How to check what your Facebook pixel is actually sending (a 10-minute Test Events walkthrough)
Short answer
In Events Manager, use Test Events: do a dummy booking, open each event and read the URL, event name and custom fields. Fix what reveals a treatment, and repeat after every site change.
Most people have never looked at what their pixel sends. It's a ten-minute job and it's often a shock. So here's the walkthrough, plus what to do with what you find, because the finding is only half the job.
Step 1. Open Events Manager and go to your dataset. Find Test Events.
Step 2. Open your own site in another tab and do the thing a patient would do: land on a treatment page, open the booking form, submit it with dummy details. Use an email you control.
Step 3. Watch the events appear in Test Events. Click each one to open it.
Step 4. Look at the parameters. Specifically the page URL, the event name, and anything that looks like a custom field.
Step 5. Ask yourself the one question that matters: if I read only this, what would I know about the person?
If the answer is "which treatment they want" or "which condition they have", that's your problem. If the answer is "nothing much", good, keep going.
Now, what to do with what you find. I'd sort the findings into three piles.
Pile one: URLs and page titles. These are the easiest to fix. They come from the address and the page, and they can be cut down to your domain before the event leaves.
Pile two: event names. These are set in your tag or plugin setup. They can be replaced with neutral names, with a small note somewhere of what each code means.
Pile three: form fields and custom data. These are the hardest, because someone decided to send them. Ask why each one is there. If nobody can explain it, it probably shouldn't be.
Then write it down. A simple table: event, what it carries, the fix, who owns it. That table becomes your record. If you're ever asked to explain your setup, "here's what we found, what we changed, and what's sent now" is a much stronger answer than a shrug.
Bonus: do the same on your thank-you page. It's the one people forget, and it's often the most descriptive of all. Also repeat the test after every site change. New pages are how leaks come back.
Let me help you read what you find, field by field, because Test Events shows a lot and it's easy to skim.
Start with the event name at the top. Is it a standard name, like Lead or Purchase, a code, or something you or an agency invented? Custom names are the ones to read twice.
Then look for the URL, usually shown as the event source or in the parameters. Read the whole path, including anything after a question mark. Campaign parameters and coupon codes can carry meaning too, like ?utm_campaign=acne-treatment or a discount code named after a condition.
Then look at the user data section. You should see hashed values for email and phone, not readable ones. If you see something readable that looks like a name or an address, ask why.
Then look at anything labelled custom data or content. If your store or plugin sends product names, categories or form values there, they're in the event.
And note the timing. Test Events shows when the event arrived. If the confirmation page fires the event late or twice, that's a duplicate to fix.
How often should you run it? After every significant site change, and on a schedule, say monthly. Ten minutes a month is far cheaper than a week of lost conversions. And when you find something, write down what it was, where it came from and how you fixed it. That log is worth more than it looks.
What's the most revealing thing you found?
For reference, DataCops keeps a delivery log with a row per conversion, so the check you just ran in Test Events can be repeated for every event that leaves, not just one.
DataCops in short
For this question: The delivery log in DataCops shows each event as it was sent, so the Test Events check in this thread becomes a permanent record, not a one-off.
DataCops is a tool that keeps condition details out of what your ad platforms see: Health mode cuts page links to the domain, uses neutral event names and leaves out anything that describes a condition, while a bot verdict on every visit and a delivery log show what left and what was real.
How DataCops does it
- Health mode. Page links are cut to the domain, event names are neutral, and anything that describes a condition is left out before an event leaves.
- A log of exactly what left. A delivery log row per conversion, sent, held, skipped or failed, with the reason, which is the record you want when explaining yourself to a reviewer.
- Real people only. Every visit gets a bot verdict against 360+ billion IPs and 350+ monitoring points, with a Real people only switch per ad platform, off by default.
- One script, one DNS record. Collection runs on your own domain, and conversions go server-side to Meta, Google Ads, TikTok and LinkedIn, counted once against the pixel.
- The booking after the form. HighLevel natively, any CRM by webhook, sent as neutral events so a booked consultation still teaches the ads who converts.
Best for: clinics, telehealth and wellness brands, and agencies running health ads, who want conversions to keep counting without condition details in the data.
Ads Warmup: tell the ads who pays
Ads Warmup, DataCops' flagship feature, sends customers you already have to Meta, Google Ads and TikTok before a new campaign spends: upload a CSV (only email is required, up to 20,000 rows), see a 0 to 10 match score per person, pick the event, and send. Rows are dated when you send, and Google Ads credits only people who clicked a Google ad. Preview is free; sending needs a paid plan. Check your own consent basis for the list first. See Ads Warmup.
Ways to do this job
| Option | Best for |
|---|---|
| DataCops | Health mode, neutral events and a delivery log, server-side to four ad platforms |
| Manual event cleanup in your site and tag manager | Teams with an engineer who will maintain it |
| Turning conversion tracking off | Accounts that cannot risk any event |
When not to use DataCops
- You need legal or compliance advice. DataCops is not legal advice and does not make an ad account compliant. Your own advisers decide what you may send.
- You need a regulated setup with a signed agreement. That is the Enterprise plan: talk to the team.
Sources and further reading
More on this: Meta health and wellness restrictions, and the complete guide to offline conversion tracking.
If you find nothing alarming, great. Check again after the next site change. New forms and landing pages are the usual way it creeps back.