Legal
Cookie policy
Which cookies and local storage this website and the hosted checkout use, and how consent works.
Draft, last updated 2026-10-10. The operating company is being incorporated; every [ENTITY — D-006 pending] placeholder will be replaced with the registered details before launch, after counsel review.
1. Strictly necessary (no consent needed)
- sc_session — merchant sign-in session (dashboard only), httpOnly, 30 days.
- sc_org, sc_store — the organisation and store you are working in (dashboard only).
- sc_consent (local storage) — your cookie choices on this website, 12 months.
- sc_vid — on merchants' hosted checkouts, a random visitor id so a split test shows you the same checkout variant on every visit (functional, first party, no cross-site use, 30 days). Without it the variant is chosen per checkout.
- Whop payment elements set their own strictly necessary cookies inside the payment iframe for fraud prevention and strong customer authentication.
2. Analytics (consent required, off by default)
With your consent we load PostHog (EU cloud) on this website to understand which pages are read. No analytics run before you choose. You can change your choice at any time via "Cookie settings" in the footer.
3. Marketing (consent required, off by default)
On merchants' hosted checkouts, marketing pixels (for example Meta, Google, TikTok) are configured by the merchant and fire only when the buyer consents. Server-side events are sent without personal identifiers when consent is absent.
4. How to withdraw
Use the Cookie settings link in the footer, or delete the sc_consent entry in your browser's site data. Withdrawing consent stops future analytics; data already collected is deleted according to the retention period in the Privacy policy.
Questions: hello@snailcart.com