HTTP-only cookies
The server sets them with Set-Cookie and marks them HttpOnly, so JavaScript cannot read them.
That flag is the entire point, and it is also why a tool that reads cookies through JavaScript cannot see them. Cookiebot documents this as a limitation of their own scanner. Legally, a cookie you never registered cannot be part of the consent assessment you have to be able to document.