This Cookie Policy explains how QRolling (“QRolling,” “we,” “us”) uses cookies and similar technologies on qrolling.com and its subdomains (collectively, the “Service”). It supplements our Privacy Policy and our Terms and Conditions.
Cookies are small text files that a website places on your device when you visit. They are widely used to make websites work, remember your preferences, and provide reporting information. In this policy, “cookies” also refers to similar technologies we use, such as localStorage, sessionStorage, and IndexedDB entries set by your browser, which work in a comparable way.
Cookies can be:
We use cookies and equivalent storage to:
We do not use cookies to build advertising profiles, track you across unrelated websites, or sell your data.
The table below lists every cookie or browser-storage item the Service may set, along with its purpose, type, duration, and category. Items are loaded only after you have accepted the relevant category, except for strictly necessary items.
| Name | Type | Purpose | Duration | Category |
|---|---|---|---|---|
token |
Cookie | Authentication token (JWT) used to keep you signed in to the user panel. | 7 days | Necessary |
i18nextLng |
localStorage | Stores your selected interface language. | Persistent (until cleared) | Functional |
theme |
localStorage | Stores your light/dark theme preference. | Persistent (until cleared) | Functional |
sidebarCollapsed |
localStorage | Remembers whether the application sidebar is expanded or collapsed. | Persistent (until cleared) | Functional |
tr_* (translation cache) |
localStorage | Caches translated UI strings to reduce calls to the translation provider and speed up the interface. | Persistent (until cleared) | Functional |
qr_consent |
Cookie | Stores your cookie-consent choices so we do not ask again on every visit. | 12 months | Necessary |
qr_csrf |
Cookie | Cross-site request forgery (CSRF) protection for authenticated requests. | Session | Necessary |
| Provider | Cookie / item | Purpose | Duration | Category |
|---|---|---|---|---|
| Google Analytics 4 (Google LLC) — planned, not yet active | _ga, _ga_<CONTAINER_ID> |
Will distinguish unique visitors and persist session state on our public marketing site once enabled. We will load these only after you accept analytics cookies. | 2 years | Analytics |
| Google Sign-In (Google LLC) | Cookies set on accounts.google.com during the OAuth flow | Authentication via “Sign in with Google.” Set only when you choose this method. | Managed by Google — see Google’s policies | Necessary (only if used) |
| Sign in with Apple (Apple Inc.) | Cookies set on appleid.apple.com during the OAuth flow | Authentication via “Sign in with Apple.” Set only when you choose this method. | Managed by Apple — see Apple’s policies | Necessary (only if used) |
| Paddle (Paddle.com Market Ltd) | Cookies set on Paddle’s checkout pages | Subscription checkout, fraud prevention. Set only on Paddle-hosted pages during a transaction. | Managed by Paddle — see Paddle’s policies | Necessary (only at checkout) |
Cookie names beginning with provider-specific prefixes (e.g., _ga) may evolve over time as the provider updates its products. We will refresh this table accordingly.
Some cookies are placed by third parties that we engage to operate parts of the Service. These third parties act as our sub-processors under written agreements and may not use cookies for their own independent purposes. Their use of cookies is also governed by their own privacy and cookie policies:
Current state. Because we do not currently run any analytics, marketing or other non-essential cookies, no cookie consent banner is shown. Strictly necessary cookies are loaded automatically because they are exempt from consent under Article 5(3) of the ePrivacy Directive. Functional preferences such as language or theme are stored locally only after you actively choose them (e.g. clicking the language switcher).
When we activate non-essential cookies. The moment we add any analytics or other non-essential cookie (for example, Google Analytics, currently planned but not yet active), we will display a cookie consent banner on first visit that lets you:
From that point on, your choice will be stored in the qr_consent cookie for 12 months and changeable at any time via a “Cookie settings” link in the website footer. We will not load any non-essential cookie before you have made a choice.
You can always block any cookie in your browser settings. If you block strictly necessary cookies, the Service may stop working for you (you may not be able to sign in, your settings may not persist, etc.).
Most browsers offer a “Do Not Track” (DNT) signal. Because there is no single standard for how websites should respond to DNT, we treat DNT signals as informational only and continue to honour your explicit consent choice.
Where your browser sends a recognised Global Privacy Control (GPC) signal, we treat it as a request to opt out of the “sale” or “sharing” of personal information for cross-context behavioural advertising under the CCPA/CPRA. Because we do not sell or share personal data in that sense, the practical effect is that no additional opt-out is required.
We may update this Cookie Policy from time to time. When we make material changes, we will update the “Last Updated” date at the top of this page and, where required by law, refresh our cookie banner so that you can re-confirm your preferences.
Questions about this Cookie Policy or the cookies we use? Contact us:
QRolling
Registered address: 75A Erosi Manjgaladze Street, Tbilisi 0159, Georgia
Company registration: B26345195 (National Agency of Public Registry, Georgia)
Tax ID: EN3289008
Privacy & data protection: [email protected]
General & billing: [email protected]
Website: qrolling.com