The cookies, browser storage, and tracking technologies we use, why we use them, and how you control them.
This policy explains the cookies and similar technologies — browser localStorage, sessionStorage, service workers, and pixel tags — that we use on medform3d.com and our order portal. It complements our Privacy Notice, which describes how we handle personal data more generally.
A cookie is a small text file stored on your device by your browser when you visit a website. We also use related technologies such as localStorage and sessionStorage, which are similar but stored in a different part of your browser. For simplicity we refer to all of these as "cookies" in the table below.
We split cookies into two categories:
We do not use advertising, profiling, or social-media tracking cookies.
| Name | Type | Purpose | Duration | Category |
|---|---|---|---|---|
authToken |
sessionStorage (first-party) | Stores your signed login token after authentication so you can use the order portal without signing in on every request. | Cleared when you close the tab or sign out | Strictly necessary |
user |
sessionStorage (first-party) | Caches non-sensitive profile fields (name, clinic) for the current tab so the UI can greet you correctly. | Cleared when you close the tab or sign out | Strictly necessary |
medform3d.consent |
localStorage (first-party) | Records your cookie preferences and the version of the policy you saw, so we don't ask again unless the inventory changes. | 12 months, or until you change your preferences | Strictly necessary |
| Service-worker registration (admin push) | Service worker + Push API | Used only on the admin dashboard. Allows the admin to receive push notifications for new orders. Not active for non-admin visitors. | Until you unsubscribe | Strictly necessary (admin only) |
_ga, _ga_* |
Cookie (Google Analytics 4) | Distinguishes between users for aggregate website usage statistics. IP addresses are anonymised. | Up to 24 months | Analytics (consent required) |
| Vercel Analytics & Speed Insights | Beacon (cookie-less, EU-hosted) | Aggregated, anonymous performance metrics. Does not set cookies and does not track users across sites. | None (cookie-less) | Strictly necessary |
Some pages also rely on third-party fonts (Google Fonts), embedded video players (YouTube in privacy-enhanced "no-cookie" mode), and file delivery from Vercel Blob Storage. None of these set tracking cookies in the configurations we use, but the providers may log technical data such as your IP address when their content is delivered to your browser.
The first time you visit, we show a banner that lets you:
We store your choices in localStorage as medform3d.consent together with a version number. If we change the cookie inventory, we bump the version and ask again. Until you make a choice, only strictly necessary cookies and storage are set.
You can change your preferences at any time by clicking Cookie preferences in the site footer. You can also clear your browser's storage for our domain to reset your choices. When you withdraw analytics consent, the analytics script stops loading on subsequent page views and any data it has already collected is retained only for the legal retention period before being deleted.
Most browsers let you block or delete cookies through their settings. Doing so will not break the site, but it may affect convenience features such as staying signed in. The "Do Not Track" header is no longer a recognised standard; we respond to your in-banner choice instead.
Our analytics and performance metrics are handled by infrastructure providers that operate on servers in the European Union or Switzerland under written agreements. We use IP anonymisation for analytics and do not enable any cross-product data-sharing settings. See the Privacy Notice for details on storage location and the safeguards that apply if a provider exceptionally needs to access data from outside these regions.
We update this policy whenever the cookie inventory changes. The version number and effective date at the top of this page reflect the latest revision. Material changes will trigger a re-prompt of the consent banner.
Questions about cookies or tracking? Write to info@medform3d.com.