← Back to home

Cookies & similar technologies

Last updated: 17 July 2026

Below we describe cookies and similar technologies used on Konvoii. We currently do not use marketing or analytics cookies.

1. Strictly necessary cookies

Auth.js/NextAuth sets session cookies (JWT) for sign-in and session management – typically valid for up to 30 days. Sign-in is not possible without these cookies.

Your language preference may be stored in the “NEXT_LOCALE” cookie (up to one year).

Where CSRF protection is active, a short-lived “csrf-token” cookie (about one hour) may be set.

2. Local storage (not a cookie)

Your last granted browser location may be held temporarily in the browser’s sessionStorage so that other app pages do not need to ask for location permission again. This data does not leave your device via this storage method and is cleared when the tab or session ends.

3. No marketing or analytics cookies

We currently do not set cookies for advertising, tracking or analytics (e.g. no Google Analytics, no marketing pixels). A separate cookie consent banner is therefore not required for these purposes at this time.

If we introduce non-essential technologies in the future, we will inform you in advance and obtain consent where legally required.

4. Legal basis

Strictly necessary cookies and similar storage are based on Art. 6(1)(b) GDPR and, where applicable, Section 25(2) TDDDG.