Last updated: 16 September 2026
Policy Scope
This policy explains how the ZAODA website uses cookies, local storage and session storage. The website provides its own privacy controls with two categories: Necessary and Website Analytics. Website Analytics is enabled by default. To stop analytics, choose Necessary Only or uncheck Website Analytics and save your preferences.
Necessary website functions
The first-party zaoda-session cookie maintains website sessions, protects enquiry form state, remembers limited RFQ attribution and supports administrator authentication. The XSRF-TOKEN cookie helps prevent forged form submissions. These cookies last for 2 hours and are renewed by website activity. Blocking them in your browser may prevent forms, login or security controls from working correctly.
The zaoda:consent record in local storage remembers your privacy choice, its version and expiry. The default lifetime is 180 days; the current lifetime is displayed in Privacy Preferences. The notice is shown again when the choice expires or settings change. A saved, unexpired opt-out remains effective when settings change. Necessary storage remains active regardless of your analytics choice.
Optional first-party analytics
While analytics is enabled, the website stores a random visitor identifier in local storage as zaoda:analytics:visitor. It uses zaoda:analytics:session and zaoda:analytics:last-activity in session storage to group page visits and determine when a new analytics session begins. A new analytics session is created after 30 minutes of inactivity.
Analytics sends page paths, page titles, visit timing, external referrers and selected enquiry interactions to ZAODA's own analytics endpoint. Network addresses are stored as keyed hashes rather than raw addresses in these analytics records. These optional identifiers are not used for third-party behavioral advertising.
Analytics remains off when you select Necessary Only or save Website Analytics unchecked, when your browser sends Do Not Track, or when the website cannot save your consent choice. A choice recorded by a previous consent provider does not automatically enable analytics in these controls.
Your controls
Choose Necessary Only to stop analytics immediately, or open Preferences, uncheck Website Analytics and select Save Preferences. Allow Analytics enables or confirms analytics. Necessary storage is always active. The Privacy Preferences button in the footer lets you reopen these controls at any time.
Declining or withdrawing analytics consent stops further analytics requests and removes the website's stored analytics visitor, session and last-activity identifiers where browser storage is accessible. The website also clears those identifiers when it detects an expired or outdated consent record. You can clear cookies and site data in your browser or use Do Not Track.
Storage duration
The privacy choice is valid for the lifetime shown in Privacy Preferences. The analytics visitor identifier remains until consent is withdrawn, the browser clears site data, or the website detects an expired or changed consent version. Expiry is checked while the page is active and on the next visit. Session storage normally ends when the browser tab closes; browser session restoration may retain it.
Server-side analytics records are retained for operational reporting and security, then deleted or aggregated when no longer needed. Removing identifiers from your browser does not itself delete records already received by the server.
Other services
Links to external social platforms open services with their own privacy and storage practices. If an embedded video, map or additional security service is enabled later, the website's storage descriptions and controls will be reviewed to reflect that integration.
Updates and contact
We update this policy when storage names, purposes or providers change. The date above identifies the current version. Questions about website privacy choices can be sent through the ZAODA contact page.