Cookie Policy
Effective Date: 28 Nov 2025
1. Introduction
This Cookie Policy explains how Gender Journey Ltd operating as GenderJourney.xyz ("we," "us," or "our") uses cookies and similar technologies to recognise you when you visit our website. It explains what these technologies are, why we use them, and your rights to control our use of them.
Company Name: Gender Journey Ltd
Company Number: 16877382
ICO Registration Number: ZC049881
Registered Office: 128 City Road, London, United Kingdom, EC1V 2NX
This policy should be read in conjunction with our Privacy Policy and Terms of Service.
2. What Are Cookies?
Cookies are small text files that are placed on your device (computer, smartphone, or tablet) when you visit a website. They are widely used to make websites work more efficiently and provide information to website owners.
Types of cookies we use:
- Session Cookies: Temporary cookies that expire when you close your browser
- Persistent Cookies: Cookies that remain on your device until deleted or expired
- First-Party Cookies: Set by GenderJourney.xyz directly
- Third-Party Cookies: Set by external services we use (e.g., Stripe, Google OAuth)
3. Cookies We Use
3.1 Strictly Necessary Cookies (Essential)
These cookies are essential for the website to function and cannot be disabled. They are usually set in response to actions you take, such as logging in or filling in forms.
Cookie Name - Purpose - Duration
genderjourney_xyz_session - Maintains your login session and authentication state - Session (expires when browser closes)
XSRF-TOKEN- Security token to prevent (CSRF) attacks - Session (expires when browser closes)
laravel_token - Remembers your login for "Remember Me" functionality - 400 days (if "Remember Me" is checked)
Legal Basis: These cookies are necessary for the performance of our contract with you (providing the Service). Under UK PECR, consent is not required for strictly necessary cookies.
3.2 Functional Cookies (Optional)
These cookies enable enhanced functionality and personalization. They may be set by us or third-party providers. If you do not allow these cookies, some or all of these services may not function properly.
Cookie Name - Purpose - Duration
theme_preference - Remembers your dark/light mode preference - 1 year
pwa_prompt_dismissed - Tracks whether you dismissed the PWA install prompt - Session (expires when browser closes)
Legal Basis: Consent (you can disable these via cookie settings)
3.3 Third-Party Cookies
We use the following third-party services that may set cookies:
Stripe (Payment Processing)
- Purpose: Fraud detection and secure payment processing
- Cookies:
__stripe_mid,__stripe_sid - Privacy Policy: stripe.com/privacy
- Duration: 1 year (mid), 30 minutes (sid)
Google OAuth (Optional Social Login)
- Purpose: Authentication via Google account (only if you choose Google login)
- Cookies:
SID,HSID,SSID,APISID,SAPISID - Privacy Policy: policies.google.com/privacy
- Duration: 2 years
4. Similar Technologies
4.1 Local Storage
We use browser localStorage to store non-sensitive data locally on your device:
- Feature Flags: Developer mode settings (stored in
sessionStorage, cleared when browser closes) - UI Preferences: Dashboard widget settings, sidebar collapse state
- Draft Content: Unsaved post drafts (to prevent data loss)
Note: localStorage data never leaves your device and is not transmitted to our servers.
4.2 Service Worker and Cache Storage
Our Progressive Web App (PWA) uses a Service Worker to enable offline functionality:
- Purpose: Cache static assets (images, CSS, JavaScript) for faster loading and offline access
- Data Stored: App logo, icons, CSS files, JavaScript files
- Location: Browser cache storage (not cookies)
- Control: You can clear cache via browser settings
4.3 Push Notification Subscriptions
If you enable push notifications, your browser stores a push subscription containing:
- Push endpoint URL (provided by your browser vendor)
- Encryption keys for secure notifications
This is stored by your browser, not in cookies. You can revoke push permissions anytime via browser settings.
5. How We Use Cookies
We use cookies for the following purposes:
5.1 Authentication and Security
- Keep you logged in across page visits
- Protect against unauthorized access and CSRF attacks
- Manage active sessions and logout functionality
5.2 Functionality and Personalization
- Remember your theme preference (dark/light mode)
- Store your dashboard widget settings
- Track PWA installation status
5.3 Payment Processing
- Enable secure payment processing via Stripe
- Detect and prevent payment fraud
5.4 Social Login (Optional)
- Authenticate via Google OAuth (only if you choose this option)
6. What We Do NOT Use Cookies For
We do NOT use cookies for:
- ❌ Analytics or Tracking: We do not use Google Analytics, Facebook Pixel, or any tracking cookies
- ❌ Advertising: We do not serve ads or use advertising cookies
- ❌ Cross-Site Tracking: We do not track you across other websites
- ❌ Behavioral Profiling: We do not build profiles of your browsing behavior
- ❌ Marketing: We do not use cookies for marketing purposes
7. Your Cookie Choices
7.1 Cookie Consent Banner
When you first visit GenderJourney.xyz, you will see a cookie consent banner. You can:
- Accept All: Allow all cookies (strictly necessary + functional + third-party)
- Reject Non-Essential: Allow only strictly necessary cookies
- Customize: Choose which cookie categories to allow
For Registered Users:
If you have created an account, you provided explicit consent to our Cookie Policy during registration. You do not need to interact with the cookie banner again. If you wish to withdraw your cookie consent, you can do so by deleting your account via your profile settings, as strictly necessary cookies are required for the Service to function.
You can change your cookie preferences at any time via the "Cookie Settings" link in the footer.
7.2 Browser Settings
You can control cookies through your browser settings:
- Block All Cookies: Prevent all cookies from being set (may break website functionality)
- Delete Cookies: Remove existing cookies from your device
- Third-Party Cookies: Block only third-party cookies
How to manage cookies in popular browsers:
- Chrome: Settings → Privacy and security → Cookies and other site data
- Firefox: Settings → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Manage Website Data
- Edge: Settings → Cookies and site permissions → Manage and delete cookies
7.3 Opt-Out of Third-Party Cookies
- Stripe: Stripe cookies are necessary for payment processing. Blocking them will prevent you from making payments.
- Google OAuth: Only set if you choose Google login. You can use email/password login instead.
8. Data Retention
- Session Cookies: Deleted when you close your browser
- Persistent Cookies: Deleted after expiration (see table above) or when you clear browser data
- localStorage: Persists until you clear browser data or delete your account
- Service Worker Cache: Persists until you clear browser cache or we update the cache version
9. Updates to This Cookie Policy
We may update this Cookie Policy from time to time to reflect changes in our practices or legal requirements. We will notify you of material changes by:
- Updating the "Last Updated" date at the top of this policy
- Displaying a notification on the website
- Sending an email notification (for significant changes)
10. Contact Us
If you have questions about our use of cookies, please contact us:
- Company Name: Gender Journey Ltd
- Company Number: 16877382
- Registered Office: 128 City Road, London, United Kingdom, EC1V 2NX
- Email: [email protected]
- Data Protection Officer: Isabella Jury, [email protected]
By continuing to use GenderJourney.xyz, you acknowledge that you have read and understood this Cookie Policy.