Cookie Policy
Last updated: July 2026
1. What Are Cookies?
Cookies are small text files that are stored on your device when you visit a website. In this policy we also use "cookies" as shorthand for similar technologies we rely on, such as browser localStorage. In practice, most of the items Viscacare stores on your device are localStorage entries rather than classic HTTP cookies, but they are treated the same way for consent purposes.
2. Types of Cookies We Use
Our cookie banner groups these items into three categories. The names and descriptions below match the toggles you see when you first visit Viscacare and in the "Manage cookies" dialog available from the footer.
Essential (always on)
Required for authentication, security and remembering your consent choice. Without these the site cannot sign you in, keep your session secure, or record your cookie preferences. Essential items cannot be switched off.
Functional (consent required)
Remembers preferences like your interface language and MIA assistant language so the site behaves the way you set it up. These are only stored if you accept the Functional category in the banner or in "Manage cookies".
Analytics (consent required)
Anonymised, aggregate usage measurement so we can understand which parts of the platform are used and where they break. No analytics cookies or scripts are currently deployed on Viscacare. The Analytics toggle in the consent UI is a placeholder for future measurement: if we later introduce an analytics provider, it will only run after you opt in via that toggle, and we will update the table below to name the provider and its cookies.
2a. Cookies and Similar Technologies We Set
The table below lists the specific items in use on Viscacare today. Most are stored in browser localStorage rather than as classic cookies. Only Essential items are set by default; Functional items are set only where you have accepted the Functional category in our consent UI.
| Name | Type | Provider | Category | Purpose | Retention |
|---|---|---|---|---|---|
| sb-*-auth-token | localStorage | Supabase (Lovable Cloud) | Essential | Keeps you signed in and secures your authenticated session. | Until sign-out or session expiry |
| visca-cookie-consent | localStorage | Viscacare | Essential | Remembers your cookie category choices so we do not re-prompt on every visit. | Until you clear it or update your choice |
| vivacare_last_activity | localStorage | Viscacare | Essential (security) | Timestamps your last activity to enforce automatic sign-out after 5 minutes of inactivity. | Cleared on sign-out or auto-logout |
| i18nextLng | localStorage | Viscacare | Functional | Remembers your selected interface language so it persists across visits. | Until you change language or clear your browser |
| mia-language | localStorage | Viscacare | Functional | Remembers the language you last used with the MIA healthcare assistant. | Until you change language or clear your browser |
No analytics cookies or third-party tracking scripts are currently loaded on Viscacare. If you start a payment, you will be redirected to Stripe (checkout.stripe.com) which sets its own cookies on Stripe's domain for payment fraud prevention — those are governed by Stripe's cookie policy, not this one. You can withdraw consent for non-essential categories at any time via the "Manage cookies" link in the footer.
3. How to Manage Cookies
You are in control of the non-essential categories at any time. You can manage them in the following ways:
- Cookie banner (first visit). When you first arrive on Viscacare you are shown a banner with three actions: Accept all, Reject non-essential, and Customise. Choosing "Customise" opens a preferences dialog with a toggle for each category (Essential is always on).
- "Manage cookies" link in the footer. Available on every page. Opens the same preferences dialog so you can change your choice at any time — withdrawing consent is as easy as giving it.
- Browser settings. Your browser also lets you block or delete cookies and clear localStorage. Doing so will sign you out and reset your language and MIA preferences.
Note that turning off Essential items is not possible from the consent UI because the site cannot function without them (you would not be able to stay signed in or record your own cookie choice).
4. Third-Party Cookies
Viscacare does not currently load third-party tracking or advertising scripts on its own domain. The only third parties involved are:
- Stripe — only when you start a payment. You are redirected to
checkout.stripe.com, where Stripe sets its own cookies (e.g. for payment fraud prevention) under its own cookie policy. Those cookies are not set on the Viscacare domain. - Supabase (Lovable Cloud) — our backend provider. Your authenticated session token is stored in localStorage on the Viscacare origin (see the table above). Supabase does not set third-party tracking cookies.
- Map tiles — our maps use OpenStreetMap tiles via Leaflet / react-simple-maps. These do not set cookies.
5. Cookie Retention
Retention is set out per item in the table in section 2a. In summary:
- Authentication and idle-timeout items are cleared when you sign out or are auto-logged out for inactivity.
- Your consent choice and language preferences persist until you change them or clear your browser storage.
- No item listed above is retained for more than 12 months from your last visit.
6. Updates to This Policy
We may update this Cookie Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
7. Governing Law
This Cookie Policy is governed by and construed in accordance with the laws of Northern Ireland, United Kingdom. If you are a consumer resident in the European Union, the European Economic Area, the United Kingdom or Switzerland, this does not deprive you of the protection afforded by mandatory provisions of the law of your country of residence, and you may bring proceedings in the courts of that country.
8. Contact Us
If you have questions about our use of cookies, please contact us at privacy@gewardz.com