CHIPS
CHIPS, which stands for Cookies Having Independent Partitioned State, is a web technology that lets a third-party cookie be stored separately for each website a user visits, rather than shared across all of them. This is often described as 'partitioned' cookies because the data is walled off per top-level site. The evidence packet provided does not contain reliable technical sourcing for this term, so this definition should be treated as provisional and verified against authoritative technical and regulatory sources before being relied upon.
CHIPS (Cookies Having Independent Partitioned State) refers to a mechanism for opting a third-party cookie into partitioned storage, so that the cookie is keyed to the top-level site under which it is set and is not accessible in other cross-site contexts. From a compliance standpoint, partitioning affects how tracking is scoped but does not by itself change the legal analysis: under the EU/UK ePrivacy regime, placing or accessing information on a user's device generally still requires prior consent unless the cookie is strictly necessary, and any resulting processing of personal data remains subject to the GDPR. Whether a partitioned cookie qualifies as exempt depends on its purpose rather than its storage model, and this is a fact-specific question. The evidence packet supplied does not include authoritative technical or regulatory sourcing for CHIPS, so the technical specifics above should be independently confirmed before use.
Why it matters
For privacy and compliance teams, CHIPS matters because partitioning changes how third-party cookies behave technically without necessarily changing the underlying legal obligations. A cookie that is partitioned per top-level site is scoped more narrowly than a conventional third-party cookie shared across many sites, which can reduce certain forms of cross-site tracking. However, teams should not assume that adopting partitioned storage removes the need for consent or for a lawful basis under applicable law.
The compliance analysis generally turns on the purpose of a cookie rather than its storage model. Under the EU and UK ePrivacy regime, placing or accessing information on a user's device typically still requires prior consent unless the cookie is strictly necessary, and any processing of personal data that follows remains subject to the GDPR. Whether a partitioned cookie qualifies as exempt is a fact-specific question that depends on what the cookie does, not on whether it is walled off per site.
It is important to flag a significant limitation: the evidence available for this entry does not include authoritative technical or regulatory sourcing for CHIPS. As a result, the description here should be treated as provisional and verified against primary technical specifications and relevant data protection authority guidance before being relied upon for compliance decisions. No specific enforcement actions, figures, or named incidents relating to CHIPS can be responsibly cited on the current evidence.
Who it's relevant to
Inside CHIPS
Common questions
Answers to the questions practitioners most commonly ask about CHIPS.