | Uncategorized | Builder-generated attribution functionality on the external form. Exact storage and event behavior were not verified. | Separate link.apisystem.tech form domain | Unverified. | The script is requested from Google-hosted storage. |
Separate-domain services
The custom-scope form currently opens on link.apisystem.tech, not on precisionaerialdiagnostics.com. The PAD-domain native consent banner cannot control scripts executing on that separate domain. The form's own privacy and security behavior is governed by HighLevel and the form configuration. PAD has not claimed otherwise.
Stripe payment frames also execute in a separate Stripe context when a visitor intentionally opens checkout. Those payment-security technologies are treated as necessary for the requested checkout function.
No publicly reachable post-purchase scheduling URL was identified without creating a purchase or appointment. PAD did not initiate a transaction to discover that surface.
How to contact PAD
For privacy or cookie questions, contact Precision Aerial Diagnostics at [email protected] or (302) 600-2854.
This notice describes the controls and technology observed as of the date above. It is not a representation that the native HighLevel banner controls scripts on separately hosted domains.