Legal
Cookie and Storage Notice
Effective July 30, 2026
1. No advertising or analytics cookies
VivaCreo does not currently use advertising cookies, cross-site tracking pixels or a separate analytics identifier stored on your device. Internal analytics are generated on the server without placing a visitor tracking cookie. When the necessary service session is already active, a short source/referrer snapshot may be kept inside that same server-side session to connect a registration to its first visit.
2. Strictly necessary cookies
- vivacreo-session: maintains sign-in state, security messages and the current workflow. It normally expires after 120 minutes of inactivity.
- XSRF-TOKEN: protects forms and API requests against cross-site request forgery. It follows the active browser session/security configuration.
These cookies are required to provide account access, checkout, uploads and protected actions requested by you. They are not used for advertising. They fall under the strictly necessary exception in section 25(2) no. 2 TDDDG.
3. Session storage in the browser
- workflow:return-url: returns you to the requested workflow after sign-in.
- Pricing response cache: avoids repeated pricing requests while the current browser tab is open.
sessionStorage is scoped to the current site and browser tab and is normally cleared when the tab or browser session closes. It is used only for the requested workflow and not to recognize you across websites.
4. Optional technologies
Optional analytics, advertising, personalization and other non-essential device storage are not active. If this changes, the technology will remain disabled until any consent required by law has been collected.
5. Browser controls and contact
You can delete or block storage in your browser, but blocking necessary cookies can prevent sign-in, checkout and protected forms from working. Questions can be sent to help@vivacreo.com.