Tag management dataLayer & events Server-side tagging

Custom Google Tag Manager integration development

Appfront builds custom Google Tag Manager implementations that keep your tags, triggers and variables well organised, driven by a well-designed dataLayer on your website, webshop or web app. You get a clean dataLayer standard, Consent Mode v2 aligned with your cookie banner and, where needed, server-side tagging on your own endpoint. This way you place and manage tags without touching code every time, and stay in control of what data leaves your domain.

What is a Google Tag Manager integration?

Google Tag Manager is a tag management system. Rather than hard-coding separate measurement and marketing tags into your code, you use a single container that manages your tags, triggers and variables. At its heart is the dataLayer: a JavaScript object through which your application passes events and variables to GTM via dataLayer.push(). A trigger responds to such an event and fires the associated tag.

In practice, a custom integration means designing a clean dataLayer that matches your pages and interactions, setting up tags, triggers and variables consistently, connecting Consent Mode v2 to your cookie banner, and, where needed, setting up server-side tagging with a tagging server on Google Cloud that receives events at an endpoint on your own domain. To manage this at scale, we automate container and workspace actions via the Tag Manager API v2.

Appfront builds in line with the official Google Tag Manager developer documentation and the OWASP ASVS security standard. If your focus is on measurement and reporting, GA4 and the Data API, see our page on the Google Analytics integration. This page covers tag management and dataLayer implementation.

One dataLayer as the source

A structured dataLayer in which events and variables are pushed in a fixed way. Tags read consistently from the same source, so tracking stays reliable and new tags can be added without changing code.

Tags without code deployment

You add new tags, triggers and variables in the container, not in the codebase. Marketing can work independently within clear boundaries, while the dataLayer and guidelines are established by development.

€

Consent v2 & server-side

Consent Mode v2 integrated with your cookie banner, so tags only measure or set cookies after consent is given. With optional server-side tagging on your own endpoint, you keep control over which data leaves your domain.

Our development process for Google Tag Manager integrations

We work to a proven methodology that removes uncertainty early and delivers a stable implementation. From an initial analysis of your measurement goals, pages and consent requirements through to going live and ongoing management, every step is aimed at an integration your team can understand and trust.

1
Measurement plan & scope

We map out which events and conversions you want to measure, which variables are needed for them, which consent requirements apply, and whether web-only tagging is sufficient or server-side tagging is preferred.

2
dataLayer design

We design the dataLayer structure and event schema, choose between a web and server container, and establish naming conventions for events and variables.

3
Implementation

We build the dataLayer pushes, configure tags, triggers and variables, set up Consent Mode v2, and test every tag in preview mode before publishing.

4
Go-live & management

Controlled publication via workspaces and versions, with validation of data streams. This is followed by ongoing management and further development, if you wish via the Tag Manager API.

What a Google Tag Manager integration delivers in practice

Every GTM integration is set up specifically for your pages, events and privacy requirements. Below are the features we most often deliver for organisations that use Tag Manager as the foundation of their tag management and measurement strategy.

dataLayer implementation

A structured dataLayer with a fixed event schema. Your application pushes events and variables via dataLayer.push() at the right moments (page views, clicks, form submissions, transactions), so tags read consistently from one source.

Tags, triggers & variables

A well-organised container: tags for your measurement and marketing goals, triggers that fire on the right events, and variables that read from the dataLayer. Clear naming and folders keep the setup scalable and maintainable.

Server-side tagging

A server container in a tagging server on Google Cloud (Cloud Run or App Engine) that receives events at an endpoint on your own domain. This improves page performance, provides a first-party context and gives you control over which data leaves your domain.

Tag Manager API v2

Programmatic container management through the Tag Manager API v2: accounts, containers, workspaces, versions, tags, triggers and variables. Ideal for bulk changes, rolling out a standard across multiple containers and building GTM configuration into a CI/CD workflow.

Consent Mode v2

Consent Mode v2 integrated with your consent management platform, with defaults set to denied and updates applied once the visitor makes a choice. Tags only measure or set cookies after consent for the relevant consent types, such as ad_storage, analytics_storage, ad_user_data and ad_personalization.

