Skip to main content
GetInlytics.
Blog/GA4 Audit
Analytics Guide

How to Audit Your GA4 Setup in 10 Minutes (Free Checklist 2026)

Most GA4 setups have at least one silent failure - a tag firing before consent, duplicate measurement IDs, or a purchase event that never got marked as a key event. This 7-step checklist catches the issues that matter most, and you can run an automated version in under 60 seconds.

By GetInlytics·8 min read·October 2026

Why GA4 audits matter in 2026

GA4 replaced Universal Analytics in July 2023, but most setups were migrated under time pressure - copy the tag, tick the box, move on. Three years later, the same sites are running GA4 with misconfigured Consent Mode, duplicate tags from the migration period, or Enhanced Measurement events that clash with custom event tracking.

Beyond data quality, GDPR enforcement has increased. Regulators across the EU are specifically targeting pre-consent analytics tracking - GA4 firing before a user interacts with a cookie banner is now one of the most common causes of fines for small and mid-size businesses.

GA4 audit checklist - 7 checks

1

Verify the GA4 measurement ID is loading

Open DevTools Network tab, filter for "collect?v=2" or "analytics.js". You should see requests to www.google-analytics.com/g/collect. If missing, the GA4 tag is not firing - check GTM or your hardcoded snippet. A server-side audit can detect this without opening DevTools.

Requests to /g/collect visible in Network tab
No GA4 requests, or wrong measurement ID (G-XXXXXXXX vs G-XXXXXXXX)
2

Check Consent Mode v2 defaults are set before GA4 fires

GA4 must receive gtag consent defaults before the page_view fires. In GTM, look for a Consent Initialisation trigger that sets denied defaults for analytics_storage, ad_storage, ad_user_data, and ad_personalization. Check this fires before the GA4 Configuration tag.

consent_default push in dataLayer before first page_view
GA4 page_view fires before any consent push - GDPR violation risk
3

Confirm Enhanced Measurement is configured intentionally

GA4 Enhanced Measurement auto-tracks scrolls, outbound clicks, site search, video engagement, and file downloads. Go to Admin - Data Streams - your web stream - Enhanced Measurement. Disable any events you do not want (e.g. site search if your search URL contains query params that inflate sessions).

Enhanced Measurement settings match your tracking plan
All options on by default, including ones that duplicate custom events
4

Audit your key events (formerly conversions)

GA4 renamed "conversions" to "key events" in 2024. Go to Admin - Events and check which events are marked as key events. Common issues: purchase event not marked, duplicate conversion events from both GA4 and GTM, or test events from development still firing.

Only intended conversion events marked as key events
No key events configured, or dev/test events polluting data
5

Check for duplicate GA4 tags

If you migrated from Universal Analytics and added GA4 tags in GTM while also having a hardcoded snippet in your site template, you will see double page_views. Check by filtering Network requests - you should see exactly one /g/collect request per page load.

One /g/collect request per page interaction
Two or more identical measurement ID requests on the same page
6

Verify cross-domain tracking if applicable

If your checkout or booking flow runs on a different domain (e.g. checkout.yourdomain.com), you need cross-domain measurement configured. Check Admin - Data Streams - Configure tag settings - Configure your domains. Without this, sessions break and source attribution resets at checkout.

Cross-domain domains listed, _gl parameter visible in checkout URLs
Checkout sessions start as Direct traffic with no source attribution
7

Run a compliance scan to check GDPR and tracking status together

Manual checks cover the GTM/GA4 configuration layer but miss consent flow behaviour (what fires before a user accepts the cookie banner). A server-side audit can detect pre-consent GA4 firing, missing Consent Mode signals, and whether your CMP is wired correctly - all from a URL scan with no login required.

Audit shows Consent Mode active, no pre-consent GA4 firing
GA4 firing before consent interaction, or Consent Mode not detected

8 most common GA4 issues found in audits

✕GA4 tag firing before CMP consent banner loads (pre-consent tracking)
✕Measurement ID mismatch - different IDs in GTM vs GA4 Admin
✕Enhanced Measurement scroll events doubling with custom scroll tracking
✕purchase event not marked as key event so conversions show as zero
✕Missing or incorrect Consent Mode v2 ad_user_data / ad_personalization signals
✕Cross-domain checkout breaking session attribution
✕IP exclusions not set so internal traffic inflates session counts
✕Data retention set to 2 months (default) instead of 14 months

Manual audit vs automated GA4 audit tool

The 7-step checklist above covers configuration issues you can find by reading GTM and the GA4 Admin panel. But it does not catch runtime behaviour - what actually fires in the browser during a real page load, and whether your Consent Mode signals are respected by the live CMP integration.

A server-side GA4 audit tool loads your URL in a headless browser, intercepts all network requests, and reports what is actually firing - GA4 measurement IDs, Consent Mode status, GTM container health, and any pre-consent tracking detected. No Google login or GA4 account access required. Results in under 60 seconds.

Run a free GA4 audit on your site

GetInlytics scans your URL and checks GA4 measurement ID, Consent Mode v2 signals, GTM container health, and GDPR compliance. No login, no GA4 account access needed.

Run free GA4 audit