Cookie Policy

Inkaro Cookie Policy
Effective date: 5 September 2026

1. What are cookies

Cookies are small text files stored on your device when you visit a website. Similar technologies such as local storage and session storage work the same way. This policy covers both.

2. Your choice comes first

Optional analytics and marketing technologies stay off unless you allow them. Before you make a choice, we load no Google Analytics, no Google Tag Manager and no Meta Pixel, and we contact no Google or Meta advertising endpoint. Google Consent Mode is set locally with every optional category denied.

You can change or withdraw your choice at any time using the link in the footer of every page. Withdrawing consent stops future tracking and removes the Google and Meta identifiers that can be deleted from the browser.

3. What is actually stored

The inventory below reflects what this website creates in practice.

Necessary (always active, no consent required)

  • inkaro_consent_v2 — Inkaro, local storage. Stores your cookie choice and the time it was made. Created when you make a choice. Kept until you clear your browser storage.
  • inkaro_cart — Inkaro, local storage. Keeps your cart between visits. Created when the site loads or an item is added. Kept until cleared.
  • inkaro_sid — Inkaro, session storage. Groups usage events within one visit. Created only after analytics consent. Cleared when the tab closes.
  • Design session keys (for example the prepared sheet and try-on references) — Inkaro, session storage. Carry your artwork through Upload, Try On and Order. Created when you start that flow. Cleared when the tab closes.
  • sb-*-auth-token — Inkaro backend, local storage. Admin sign-in session. Created only when an administrator signs in.
  • __cf_bm — Cloudflare, cookie. Bot and abuse protection for the hosting layer. Created on the first request. About 30 minutes.
  • __dpl — hosting provider, cookie. Routes your requests to the correct deployment. Created on the first request. Session.
  • Stripe cookies (for example __stripe_mid, __stripe_sid) — Stripe, set on Stripe's own checkout pages for payment security and fraud prevention. Created when you go to payment. Up to 1 year / 30 minutes.

Functional (created only when you start the feature)

  • inkaro_visitor — Inkaro, cookie, and inkaro_studio_client_id, local storage. An opaque random identifier used only to enforce the free AI generation allowance and prevent abuse. It is created only when you actually start an AI generation, never on page load, and it is never shared with analytics or advertising systems. Duration: 90 days.

Analytics (off by default, only with your consent)

  • _ga — Google Analytics, cookie. Distinguishes visitors. Created only after you allow analytics. 2 years.
  • _ga_<container> — Google Analytics, cookie. Keeps session state. Created only after you allow analytics. 2 years.
  • Inkaro usage events — Inkaro backend. Anonymous page and funnel events, without artwork, photos, names or email addresses. Recorded only after you allow analytics.

Marketing (off by default, only with your consent)

  • _fbp — Meta, cookie. Measures and targets advertising. Created only after you allow marketing. 90 days.
  • _fbc — Meta, cookie. Stores the advertising click that brought you here. Created only after you allow marketing and only when you arrive from a Meta ad. 90 days.

Google Fonts is requested for typography on every page. It sets no cookie and is not used for analytics or advertising.

4. Consent (GDPR and ePrivacy)

We ask for your explicit consent before placing any non-essential cookie or similar technology. Accepting and rejecting are equally easy, and rejecting is the default outcome if you do nothing. Necessary items do not require consent because the website cannot function without them.

5. Managing cookies

Besides the Cookie settings link, you can block or delete cookies in your browser settings. Disabling necessary items may break the cart, checkout or sign-in.

6. Data retention

Each item is kept only for the duration listed above. Session items expire when you close your browser.

7. Contact

If you have questions about cookies, contact: contact@inkaro.app

Business address

Avryn Holdings (trading as Inkaro)
Strevelsweg 700 303, 3083 AS Rotterdam, The Netherlands
KvK: 42013048 · VAT: NL005433173B89

Business address - no public shop or walk-in service.