Skip to main content
Legal · Cookies

Cookie policy.

We use a small number of cookies and similar technologies to operate the platform. This policy lists each one, its purpose, retention, and how to control it.

Last updated: 2026-04-23
Effective from: 2026-05-01
Version: 4.0

1. What cookies are

A cookie is a small text file placed on your device by a website. We use cookies to keep you signed in, remember preferences, secure the service against fraud, and — with your consent — measure how the platform is used so we can improve it.

Your choices

You can control non-essential cookies at any time via the Cookie settings link in the footer, your browser preferences, or by withdrawing consent in your account. Essential cookies cannot be disabled; the platform would not function without them.

2. Strictly necessary

Required for core platform function. No opt-out — these are exempt from consent requirements under the ePrivacy Directive.

  • Authentication — session cookie set by our authentication system. Persists for the active session; expires on sign-out.
  • CSRF token — protects every state-changing request from cross-site forgery.
  • Session ID — links your in-flight requests to your account context.
  • Cookie consent state— remembers your choices so we don’t re-prompt.

3. Functional

Theme preference (light/dark), product grid/list view choice, language. Stored in localStorage or a first-party cookie. No data is shared with third parties.

4. Analytics (consent required)

Aggregate analytics and Web Vitals measurement. Anonymised where possible. Only set after consent is granted in the cookie banner.

What we don't do
We do not use third-party advertising cookies, cross-site tracking, or fingerprinting. We will never share analytics cookies with advertisers or data brokers.

5. Marketing

Rekyndo does not use third-party marketing cookies or cross-site tracking. If this changes in the future, we will request explicit opt-in consent before any such cookie is set.

6. Sub-processor cookies

Some integrated sub-processors set their own cookies when you interact with their components on our platform:

  • Stripe — fraud prevention and payment authorisation when you reach checkout. See Stripe’s cookie policy.
  • Cloudflare — bot detection and DDoS protection on every request.

7. Change preferences

Use Cookie settings in the footer, or clear your site data via your browser. Revoking consent for analytics takes effect on the next page load. Revocation does not affect the lawfulness of processing carried out before consent was withdrawn.

8. Retention

  • Session cookies — deleted when you close your browser
  • Authentication cookies — for the lifetime of your sign-in session (up to 30 days unless you sign out)
  • Cookie consent state — 12 months
  • Functional preferences — until you change them
  • Analytics — 90 days at most (where applicable)

9. Contact

Questions or rights requests: [email protected]. Postal: My Company, attn. DPO, .

See also: Privacy policy · Terms of service.