Essential cookies
WordPress and WooCommerce use necessary first-party cookies for the basket, selected currency, security and administration. WooCommerce may use wp_woocommerce_session_* (normally two days), woocommerce_items_in_cart and woocommerce_cart_hash (normally the browser session). A separate currency cookie is not added: the selected currency is held in the WooCommerce session.
Administrator and account access
WordPress uses wordpress_logged_in_*, wordpress_sec_*, wordpress_test_cookie and wp-settings-* cookies for sign-in and user interface preferences when those features are used. Login cookies normally expire after the browser session or after up to 14 days if Remember Me is selected. Some preference cookies may last up to a year.
Optional tracking
Advertising pixels, analytics, WooCommerce usage tracking and order attribution are disabled in this package. No optional tracking consent is inferred from placing an order. If optional tracking is added, it must remain disabled until valid consent is obtained, with accessible rejection and withdrawal.
Stripe payment
The official Stripe gateway may load Stripe’s security and payment scripts on a payment page when enabled. Stripe can use technologies such as __stripe_mid and __stripe_sid for fraud prevention and payment security; durations and purposes are explained in Stripe’s cookie and privacy notices at https://stripe.com/cookie-settings and https://stripe.com/privacy. Stripe handles card entry. We do not store full card numbers or security codes.
Browser controls
You can remove or block cookies in your browser. Blocking necessary cookies may prevent basket, currency selection, forms, account access or payment from working. Site images and theme assets are local. Payment-provider assets are supplied by the provider when needed.