Alasveris
StoresPost adSign inRegister
Alasveris
Find. Buy. Sell.Everything you need, all in one place.
Help
SupportSafety
Company
About usContactAffiliate Program
© 2026 Alasveris. All rights reserved.
TermsPrivacyCookies
HomeSearchSaved

Cookie & Storage Policy

Alasveris uses cookies and browser storage mechanisms to keep the platform functional, secure, and responsive to your preferences. This policy describes every technology we use to store data in your browser, what it stores, and how long it persists.
Last updated: 2026-09-22

1. What are cookies?

Cookies are small text files that a website places in your browser. They allow the site to recognise your browser on a subsequent visit and recall information such as your sign-in state, language choice, or preferences — without requiring you to re-enter that information each time.
All cookies set by Alasveris are first-party cookies. They originate from alasveris.com and are not shared with third-party advertising or data-brokerage networks.

2. Browser storage beyond cookies

Browsers also support two storage areas that behave similarly to cookies but are not sent with every request:
•localStorage — persists until you explicitly clear it, even after closing the browser.
•sessionStorage — cleared automatically when the browser tab is closed.
Data in these areas stays on your device. It is transmitted to our servers only when the application makes a specific API request that includes it as part of its payload.

3. Essential cookies — authentication and security

The following cookies are required for login, session management, and form security. They cannot be disabled without preventing you from signing in or submitting forms.
alasveris_session
Your authentication session token. Set when you sign in and cleared when you sign out. This cookie is HttpOnly — it cannot be read by JavaScript — and Secure in production so it is only transmitted over HTTPS. It expires 30 days after your last login.
alasveris_csrf
A Cross-Site Request Forgery (CSRF) protection token. Generated the first time you load the application and re-used across requests. Unlike the session cookie, this one is intentionally readable by JavaScript so it can be copied into a request header — the server rejects any request where the header value does not match the cookie value. It has no explicit expiry and lives for the duration of the browser session.

4. Preference and UI cookies

These cookies remember supported display and browsing preferences. They are not used for advertising and are not intended to directly identify you by name or email.
alasveris_theme
Your chosen color scheme — light or dark. Expires after 1 year.
alasveris_locale
Your chosen language — English (en) or Spanish (es). Expires after 1 year.
alasveris_category_sort
The sort order you selected when browsing a category — default or alphabetical. Expires after 1 year.

5. Consent cookie

alasveris_cookie_ok
Records that you clicked "Continue" on the cookie notice banner. Once set, the banner does not reappear. Expires after 1 year.
This cookie also controls whether anonymous interaction events are recorded for personalisation purposes (see Section 6).

6. Personalisation and interaction cookies

Alasveris tracks interactions such as search queries, category browsing, listing views, and saves. This data is used to personalise the listings shown to you — for example, surfacing categories you browse frequently — and to help improve recommendations.
Two cookies support this system:
alasveris_anon
A randomly generated browser identifier used to associate supported marketplace interactions across page loads. The identifier itself does not contain your name or email address. It expires after 1 year.
alasveris_sid
A shorter-lived session key that groups a sequence of interactions into a single browsing session. Expires after 30 days.
Consent gating: If you are not signed in, interaction events are only recorded in our database after you have accepted the cookie notice (alasveris_cookie_ok = 1). The cookies themselves are set on all visitors. Signed-in users have their interactions recorded as part of their account activity regardless of the banner state.
Interaction data is retained for up to 60 days and then deleted. It is not shared with third parties or used for advertising.

7. Listing view tracking cookie

alasveris_viewer
A randomly generated identifier used to count listing views accurately. When you view a listing, we check whether your browser has already been assigned a viewer ID. If not, we create one and record the view. This prevents a single visitor from inflating a listing's view count by refreshing the page.
This cookie is HttpOnly and Secure in production. It contains only a random identifier — no personal data. Expires after 1 year.

8. Affiliate attribution cookie

aff_token
If you arrive at Alasveris by clicking a partner affiliate link, we set this cookie to record that click. If you subsequently subscribe to a Store plan, the cookie is used to credit the affiliate partner with the referral.
•Set only when you click an affiliate link — never set on ordinary visits.
•Contains an opaque attribution token, not your name or email.
•HttpOnly and Secure in production.
•Expires after the affiliate attribution window (typically 30 days, configurable by program settings).
•Self-referrals are detected and excluded from commission calculations.
If you did not click an affiliate link, this cookie is never present in your browser.

9. Analytics and internal telemetry

We collect page-view data to understand aggregate usage patterns and monitor platform health. This system is entirely first-party — it runs on our own servers and does not involve any third-party analytics service.
How it works
Alasveris uses a randomly generated first-party browser session identifier to help measure page visits and understand aggregate platform usage. When you browse Alasveris, limited visit information may be sent to Alasveris' first-party systems for this purpose. The browser session identifier is temporary and resets after a period of inactivity.
This measurement is operated by Alasveris and does not require a third-party analytics service.
What we do not use
We do not use Google Analytics, Vercel Analytics, Meta Pixel, Microsoft Clarity, Mixpanel, Amplitude, Heap, or any other third-party analytics or tracking SDK. No third-party analytics cookies are ever set in your browser.

10. Advertising

Alasveris does not display advertising and does not use advertising cookies or tracking pixels. No advertising network has any access to your browsing activity on this site.

