Cookies Policy

A complete list of the cookies and browser storage used by concreef.eu, what each one is for, how long it lasts, and how to control the non-essential ones.

Updated

Initial version, pending legal review. This policy reflects what the site stores today. It has not yet been reviewed by an external lawyer and will be updated after that review.

What this covers

This page explains everything concreef.eu stores in or reads from your browser — cookies, local storage and session storage — and what you can do about it. It sits alongside our Privacy Policy, which explains what we do with personal data once it reaches us.

Two categories matter:

  • Essential items are needed to make the site work — mainly to keep you signed in. We do not need your consent for these, but we also cannot switch them off without breaking the feature they support.
  • Non-essential items are for measurement and marketing. They are loaded only after you consent, and you can withdraw that consent at any time.

What is actually stored

Name / keyTypeSet byPurposeLifetime
better-auth.session_tokenCookie (HTTP-only, Secure in production, SameSite=Lax)concreef.euEssential. Keeps you signed in to your account. Contains a random session token, not your data.Expires with the session (by default 7 days, refreshed while you stay active); deleted when you sign out
better-auth.* supporting cookies (e.g. CSRF and OAuth state during Google or GitHub sign-in)Cookieconcreef.euEssential. Protects the sign-in flow against cross-site request forgery and completes the redirect back from the sign-in provider.The state cookies last minutes, only for the duration of the sign-in
concreef-themeLocal storageconcreef.euEssential preference. Remembers whether you chose the light or dark theme so the page does not flash on load. Never sent to our servers.Until you clear your browser storage
concreef-attributionSession storageconcreef.euEssential for the contact form. Holds the first page of your visit, the referring site and any UTM parameters in the link you followed, so that an enquiry you send carries its source. Not a cookie; never shared with third parties.Cleared when you close the browser tab
_gaCookie (Google Analytics via Google Tag Manager)google-analytics.com / .concreef.euNon-essential — consent required. Distinguishes one browser from another so visits can be counted.Up to 2 years
_ga_<container id>Cookie (Google Analytics 4).concreef.euNon-essential — consent required. Keeps the analytics session state for the GA4 property.Up to 2 years
_gidCookie (Google Analytics).concreef.euNon-essential — consent required. Distinguishes browsers for daily reporting.24 hours
_gat / _gat_gtag_*Cookie (Google Analytics).concreef.euNon-essential — consent required. Throttles the rate of requests to Analytics.1 minute
Other tags deployed through container GTM-W429C2MVCookie or local storageGoogle Tag ManagerNon-essential — consent required. Google Tag Manager is a container: it does not itself store analytics data, but it can deploy measurement or advertising tags. Where we add one, it appears in this table.Varies by tag

Google Tag Manager itself is a loader. Google Analytics is the measurement tool we deploy through it. Google's own descriptions of these cookies are published in the Google Analytics cookie usage documentation.

Non-essential scripts — the analytics and marketing tags delivered through Google Tag Manager — load only after you have given consent. Until you consent, no analytics cookie is set and no measurement request is sent.

You can change your mind at any time:

  • Withdraw or change consent using the cookie settings on this site.
  • Delete the cookies already set from your browser settings.
  • Block cookies entirely in your browser. Blocking the essential session cookie will prevent you from signing in; everything else on the site will still work.

Withdrawing consent stops future collection. It does not undo data already collected, though you can ask us to delete that too — see the rights section of the Privacy Policy.

Third-party sign-in

If you sign in with Google or GitHub, that provider will set its own cookies on its own domain during the sign-in. Those cookies are controlled by the provider under its own cookie and privacy policies, not by us.

Browser controls

Every major browser lets you view, delete and block cookies and clear site storage:

  • Chrome: Settings → Privacy and security → Third-party cookies / Site data
  • Firefox: Settings → Privacy & Security → Cookies and Site Data
  • Safari: Settings → Privacy → Manage Website Data
  • Edge: Settings → Cookies and site permissions

Changes

We will update this page whenever we add, remove or change what the site stores in your browser. The date at the top shows the current version.

Questions: info@concreef.eu, Concreef, Sofia, Bulgaria.