Cookie Policy

Version 2.0 (draft)Last updated: 29 September 2026

Text to be validated by legal counsel

This is a first draft of the document for Coinbar s. r. o. under Slovak and EU law. It has not yet been reviewed by legal counsel; the items in square brackets are still to be completed.

The Slovak version of this document is the legally binding one. The English and Italian versions are translations provided for information only.

1. Introduction

This Cookie Policy explains which cookies and similar technologies the Coinbar web application (app.coinbar.io), including its installable version (PWA), stores on or reads from your device, why it does so and how you can manage them. It applies to everyone who uses the application, whether or not they are a Coinbar customer.

The controller responsible for these technologies and for any personal data they contain is Coinbar s. r. o.:

Company name
Coinbar s. r. o.
Registered office
Krajná 17137/7C, 821 04 Bratislava-Ružinov, Slovakia
Data protection e-mail
[email protected]

How Coinbar processes personal data in general — purposes, legal bases, recipients, retention periods and your rights — is explained in the Privacy Policy (linked in section 9).

2. What cookies and similar technologies are

A cookie is a small text file that a website stores in your browser and that your browser sends back to that website on later visits. Similar technologies work in the same way — they store information on your device or read it from it — even though they are not cookies in the technical sense. The Coinbar application uses:

Cookies
small text files that your browser sends with every request to the website that set them.
Local storage (localStorage)
a storage area in your browser that only the application’s own code can read; its content is not sent to the server automatically.
Service worker and cache (Cache Storage)
a script that your browser installs for the application and a cache in which it keeps the application’s files, so that the application loads quickly and can be installed as an app.
Push subscription
created by your browser only if you allow notifications; it enables Coinbar to send notifications to your device.

Cookies can be first-party (set by the website you are visiting) or third-party (set by another domain), and session cookies (deleted when you close your browser) or persistent cookies (kept for a set period). In this policy, "cookies" also covers the similar technologies listed above.

4. Technologies we use

The table lists every cookie and similar technology that the application stores on your device. All of them are first-party: they are set and read only by the Coinbar application. None of them is used for analytics, advertising or profiling.

Cookies and similar technologies used by the Coinbar application
NameTechnologyProviderPurposeCategoryDuration
  • coinbar-session
CookieCoinbar (first party)Signals that you are signed in, so that protected pages open and the sign-in pages redirect you to your account. It only holds the value "1" — no token and no personal data.Strictly necessaryFor the validity of the access token issued at sign-in ([TO BE COMPLETED: validity period of the access token configured in the authentication service]); renewed each time the sign-in is extended and deleted when you sign out.
  • coinbar-auth
Local storage (localStorage)Coinbar (first party)Keeps you signed in: stores the access and refresh tokens issued at sign-in and basic account data (identifier, e-mail address, first and last name, account type and tier, identity verification status, role).Strictly necessaryUntil you sign out (the content is deleted) or clear your browser data; the tokens stop working when they expire or are revoked.
  • sw.js
  • coinbar-static-v2
  • coinbar-pages-v2
  • coinbar-api-v2
  • coinbar-images-v2
Service worker and cache (Cache Storage)Coinbar (first party)Lets the application work as an installable web application (PWA): stores the application’s files, images, the pages you open and some responses of the application interface (for example market information), so that the application loads quickly and can show an offline page when the connection drops. Balances, transactions, profile, identity verification data and support requests (complaints included) are always loaded from the network and are not kept in this cache.Strictly necessaryUntil a new version of the application replaces it or you clear your browser data. When you sign out, the stored interface responses and pages are deleted; only the application files, images and the offline page remain.
  • cb_locale
CookieCoinbar (first party)Remembers the language you have chosen (with the language switch or in your account settings), so that pages are displayed in that language from the very first load.Functional (your settings)1 year
  • coinbar-preferences
Local storage (localStorage)Coinbar (first party)Display preferences: language, colour theme, display currency, showing or hiding balances, compact view.Functional (your settings)No automatic expiry — until you clear your browser data.
  • theme
Local storage (localStorage)Coinbar (first party)The light or dark theme of the interface, applied before the page is displayed.Functional (your settings)No automatic expiry — until you clear your browser data.
  • coinbar-sidebar
Local storage (localStorage)Coinbar (first party)Whether the side menu is collapsed or expanded.Functional (your settings)No automatic expiry — until you clear your browser data.
  • coinbar-market
Local storage (localStorage)Coinbar (first party)Your favourite pairs in the market overview.Functional (your settings)No automatic expiry — until you clear your browser data.
  • coinbar-portfolio
Local storage (localStorage)Coinbar (first party)Portfolio view settings: selected period, chart type and whether balances are shown.Functional (your settings)No automatic expiry — until you clear your browser data.
  • coinbar-pwa-install-dismissed
Local storage (localStorage)Coinbar (first party)When you closed the offer to install the application (PWA), so that it is not shown again for 7 days.Functional (your settings)No automatic expiry — the value is ignored after 7 days.
  • sw-push.js
Service worker and push subscriptionCoinbar (first party)Only if you enable push notifications in the notification settings and allow them in your browser: registers the subscription through which Coinbar can send you the application’s notifications.Functional — only if you enable itUntil you turn notifications off or revoke the permission in your browser.

Your sign-in session is kept in your browser’s local storage (coinbar-auth), not in a cookie; the coinbar-session cookie only signals that you are signed in and contains no token and no personal data.

Some local-storage entries, such as coinbar-preferences, are created with default values as soon as the application loads.

The application does not use analytics or advertising cookies, tracking pixels or social-media plug-ins.

6. Managing cookies in your browser

Your browser lets you view, block and delete cookies and other site data, usually in its privacy or security settings under "Cookies and site data" (or a similar name). You can delete the data of app.coinbar.io only, or of all websites. Your browser’s help pages describe the exact steps.

Please note:

  • deleting the strictly necessary cookie or local storage signs you out, and blocking them prevents you from using your account;
  • deleting the functional data resets the language, theme and display settings to their defaults;
  • deleting the site data also removes the service worker and its cache; they are created again the next time you open the application;
  • in private (incognito) mode your browser deletes all of this data when you close the window.

7. Third parties

No third party stores cookies or similar technologies on your device through the Coinbar application. The application loads its scripts, fonts and images only from Coinbar’s own domains and contains no analytics, advertising or social-media services.

If you enable push notifications, they are delivered through the push service run by the maker of your browser and chosen by your browser; that service transmits the notifications to your device under its own terms.

8. Changes to this policy

Coinbar updates this policy whenever the technologies used by the application change, and in any case before introducing any technology that requires your consent. The version and date of the current text are shown at the top of this page.

9. Contact and complaints

For questions about this policy or about the processing of your personal data, please write to [email protected].

If you believe that the processing of your personal data infringes the law, you have the right to lodge a complaint with the supervisory authority (Art. 77 GDPR): Úrad na ochranu osobných údajov Slovenskej republiky, Hraničná 12, 820 07 Bratislava 27 (https://dataprotection.gov.sk).

Further information on the processing of personal data: Privacy Policy

Coinbar s. r. o. — crypto-asset service provider supervised by Národná banka Slovenska (NBS)