Cookie Policy
Vendo uses a small set of cookies to keep you logged in, protect the platform from abuse, and remember UI preferences. We do not use advertising, analytics, or tracking cookies.
1. What is a cookie
A cookie is a small text file that a website asks your browser to store. The next time you visit the same site, the browser sends the cookie back so the site remembers something — typically that you are signed in.
2. Essential cookies (cannot be disabled if you want to log in)
| Cookie | Purpose | Set by |
|---|---|---|
| Session token | Maintains login state for operators and staff | Vendo |
| CSRF token | Prevents cross-site request forgery on form submissions | Vendo |
__cf_bm | Cloudflare bot management — distinguishes humans from bots | Cloudflare |
__cflb | Cloudflare load balancer affinity | Cloudflare |
| Cloudflare challenge cookie | Shown only if you trigger a security challenge | Cloudflare |
3. Functional cookies
UI preferences (for example, a saved theme or language) are stored locally if you set them. These cookies do not contain identifying information.
4. What Vendo does not use
- No advertising cookies.
- No third-party tracking pixels.
- No Google Analytics or similar analytics cookies.
- No social-media share-widget tracking.
- No retargeting or remarketing cookies.
5. Managing cookies
You can view and delete cookies in your browser at any time:
Disabling essential cookies will prevent you from logging in to the platform. Disabling Cloudflare's cookies will not break the site but will make us re-verify you more often.
6. Third parties
Two third-party services may set cookies while you use the platform:
- Stripe may set cookies during payment checkout to protect against fraud. These are governed by Stripe's privacy policy.
- Cloudflare sets the security and load-balancing cookies listed above. These are governed by Cloudflare's privacy policy.
7. Updates
If we add a new category of cookie we will update this page and, if it materially changes what is collected, notify operators.
