Skip to content
StoreFlux
Features Developers Security Pricing Docs FAQ
Sign in Start free
Features Developers Security Pricing Docs FAQ
Start free Sign in
Home/Legal/Cookie Policy

Cookie Policy

Exactly which cookies and browser storage StoreFlux uses, what each one does, how long it lasts, and how to change your choice.

Last updated: October 3, 2026 Applies to storeflux.store, the admin panel and the API
On this page
  1. What cookies are
  2. Categories we use
  3. Marketing website: storeflux.store
  4. Admin panel: admin.storeflux.store
  5. Storefront and demo store
  6. Managing your choice
  7. Changes to this policy
  8. Contact

This policy explains how StoreFlux uses cookies and similar technologies such as localStorage and sessionStorage (together, “cookies”) on storeflux.store, the admin panel at admin.storeflux.store, and the demo storefront at demostore.storeflux.store. It should be read with our Privacy Policy.

Your choice, any time

Analytics cookies are off by default and are set only if you allow them. You can change your mind at any time.

01What cookies are

Cookies are small text files that a website stores in your browser. Similar technologies, such as localStorage and sessionStorage, do the same job inside the browser. They are used to make sites work, remember preferences and, with your permission, measure usage.

02Categories we use

Strictly necessary (always on)

These are required for the site or the signed-in application to function and for security. They do not need consent and cannot be switched off in our banner. If you block them in your browser, parts of the Service will not work.

Analytics (only with your consent)

These help us understand how the marketing website is used so we can improve it. They are set only after you choose “Accept all” or enable Analytics, and are removed if you later withdraw consent.

We do not use advertising, retargeting or cross-site tracking cookies.

03Marketing website: storeflux.store

NameTypePurposeDuration
sf_consentStrictly necessary · localStorageRemembers your cookie choice so we do not ask again on every visit.Until you clear your browser data or change the choice
_gaAnalytics · cookie (Google)Distinguishes users to produce anonymised usage statistics.Up to 2 years
_ga_<container-id>Analytics · cookie (Google)Persists session state for Google Analytics 4.Up to 2 years

Google Analytics 4 is configured with IP anonymisation, and is not loaded at all until you consent. Google acts as our service provider for this purpose; see Google’s cookie information.

04Admin panel: admin.storeflux.store

NameTypePurposeDuration
refresh_tokenStrictly necessary · cookie (HTTP-only, Secure, SameSite=Strict)Keeps you signed in securely by allowing the app to renew short-lived access tokens. Sent only to authentication endpoints.7 days, or until you sign out
Session stateStrictly necessary · browser storageKeeps your signed-in session, role and interface preferences (for example sidebar state) in the browser.Until sign-out or cleared

05Storefront and demo store

The reference storefront, and any store that deploys it, uses the following. Merchants who run their own store are responsible for their own storefront cookie notice and can add categories to it as needed.

NameTypePurposeDuration
refresh_tokenStrictly necessary · cookie (HTTP-only, Secure, SameSite=Strict)Keeps a signed-in shopper’s session active.7 days, or until sign-out
Cart and session stateStrictly necessary · browser storageRemembers the shopping cart, the signed-in shopper and the cart badge so the store works across pages and reloads.Until cleared or sign-out
storeflux_sidFunctional / analytics · sessionStorageAn anonymous per-tab session identifier used by the store’s activity events (for example page views) and social-proof features.Until the tab is closed
Pending order referenceStrictly necessary · sessionStorageHolds an in-progress order reference during checkout and payment confirmation.Until the tab is closed

When a shopper pays by card or PayPal, the payment provider (Stripe or PayPal) may set its own cookies on its own embedded forms for fraud prevention and to complete the payment. Those are governed by the provider’s policies.

06Managing your choice

  • On this site: use here or in the footer of any page to change or withdraw consent at any time. Withdrawing consent stops Google Analytics from loading and clears its cookies.
  • In your browser: you can block or delete cookies in your browser settings. Blocking strictly necessary cookies will stop sign-in and checkout from working.
  • Global Privacy Control / Do Not Track: we never load analytics until you actively opt in, so these signals are respected by default.
  • Google Analytics opt-out: you can also use Google’s browser add-on.

07Changes to this policy

If we add a new cookie or change how an existing one is used, we will update this page, change the “Last updated” date and, where consent is required, ask for your choice again.

08Contact

Questions about cookies? Email admin.storeflux@gmail.com.

Other policies

  • Terms of Service
  • Privacy Policy
  • Refund & Cancellation
  • Acceptable Use
  • Data Processing (DPA)
  • Security & Disclosure
StoreFlux

The complete headless commerce backend. Build it yourself or let us build it for you.

All systems operational

Product

  • Features
  • API Playground
  • Security
  • Pricing
  • Documentation

Resources

  • Admin panel demo
  • Storefront demo
  • API reference
  • FAQ
  • Contact

Legal

  • Terms of Service
  • Privacy Policy
  • Cookie Policy
  • Refund & Cancellation
  • Acceptable Use
  • Data Processing (DPA)
  • Security & Disclosure

© 2026 StoreFlux. All rights reserved.

· Built on .NET 10, React 19, and PostgreSQL.

StoreFlux