QReportly

QReportly

Technical transparency

Cookie Policy

This document explains how the QReportly Platform uses cookies and similar technologies, in accordance with Directive 2002/58/EC (ePrivacy) and Regulation (EU) 2016/679 (GDPR).

Last updated: 3 June 2026

01

Introduction

QReportly (the "Platform" or the "Provider") uses cookies and local storage technologies only to the extent necessary for secure operation of services, in line with data minimization and user transparency principles.

This Cookie Policy supplements the Privacy Policy and Terms of Service. By continuing to browse the public website or authenticating in the administration panel, the user acknowledges the use of cookies described below.

02

What Cookies Are

Cookies are small text files stored on the user's device when visiting a website. They enable browser recognition, session maintenance, preference storage, and implementation of security controls.

Similar technologies include local storage (localStorage, sessionStorage) and session identifiers, used for the same technical purposes and subject to the same minimization safeguards.

03

Technical and Structural Cookies

The Platform uses exclusively technical cookies that are strictly necessary for service operation and security. These cookies do not require prior consent under applicable law because they are indispensable for providing the service explicitly requested by the user.

  • Dashboard authentication: maintaining secure administrator sessions and validating access tokens;
  • Language preference (qreportly_locale): storing the selected language for the public interface and authenticated area;
  • CSRF anti-fraud tokens: protecting forms and sensitive actions against cross-site request forgery attacks;
  • Workspace Switcher: storing active workspace context when an administrator manages multiple organizations;
  • Technical session cookies: ensuring operational continuity and integrity of reporting flows for authenticated users.

Retention Period

Session cookies expire upon browser closure or sign-out. The language preference cookie may persist for up to 12 months to avoid repeated resets of user choice. Durations are limited to what is strictly necessary.

04

Secure Third-Party Services — Stripe

For recurring subscription payment processing, the Platform integrates the Stripe payment processor. During checkout and payment method management flows, Stripe may place security cookies on the user's device.

These cookies are used strictly for transaction fraud prevention, payment session validation, compliance with PSD2/SCA obligations, and card data security — card details are not stored on QReportly servers.

Use of Stripe cookies is governed by Stripe's privacy and cookie policies. The Provider recommends reviewing official Stripe documentation for additional details on exact categories and durations.

05

Behavioral Tracking Exclusion

The QReportly Platform does not use behavioral tracking cookies, targeted advertising modules, remarketing technologies, or invasive analytics services within the secure application and the reporting channel intended for whistleblowers.

The Provider does not collect IP addresses, geolocation data, or digital fingerprints (browser fingerprinting) from reporters in the public reporting channel, in accordance with the anonymity architecture described in the Privacy Policy.

If aggregated analytics tools are used on the public presentation website (for example, anonymized traffic statistics), they are technically separated from the secure reporting area and do not create individual reporter profiles.

06

Cookie Management

Users can configure their browser to refuse cookies or delete existing cookies. Refusal of strictly necessary cookies may prevent dashboard authentication, language preference storage, or payment completion.

Cookie management instructions are available in the documentation of the browser used (Chrome, Firefox, Safari, Edge, etc.).

For Stripe cookies, restrictions may affect the ability to complete online transactions under acceptable security conditions.

07

Cookie Policy Updates

The Provider may update this Policy to reflect technical changes, integration of new essential providers, or legal requirements. The latest update date is indicated in the document header.

The version published on the Platform prevails over any prior versions.

For questions regarding cookie use on the QReportly Platform: