Legal and privacy
Cookie policy
The strictly necessary browser storage DigitalSpur uses for checkout, security, and account sessions.
On this page
Strictly necessary storage
DigitalSpur uses secure server-managed cookies for customer authentication, cross-site request forgery protection, active guest-checkout possession, and verified guest access. These support features the customer requested and are not optional analytics storage.
- DSP-CUSTOMER-SESSION: an HttpOnly customer authentication session cookie.
- DSP-XSRF-TOKEN: a CSRF protection cookie paired with the X-DSP-XSRF-TOKEN request header for state-changing requests.
- DSP-GUEST-CHECKOUT: an HttpOnly possession cookie for an active guest checkout session.
- DSP-GUEST-ACCESS: an HttpOnly cookie for a verified, scoped guest transaction-access grant.
Preferences, analytics, and social providers
The inspected customer web uses no localStorage or sessionStorage, and loads no optional analytics, advertising, Google sign-in, Facebook Login, or social-widget scripts. It therefore shows no non-essential-cookie consent banner.
If optional storage or third-party scripts are introduced, they must remain blocked until any required consent is recorded and this inventory is updated with purpose, provider, duration, and control instructions.

