Granularity
Granularity refers to the level of detail or precision at which something is broken down. In the cookie consent context, it generally describes how finely a user can control which specific types of cookies or purposes they accept or reject, rather than being forced into a single all-or-nothing choice. Broadly, greater granularity means more distinguishable options and smaller units of control.
Granularity is a measure of the level of detail in a data structure or system, describing the degree to which it is composed of distinguishable units. In consent management, granularity typically characterizes the specificity of the choices offered to a data subject, for example the ability to consent separately by cookie category (such as analytics, advertising, or functional) or by individual processing purpose. Under EU frameworks, valid consent under the GDPR must generally be specific, which in practice tends to require a degree of per-purpose granularity rather than a single bundled acceptance; the precise granularity expected can depend on data protection authority guidance and the facts of a given deployment, which are outside the scope of this definition. Note that the general concept of granularity as level of detail applies across data analysis and data warehousing (for example intervals of years, months, weeks, days, or hours), and its application to consent is a domain-specific use of that broader idea.
Why it matters
Granularity is central to whether consent can be considered valid under EU law. The GDPR generally requires that consent be specific, and in practice this tends to mean that a user should be able to make distinct choices about different categories of cookies or different processing purposes, rather than being presented with a single bundled acceptance covering everything at once. A consent mechanism that offers only an all-or-nothing choice may struggle to demonstrate that consent was specific, though the precise granularity expected can depend on data protection authority guidance and the facts of a particular deployment.
The level of granularity also shapes the practical experience of exercising control. Greater granularity gives users more distinguishable options and smaller units of control, which can support the informed and freely given elements of consent, but it can also introduce design and usability trade-offs that organizations must balance. Because the granularity considered appropriate can vary with regulatory guidance and context, granularity should be treated as a design decision informed by legal judgment rather than a fixed technical setting.
It is worth noting that consent obligations differ across jurisdictions. The expectation of per-purpose granularity is most closely associated with EU frameworks built around opt-in consent, whereas other regimes may structure user choice differently. This definition does not resolve how much granularity any specific authority requires, and organizations should not assume that a given level of granularity is sufficient in all jurisdictions or under all guidance.
Who it's relevant to
Inside Granularity
Common questions
Answers to the questions practitioners most commonly ask about Granularity.