Cookies Policy
This page lists every cookie skanyx.com sets on your device, what each one does, how long it lasts, and how to control it. Essential cookies run by default so the site works. Analytics cookies run only after you accept them in the banner.
Want to change your choice? Open Cookie Preferences in the footer to see the current state of each purpose, switch any of them, or withdraw everything at once. You can also block or delete cookies in your browser settings.
What cookies are
Cookies are small text files a site stores on your device. They let us keep you signed in, protect forms from cross-site forgery, and, with your consent, measure which pages people actually use. Some cookies live only for the current session and disappear when you close the tab. Others stay for months so we do not have to ask the same questions twice.
We also use a related technology called localStorage to remember your cookie choice across visits. It works the same way for you: stored on your device, controlled by you, never used for advertising.
Cookies we set
Grouped by purpose. Names match what you will see in your browser's developer tools.
skanyx_consent_v2
Stores your consent choice for each purpose (crash reporting, analytics) with the date and copy version, so we do not ask on every page.
- Category
- Essential
- Expiry
- 12 months (localStorage)
- Default
- On
csrf-token
Signed token that blocks cross-site request forgery on login, checkout, and account forms.
- Category
- Essential
- Expiry
- Session
- Default
- On
sb-api-auth-token
Supabase authentication. Keeps you signed in across pages and refreshes your session.
- Category
- Essential
- Expiry
- Session, up to 7 days
- Default
- On
cf_clearance (Cloudflare Turnstile)
Cloudflare Turnstile bot check on sign-in, registration and password-recovery forms. Set only when a challenge is passed; the widget itself issues a one-time token, not a tracking cookie.
- Category
- Essential
- Expiry
- Up to 30 minutes
- Default
- On
_ga
Google Analytics via Firebase. Assigns a random ID to count unique visitors. We do not link it to your account.
- Category
- Analytics
- Expiry
- 24 months
- Default
- Off until consent
_ga_<container>
Google Analytics 4 session counter. Tracks page views per session.
- Category
- Analytics
- Expiry
- 24 months
- Default
- Off until consent
ph_<project>_posthog
PostHog product analytics. Stores a random ID to measure site usage and conversions, served through our own domain. Not used for advertising.
- Category
- Analytics
- Expiry
- 12 months
- Default
- Off until consent
__stripe_mid, __stripe_sid
Stripe fraud detection on checkout pages. Loads only when you start a payment.
- Category
- Essential (payment)
- Expiry
- 30 minutes to 12 months
- Default
- On at checkout
| Name | Purpose | Category | Expiry | Default |
|---|---|---|---|---|
| skanyx_consent_v2 | Stores your consent choice for each purpose (crash reporting, analytics) with the date and copy version, so we do not ask on every page. | Essential | 12 months (localStorage) | On |
| csrf-token | Signed token that blocks cross-site request forgery on login, checkout, and account forms. | Essential | Session | On |
| sb-api-auth-token | Supabase authentication. Keeps you signed in across pages and refreshes your session. | Essential | Session, up to 7 days | On |
| cf_clearance (Cloudflare Turnstile) | Cloudflare Turnstile bot check on sign-in, registration and password-recovery forms. Set only when a challenge is passed; the widget itself issues a one-time token, not a tracking cookie. | Essential | Up to 30 minutes | On |
| _ga | Google Analytics via Firebase. Assigns a random ID to count unique visitors. We do not link it to your account. | Analytics | 24 months | Off until consent |
| _ga_<container> | Google Analytics 4 session counter. Tracks page views per session. | Analytics | 24 months | Off until consent |
| ph_<project>_posthog | PostHog product analytics. Stores a random ID to measure site usage and conversions, served through our own domain. Not used for advertising. | Analytics | 12 months | Off until consent |
| __stripe_mid, __stripe_sid | Stripe fraud detection on checkout pages. Loads only when you start a payment. | Essential (payment) | 30 minutes to 12 months | On at checkout |
We removed our advertising pixel in August 2026 and no longer run advertising cookies or cross-site trackers. Stripe cookies load only on payment pages and are required by the payment processor for fraud prevention. Adapter and vehicle research is not listed here because it sets nothing in your browser: it is an account setting for the Skanyx app, and you can switch it off on the cookie preferences page or in the app.
Third-party services
When you accept analytics or pay for a product, your browser also talks to these processors. Each has its own privacy policy.
- Google Analytics (via Firebase): anonymised usage data. Runs only after you accept analytics cookies. policies.google.com/privacy
- PostHog: product analytics, served through our own domain. Runs only after you accept analytics cookies. posthog.com/privacy
- Stripe: payment processing. Cookies load on checkout pages only. stripe.com/privacy
- Cloudflare: bot protection and CDN. Sets the cf_clearance cookie when a challenge is required (rare). cloudflare.com/privacypolicy
- Supabase: authentication and database. Stores your sign-in session. supabase.com/privacy
Manage your cookies
Two ways to control what runs on your visit:
- Skanyx Cookie Preferences: scroll to the footer and click Cookie Preferences. The page shows your current choice for each purpose and lets you change or withdraw any of them at any time.
- Browser settings: every modern browser lets you block or delete cookies by site. Look for Privacy or Security in your browser preferences.
If you block essential cookies, the site will still load but you will not stay signed in and forms may fail security checks.
Do Not Track and Global Privacy Control
Skanyx honours the Global Privacy Control (GPC) signal. If your browser sends GPC, we treat it as a request to disable analytics cookies, the same as choosing essential-only in the banner. There is no industry standard for the older Do Not Track header, so we rely on GPC and your explicit banner choice.
Changes to this policy
If we add a cookie or swap a processor, we update this page and refresh the date at the top. Material changes also reset the banner so you can re-consent.
Contact
Questions about cookies, or want to request your data?
- Email: support@skanyx.com
- Postal: Skanyx, Vilnius, Lithuania
- EU residents: you also have the right to lodge a complaint with your local data protection authority.
