Cookie Policy
Last updated: 29 July 2026
We use no advertising, analytics or tracking cookies — which is why you are not asked for cookie consent. Every cookie below is strictly necessary to deliver a service you asked for, and is exempt from the consent requirement under Article 5(3) of the ePrivacy Directive.
Cookies we set
| Cookie | Purpose | Expires |
|---|---|---|
authjs.session-token | Keeps you signed in. Holds an opaque session reference — no personal data, no permissions. Your role and approval status are re-read from the database on every request, so access can be revoked instantly. | 7 days |
authjs.csrf-token | Protects sign-in and forms against cross-site request forgery. | Session |
cat_wide, cat_cols, cat_instock, admin_wide | Remembers how you like the catalog laid out — width, products per row, and whether to show in-stock items only. | 1 year |
Third-party cookies
None, in normal use. If bot protection is enabled on the registration form, Cloudflare Turnstile may set a short-lived cookie there solely to tell humans from bots. It does not track you across sites.
Managing cookies
You can clear or block cookies in your browser settings. Blocking the session and CSRF cookies will prevent you from signing in — they are what a logged-in session is made of. Blocking the preference cookies only resets the catalog layout to its defaults.
Questions: CONTACT EMAIL — TO BE COMPLETED. See also our Privacy Policy.