E-commerce & event tracking

A complete event implementation for your funnel: from page views and clicks to form submissions and e-commerce events such as product views, add-to-cart and purchase. The dataLayer supplies the details, so conversion and marketing tags measure consistently.

Typical use cases in practice

A GTM integration looks quite different from one organisation to the next. We see a number of recurring patterns, and for each we have a working setup that pays close attention to the dataLayer, the right events, and a suitable consent and server-side strategy.

CRM

Webshop & e-commerce

Webshops that want to measure the full funnel: product views, add-to-cart, checkout steps and purchase. An e-commerce dataLayer supplies products and transactions, conversion and marketing tags fire consistently, and server-side tagging keeps the data first-party. Feel free to combine this with our e-commerce development.

SaaS & lead generation

SaaS companies and lead-generation sites that want to measure sign-ups, trials and form submissions without changing code each time. Funnel events in the dataLayer, triggers on form steps and variables for pricing plans, connected to your marketing tags and neatly within Consent Mode v2.

Content & publishers

News, media and content platforms with many pages and advertising or affiliate tags. A clean dataLayer for scroll, read and click events, well-organised tag management per section, and server-side tagging to keep performance high and data first-party at large audience volumes.

Multi-site & agencies

Organisations with multiple domains and agencies managing several containers for clients. A single dataLayer and naming standard across all sites, rolled out and kept up to date via the Tag Manager API v2, with workspaces and versions for controlled publishing.

Technology we use

We build Google Tag Manager integrations with web and server containers, a carefully designed dataLayer and the Tag Manager API v2, combined with the stack that suits you. The precise choice depends on your measurement goals, privacy requirements and whether you want server-side tagging, so your own team can manage or further develop the implementation.

GTM web container GTM server container dataLayer & dataLayer.push() Tags, triggers & variables Custom templates Google tag (gtag) Consent Mode v2 Server-side tagging on Cloud Run App Engine tagging server Your own first-party endpoint Tag Manager API v2 Workspaces & versions GA4 & conversion tags E-commerce dataLayer Node.js / Python / Go GitHub Actions / CI/CD

Why choose Appfront for your Google Tag Manager integration?

Appfront has extensive experience building API integrations for a wide range of organisations in the Netherlands. We always start with a thorough analysis of your existing systems and processes. An integration should not only work technically, but also add practical value to the way you work.

For every integration, we write clear documentation and make sure your own team, or any future supplier, can understand and manage it. No black box, just transparent code and clear agreements on monitoring, alerting and maintenance.

You work with a dedicated point of contact who understands both the technical and the functional side. This keeps communication short, prevents misunderstandings and speeds up decisions when choices need to be made during development.

See also our broader services around API integrations, middleware, custom software and web app development. For the measurement and reporting side, there is our Google Analytics integration.

  • Experience with web and server containers and well-considered dataLayer design
  • Specialists in tags, triggers, variables and event tracking
  • Experienced with Consent Mode v2 and GDPR-compliant setup
  • Server-side tagging on Cloud Run or App Engine with a custom endpoint
  • Automated container management via the Tag Manager API v2
  • Every tag tested in preview before we publish
  • Clear documentation your team can read and manage
  • A fixed point of contact, no account managers passed around
  • Ongoing maintenance and proactive further development
  • A way of working aligned with your existing IT landscape

Security and privacy in Google Tag Manager integrations

Tags that measure or set cookies almost always process personal data, which is why privacy is central to any GTM integration. We implement Consent Mode v2 with defaults set to denied and updates applied once the visitor makes a choice, aligned with your consent management platform, so tags only measure or set cookies when consent has been given. We also focus on data minimisation: only the events and fields in the dataLayer that you actually need. Appfront builds to the OWASP ASVS.

With server-side tagging on a first-party endpoint of your own, you stay in control of what data leaves your domain: you decide in the server container what is forwarded and what is not. We document the data flows and which tags send which data, so your record of processing activities is complete and you can demonstrably comply with the GDPR.