11. Third-party cookies

We do not embed third-party JavaScript SDKs, social media widgets, or ad-network scripts that would place cookies in your browser from an external domain.
Payment processing is handled by Stripe. Stripe's checkout flow opens in a Stripe-hosted context, not directly on alasveris.com. Stripe's own cookies and privacy practices are governed by Stripe's Privacy Policy.
When you follow a link from Alasveris to an external website, that site's own cookie policy applies.

12. Local Storage

Alasveris uses Local Storage for certain browser-side features and preferences. Unlike cookies, Local Storage information is not automatically sent with every request and generally remains in your browser until it is removed by the application or you clear your browser data.
Depending on the features you use, Local Storage may be used for:
•temporary Store Assistant conversation and filter state;
•recent search information;
•in-progress listing drafts;
•first-party visit measurement;
•app installation and PWA-related preferences;
•notification-prompt preferences;
•other temporary interface state required by supported features.
Some locally stored information may be included in a request to Alasveris when you actively use the feature that requires it. For example, information used in an AI-assisted feature may be processed when you submit a request to that feature.
Clearing Local Storage may reset these features, remove locally saved drafts or recent activity, and cause certain prompts or preferences to appear again.
For information about broader personal-data processing, see our Privacy Policy.

13. Session Storage

Alasveris uses Session Storage for temporary information that is useful while you navigate the marketplace. Session Storage is normally cleared when the relevant browser tab or session ends, although some feature-specific information may expire sooner.
Depending on the feature, Session Storage may temporarily preserve:
•navigation, map, or listing-view state;
•Referral attribution during a registration flow;
•temporary Affiliate-related interface state;
•short-lived Store Assistant interface state.
Session Storage helps maintain continuity while you move between pages without requiring Alasveris to permanently store every piece of temporary interface state.
Closing the relevant browser tab or clearing browser site data removes this information.

14. Complete cookie inventory

Every cookie currently set by Alasveris is listed below.
CookiePurposeDurationHttpOnlySecure
alasveris_sessionAuthentication session30 daysYesYes (prod)
alasveris_csrfCSRF protection tokenSessionNoYes (prod)
alasveris_cookie_okCookie notice accepted1 yearNoNo
alasveris_themeTheme preference (light/dark)1 yearNoNo
alasveris_localeLanguage preference (en/es)1 yearNoNo
alasveris_category_sortCategory sort preference1 yearNoNo
alasveris_anonAnonymous visitor ID for personalisation1 yearNoYes (prod)
alasveris_sidPersonalisation session key30 daysNoYes (prod)
alasveris_viewerAnonymous listing view identifier1 yearYesYes (prod)
aff_tokenAffiliate attribution token~30 days*YesYes (prod)
* Affiliate attribution window is configurable. The default is 30 days.

15. Personalisation data — detail

Interaction events recorded by the personalisation system include: searches, category opens, listing views, listing clicks, dwell time on listings, saves, messages sent, contact actions, and calls. Each event records the event type, the anonymous visitor ID or user ID, the session key, and where applicable the listing ID, category, search query, and applied filters.
Raw interaction data is retained for up to 60 days. Aggregated interest profiles derived from this data are also maintained and used to rank recommended listings. Your interest profile decays over time — older interactions carry less weight than recent ones.
This data is held on our own servers and is not shared with, or sold to, any third party.
For the full data handling picture, see our Privacy Policy.

16. Consent and the cookie notice

When you first visit Alasveris, a banner appears describing our use of cookies. Clicking "Continue" sets the alasveris_cookie_ok cookie and dismisses the banner for one year.
The banner does not offer a reject option. Essential cookies (session, CSRF, viewer ID, preference cookies) are required for the platform to function and are set regardless of the banner. Browser identifiers used for personalisation — the anonymous visitor identifier and the session key — are also set for all visitors.
What is consent-gated for guests is the recording of interaction events to our systems: if you have not accepted the banner, your search and browsing activity is not recorded in our database while you remain signed out. Signed-in users have their interactions recorded as part of their account activity regardless of the banner state.
We do not use cookies for advertising or cross-site tracking, and we do not offer granular category-based consent controls because no non-essential advertising or profiling cookies are present.

17. Managing cookies in your browser

You can view, block, and delete cookies through your browser settings:
•Chrome: Settings → Privacy and security → Cookies and other site data
•Firefox: Settings → Privacy & Security → Cookies and Site Data
•Safari: Preferences → Privacy
•Edge: Settings → Cookies and site permissions
Blocking or deleting alasveris_session will sign you out. Blocking alasveris_csrf will prevent form submissions from succeeding. Blocking preference cookies will cause your theme, language, and sort preferences to reset on each visit.

18. Clearing localStorage and sessionStorage

You can clear localStorage and sessionStorage through your browser's developer tools:
•Chrome / Edge: F12 → Application tab → Storage → Local Storage / Session Storage
•Firefox: F12 → Storage tab → Local Storage / Session Storage
•Safari: Develop menu → Web Inspector → Storage tab
Clearing Local Storage may remove recent searches, Store Assistant state, in-progress listing drafts, app-install preferences, notification-prompt preferences, and other locally stored feature state. It does not by itself sign you out because authentication is managed separately through the applicable session cookie.

19. Changes to this policy

We may update this policy when our use of cookies, browser storage, personalisation, analytics, or related technologies changes.
When we update this policy, we will revise the “Last updated” date shown at the top of the page.
Where required by applicable law, we will provide additional notice or obtain consent before materially different processing begins.

20. Contact

If you have questions about this policy or how we handle browser data, contact us through our Help Center or refer to our Privacy Policy.