Cookie Policy
Text to be validated by legal counsel
This is a first draft of the document for Coinbar s. r. o. under Slovak and EU law. It has not yet been reviewed by legal counsel; the items in square brackets are still to be completed.
The Slovak version of this document is the legally binding one. The English and Italian versions are translations provided for information only.
1. Introduction
This Cookie Policy explains which cookies and similar technologies the Coinbar web application (app.coinbar.io), including its installable version (PWA), stores on or reads from your device, why it does so and how you can manage them. It applies to everyone who uses the application, whether or not they are a Coinbar customer.
The controller responsible for these technologies and for any personal data they contain is Coinbar s. r. o.:
- Company name
- Coinbar s. r. o.
- Registered office
- Krajná 17137/7C, 821 04 Bratislava-Ružinov, Slovakia
- Data protection e-mail
- [email protected]
How Coinbar processes personal data in general — purposes, legal bases, recipients, retention periods and your rights — is explained in the Privacy Policy (linked in section 9).
3. Legal basis
Storing information on your terminal equipment and accessing information already stored there is governed by § 109 ods. 8 of zákon č. 452/2021 Z. z. o elektronických komunikáciách (the Slovak Electronic Communications Act). Under that provision, such storage or access is permitted only with your demonstrable consent, unless it is strictly necessary to provide a service you have explicitly requested. Access to the service may not be made conditional on your consent.
Where the stored information contains personal data (for example the account data kept so that you stay signed in), its processing is also governed by Regulation (EU) 2016/679 (General Data Protection Regulation, GDPR) and zákon č. 18/2018 Z. z. o ochrane osobných údajov (the Slovak Personal Data Protection Act). The legal basis of each processing operation under Art. 6 GDPR is set out in the Privacy Policy.
Every technology listed in section 4 is either strictly necessary to provide the application you are using or records settings you have chosen yourself in order to provide the function you asked for. Coinbar therefore does not ask for your consent to them (see section 5).
4. Technologies we use
The table lists every cookie and similar technology that the application stores on your device. All of them are first-party: they are set and read only by the Coinbar application. None of them is used for analytics, advertising or profiling.
| Name | Technology | Provider | Purpose | Category | Duration |
|---|---|---|---|---|---|
| Cookie | Coinbar (first party) | Signals that you are signed in, so that protected pages open and the sign-in pages redirect you to your account. It only holds the value "1" — no token and no personal data. | Strictly necessary | For the validity of the access token issued at sign-in ([TO BE COMPLETED: validity period of the access token configured in the authentication service]); renewed each time the sign-in is extended and deleted when you sign out. |
| Local storage (localStorage) | Coinbar (first party) | Keeps you signed in: stores the access and refresh tokens issued at sign-in and basic account data (identifier, e-mail address, first and last name, account type and tier, identity verification status, role). | Strictly necessary | Until you sign out (the content is deleted) or clear your browser data; the tokens stop working when they expire or are revoked. |
| Service worker and cache (Cache Storage) | Coinbar (first party) | Lets the application work as an installable web application (PWA): stores the application’s files, images, the pages you open and some responses of the application interface (for example market information), so that the application loads quickly and can show an offline page when the connection drops. Balances, transactions, profile, identity verification data and support requests (complaints included) are always loaded from the network and are not kept in this cache. | Strictly necessary | Until a new version of the application replaces it or you clear your browser data. When you sign out, the stored interface responses and pages are deleted; only the application files, images and the offline page remain. |
| Cookie | Coinbar (first party) | Remembers the language you have chosen (with the language switch or in your account settings), so that pages are displayed in that language from the very first load. | Functional (your settings) | 1 year |
| Local storage (localStorage) | Coinbar (first party) | Display preferences: language, colour theme, display currency, showing or hiding balances, compact view. | Functional (your settings) | No automatic expiry — until you clear your browser data. |
| Local storage (localStorage) | Coinbar (first party) | The light or dark theme of the interface, applied before the page is displayed. | Functional (your settings) | No automatic expiry — until you clear your browser data. |
