Third-party cookies did not disappear. They stopped being something a store can rely on.
Google announced in 2020 that Chrome would remove third-party cookies, delayed it several times, and in July 2024 dropped the plan. Safari and Firefox restrict them by default, and consent rules in the EU remove more. A store that wants to know its shoppers builds on the data it collects itself.
- Google, July 2024: Chrome keeps third-party cookies
- Safari blocks them by default since 2020; Firefox isolates them per site since 2022
- Google, October 2025: Topics and most Privacy Sandbox APIs retired
A third-party cookie is set by a domain other than the one you are visiting, usually an ad or tracking service, so it can follow a person from site to site. First-party cookies are set by the store itself and only work on the store's own site.
The predicted end of third-party cookies never came to Chrome. Google postponed the removal from 2022 to 2023, then 2024, then 2025, and in July 2024 said it would keep them and leave the choice to users. In October 2025 it retired most of the Privacy Sandbox, the replacement technologies, including the Topics API. Safari blocks third-party cookies anyway, Firefox isolates them per site, and in the EU they need consent first.
So the practical answer has not changed. Every visitor a store can only see through someone else's cookie is a visitor it partly does not see. What still works is first-party data: what shoppers do on your site, what they buy, and what they tell you, recorded by you and used with their consent.
What third-party cookies did for ecommerce
For years they were how ad tech recognised a person across the web. An ad network's cookie sat on thousands of sites, so it could build an interest profile, retarget a shopper who left your store, and credit a sale to the ad they saw days before.
Two things made that weaker every year. Regulation: the EU's GDPR from 2018 and the ePrivacy rules require consent for cookies that are not strictly necessary, and California's CCPA gives shoppers the right to opt out of their data being sold or shared. And browsers: Apple's Safari has blocked third-party cookies by default since March 2020, and Mozilla made Total Cookie Protection the default in Firefox in June 2022. On a phone-heavy store, the Safari share alone is a large part of the traffic.
What actually happened in Chrome
Older articles, including the version of this page we published before, said Chrome would remove third-party cookies in 2024. It did not. Google ran a test that turned them off for 1% of Chrome users in January 2024, then announced in July 2024 that it would not remove them and would instead let users choose. In April 2025 it said it would not add a new prompt either, and would keep the existing cookie settings.
The replacement technologies went the same way. The Topics API, which was to let a browser tell advertisers a few broad interests instead of sharing a cookie, was one of the Privacy Sandbox APIs Google announced it would retire in October 2025, citing low adoption.
Why the delay does not help much
Third-party cookies still work in Chrome for users who have not blocked them and, in the EU, who said yes to the banner. That is a shrinking and skewed part of your audience. Safari users, Firefox users, people with ad blockers and people who declined consent are already invisible to them. Planning for a store that still depends on them means planning around a gap that is already there.
What to build on instead
Record events yourself, on your server
Your own site sees every visit, search, cart and order, whatever the browser does to third-party scripts. Record them first-party, and send purchases to Meta and Google from your server rather than from a pixel. The server-side tracking guide covers how that works and what it fixes.
Join one shopper into one profile
A shopper who browses on a phone and buys on a laptop is one person. Link the visits when they give you a signal, a login, an email click or an order, so you stop treating one customer as several (identity resolution).
Give people a reason to say yes
Consent is easier to get when the shopper sees the benefit: search that understands them, products in their size, a back-in-stock message for the thing they wanted. The relevance that comes from first-party data is what makes a shopper agree to share more of it (personalization guide).
Follow up on channels you own
Email, web push and messaging apps reach people who opted in to hear from you, with no third-party cookie involved. A visitor who allows web push can be reached before you know their email.
First-party from the first visit
Sell to visitors who never log in
The agent records visits server-side and first-party, keeps one profile per person across devices, and follows up by web push or email once they can be reached.
How it works →Ads audiencesAudiences from your own customers, not a cookie pool
Purchases sent from the server and counted once, audiences built from predicted customer value, and your existing customers kept out of acquisition.
How audiences work →Questions about third-party cookies
Did Google remove third-party cookies from Chrome?
No. Google announced the removal in 2020 and postponed it several times. In July 2024 it said Chrome would keep third-party cookies, and in April 2025 that it would keep the existing cookie settings rather than add a new prompt.
Which browsers block third-party cookies?
Safari has blocked them by default since March 2020. Firefox isolates them per site by default with Total Cookie Protection since June 2022. Chrome still allows them unless the user blocks them.
What happened to the Topics API?
It was part of Google's Privacy Sandbox, meant to share a few broad interests instead of a cookie. In October 2025 Google announced it would retire Topics and most other Privacy Sandbox APIs, citing low adoption.
What is the difference between first-party and third-party cookies?
A first-party cookie is set by the site you are on and works only there. A third-party cookie is set by another domain, usually an ad or tracking service, so it can recognise the same person across many sites.
What should an online store use instead?
First-party data: visits, searches and orders recorded on your own server, joined into one profile per shopper, used with consent. Send purchases to ad platforms server-side, and follow up by email, web push and messaging, which do not depend on cookies.

See which of last week's visitors you missed
One call, with your store and ad accounts open. Then 30 days free. A holdout group decides: if the agent doesn't add orders in 30 days, you don't pay.
See it on your store





You'll talk to one of us.