App Cookie Policy

Last Updated:

Cookies table 

All cookies used by the Drey Application:

Cookie 

Name 

First or third party 

Purpose

Type

Expiry 

Links to third party privacy notice 

Google analytics 

_ga

_gat

Third party 

These cookies are used to collect information about how visitors use our website. We use the information to compile reports and to help us improve the website.  

Persistent 

2 years 

https://privacy.google.com/?hl=en#

Drey 

sessionid

First Party

Keeps user logged in and tracks session across pages (essential site function).

Session

Ends when browser closes

N/A

Drey

csrftoken

First Party

Prevents Cross-Site Request Forgery when submitting forms.

Persistent

1 year

N/A

Drey

cookie_consent

First Party

Saves user's cookie consent choice to comply with privacy regulations.

Persistent

90 days

N/A

Drey

user_preferences

First Party

Remembers settings (language, theme, etc.) for convenience.

Persistent

6 months

N/A

Google analytics 

_ga

Third Party 

Tracks unique users for analytics and reports. (Consent required)

Persistent

2 years

https://policies.google.com/privacy

Google analytics 

_gid

Third Party 

Tracks short-term user behavior for analytics. (Consent required)

Persistent

24 hours

https://policies.google.com/privacy

Google analytics 

_gat

Third Party 

Manages rate of data collection to Google Analytics. (Consent required)

Persistent

1 minute

https://policies.google.com/privacy

Facebook Pixel

_fbp

Third Party 

Tracks users for targeted advertising and campaign performance. (Consent required)

Persistent

3 months

https://www.facebook.com/policy.php

Hotjar

_hjSessionUser_*

Third Party 

Remembers user ID for behavior analytics. (Consent required)

Persistent

1 year

https://www.hotjar.com/legal/policies/privacy/

HotJar

_hjSession_*

Third Party

Tracks on-page user actions to improve UX. (Consent required)

Session

30 minutes

https://www.hotjar.com/legal/policies/privacy/

Drey

XSRF-TOKEN

First Party

Security token to protect against malicious cross-site requests.

Session

Ends when browser closes

N/A