More on our security approach: information security policy and CVD policy.

  • Consent Mode v2 integrated with your cookie banner
  • Data minimisation in the dataLayer and server container
  • First-party context through server-side tagging
  • Encryption in transit (TLS 1.2+) for all data flows
  • Role-based access and least privilege in GTM
  • Publishing via workspaces and versions with rollback
  • Monitoring and validation of tag firing
  • Documentation for your record of processing activities

Frequently asked questions about Google Tag Manager integrations

Answers to the questions we are asked most often about GTM implementations.

A Google Tag Manager integration is a custom implementation in which GTM is technically woven into your website, online shop or web app. At its core is the dataLayer: a JavaScript object through which your application passes events and variables to GTM via dataLayer.push(). Within the container, tags, triggers and variables are configured to respond to those events. An integration can be as simple as a clean dataLayer for a few conversion events, or as extensive as server-side tagging on your own endpoint with Consent Mode v2 and automated container management via the Tag Manager API v2.

Google Tag Manager is about tag management: placing, firing and managing tags through a container and dataLayer. It is the implementation and delivery layer. Google Analytics is about measuring and reporting itself: sessions, events, attribution and the GA4 Data API. In practice, GA4 is often deployed via GTM, but these are two distinct concerns. If you're interested in the measurement and reporting side (GA4, Data API, dashboards), see our Google Analytics integration page. This page focuses on tag management and dataLayer implementation.

With server-side tagging, a second, server container runs in a tagging server on Google Cloud (Cloud Run or App Engine). The browser sends events to an endpoint on your own (sub)domain rather than directly to third parties. There, you process the data further using the same tag, trigger and variable logic. This improves page performance, gives greater control over privacy and data minimisation, and provides a first-party context. It is especially worthwhile for webshops and publishers with high traffic or strict privacy requirements. Appfront handles the Cloud setup, the custom endpoint and the clients.

We work with web and server containers, a well-structured dataLayer (dataLayer.push for events and variables), tags, triggers and variables, and custom templates where needed. We run server-side tagging on Cloud Run or App Engine with a dedicated endpoint. For automated management, we use the Tag Manager API v2 (accounts, containers, workspaces, versions, tags). We set up the Google tag (gtag) and Consent Mode v2 together with your consent management platform. We build the backend around the tagging server in the stack that suits you.

The cost depends on the complexity of your dataLayer, the number of events and tags, whether you opt for web-only or server-side tagging as well, the Consent Mode requirements and the degree of automation via the Tag Manager API. Ongoing management, monitoring and the cloud infrastructure for a server container also play a part. We always provide a clear quote following a no-obligation analysis of your situation.

Yes, provided it is set up properly. We implement Consent Mode v2 so that tags only measure or set cookies once the visitor has given consent, and we align this with your consent management platform. Server-side tagging on a first-party endpoint of your own gives you control over which data leaves your domain and makes data minimisation possible. We document the data flows and which tags send which data, so that your record of processing activities remains complete and you can demonstrably comply with the GDPR.

Yes. We regularly take over existing containers. We carry out an audit of tags, triggers, variables and the dataLayer, identify duplicate or non-firing tags, check the Consent Mode configuration and document the current setup. We can then clean up the container, introduce a tidy dataLayer standard, migrate to server-side tagging where appropriate, and keep management organised through workspaces and versions — partially automated with the Tag Manager API v2 if you wish.

A GTM integration suits almost any organisation that wants to manage marketing and measurement tags in a structured way without changing code each time. Webshops use it for e-commerce and conversion events, SaaS and lead generation businesses for funnel and form tracking, publishers for content and ad tags, and agencies or multi-site organisations for consistent management across multiple containers. A well-considered dataLayer and server-side setup pays off especially when you have multiple domains or strict privacy requirements.

Ready to build your Google Tag Manager integration?

Tell us which events you want to measure and whether you want web-only or server-side tagging as well — we are happy to help with the dataLayer, Consent Mode v2 and automated container management via the Tag Manager API. A no-obligation first conversation will give you a clear picture of the possibilities within half an hour.

Edit content