tagora
container audit

GTM-BF2MBTS4

This container is published but empty — no tags, so nothing fires.

Tags0
Custom scripts0
Third parties0
Delivered333 KB
Versions2

What we observed

A real browser loaded ticketmaster.se a month ago and recorded every request it made. This is what happened, as distinct from what the container is configured to do. It is one page load — anything that fires only deeper in the site did not fire here.

Container loaded from googletagmanager.com — Google
Measurement sent to google-analytics.com — Google
Consent OneTrust answered its own API. Nothing measured until it was granted — no analytics or advertising hit left the page beforehand, and 0 fired afterwards. That is the outcome consent is meant to produce. Google recorded gcs=G111 (all granted).
Third parties contacted 25 hosts — uk.tmconst.com, prismic-images.tmol.io, www.googletagmanager.com, s1.ticketm.net, www.google.com, www.gstatic.com, cdn.cookielaw.org, geolocation.onetrust.com, and 17 more
dataLayer events seen gtm.js, homepage.se.ticketmaster.iccp-discovery, gtm.dom, gtm.load, OneTrustLoaded, OptanonLoaded, consent.se.statuschange.onetrust

Where the data goes

Not observed — on the page we loaded, measurement went to Google and nowhere else. observed on ticketmaster.se More info »

Findings

Ordered by consequence. review has a concrete cost when it bites; info is real but depends on your setup. Seen is how common it is across the containers we have measured — reported separately on purpose, because common and harmless are different claims.

No findings were raised for this container.

Third parties it can reach

Each host is a party that can execute code or receive data in a visitor's browser. Follow one to see who else loads it. More info »

No third-party hosts were found in this container's tags.

Detected on

Sites observed loading this container. A container used across many hosts is a shared template; one on a single host is a bespoke build. Follow a site to see every container it loads.

ticketmaster.co.zaticketmaster.co.nzticketmaster.czticketmaster.chticketmaster.fiticketmaster.seticketmaster.pleticketing.co.ukticketmaster.dkticketmaster.noticketmaster.itticketmaster.esticketmaster.beticketmaster.com.auticketmaster.nlticketmaster.ieticketmaster.com.mxticketmaster.deticketmaster.co.uk

What this audit describes

Containers change. These findings describe one specific artifact, and you can re-fetch it to check this reading.

ContainerGTM-BF2MBTS4
Published version2 — the identity of this configuration. It changes only when someone publishes.
Read at2026-08-22 09:53:50 UTC (a month ago)
Sourcehttps://www.googletagmanager.com/gtm.js?id=GTM-BF2MBTS4
Body checksumbd2bc89df8ec59dfbbd39e15d78e868d657192f3a031b1ac4fa5157b74329a29
Evidence of the exact bytes we read, not an identity: Google varies the response per request, so re-fetching an unchanged container yields a different checksum. Compare the published version instead.

Re-audit

This reading is from a month ago. A container can be republished at any time, and nothing here updates on its own — a fresh read is the only way to know whether it still says this. Running it again replaces this page in place, so the link keeps working.

Re-audit GTM-BF2MBTS4

Check another container

Put this container under version control. Tagora exports it to a repository you own, so every change arrives as a pull request. How it works »