| Local storage (localStorage) | Coinbar (first party) | Whether the side menu is collapsed or expanded. | Functional (your settings) | No automatic expiry — until you clear your browser data. |
| Local storage (localStorage) | Coinbar (first party) | Your favourite pairs in the market overview. | Functional (your settings) | No automatic expiry — until you clear your browser data. |
| Local storage (localStorage) | Coinbar (first party) | Portfolio view settings: selected period, chart type and whether balances are shown. | Functional (your settings) | No automatic expiry — until you clear your browser data. |
| Local storage (localStorage) | Coinbar (first party) | When you closed the offer to install the application (PWA), so that it is not shown again for 7 days. | Functional (your settings) | No automatic expiry — the value is ignored after 7 days. |
| Service worker and push subscription | Coinbar (first party) | Only if you enable push notifications in the notification settings and allow them in your browser: registers the subscription through which Coinbar can send you the application’s notifications. | Functional — only if you enable it | Until you turn notifications off or revoke the permission in your browser. |
Your sign-in session is kept in your browser’s local storage (coinbar-auth), not in a cookie; the coinbar-session cookie only signals that you are signed in and contains no token and no personal data.
Some local-storage entries, such as coinbar-preferences, are created with default values as soon as the application loads.
The application does not use analytics or advertising cookies, tracking pixels or social-media plug-ins.
5. Consent and how to change it
Because the application only uses technologies that are strictly necessary or that record the settings you choose, Coinbar does not display a cookie consent banner and does not ask for your consent: none is required. You can use the application without giving any consent to cookies.
If Coinbar ever introduces technologies that require consent, such as analytics or marketing cookies, it will not store or read them before you have given your consent through a consent tool in the application. You will be able to refuse them without losing access to the service and to withdraw your consent at any time as easily as you gave it; this policy will be updated beforehand.
You control push notifications directly: the application registers a subscription only after you enable notifications in the notification settings and your browser asks for your permission. You can withdraw the permission at any time in your browser’s site settings for app.coinbar.io.
You can remove your functional settings at any time by deleting the site data of app.coinbar.io in your browser (see section 6); the application will then use its default settings.
6. Managing cookies in your browser
Your browser lets you view, block and delete cookies and other site data, usually in its privacy or security settings under "Cookies and site data" (or a similar name). You can delete the data of app.coinbar.io only, or of all websites. Your browser’s help pages describe the exact steps.
Please note:
- deleting the strictly necessary cookie or local storage signs you out, and blocking them prevents you from using your account;
- deleting the functional data resets the language, theme and display settings to their defaults;
- deleting the site data also removes the service worker and its cache; they are created again the next time you open the application;
- in private (incognito) mode your browser deletes all of this data when you close the window.
7. Third parties
No third party stores cookies or similar technologies on your device through the Coinbar application. The application loads its scripts, fonts and images only from Coinbar’s own domains and contains no analytics, advertising or social-media services.
If you enable push notifications, they are delivered through the push service run by the maker of your browser and chosen by your browser; that service transmits the notifications to your device under its own terms.
8. Changes to this policy
Coinbar updates this policy whenever the technologies used by the application change, and in any case before introducing any technology that requires your consent. The version and date of the current text are shown at the top of this page.
9. Contact and complaints
For questions about this policy or about the processing of your personal data, please write to [email protected].
If you believe that the processing of your personal data infringes the law, you have the right to lodge a complaint with the supervisory authority (Art. 77 GDPR): Úrad na ochranu osobných údajov Slovenskej republiky, Hraničná 12, 820 07 Bratislava 27 (https://dataprotection.gov.sk).
Further information on the processing of personal data: Privacy Policy
Coinbar s. r. o. — crypto-asset service provider supervised by Národná banka Slovenska (NBS)