Cookie Policy
This Cookie Policy explains how Supra eKEY Systems ("we," "us," or "our") uses cookies and similar tracking technologies when you use our platform and website. We are committed to being transparent about how we collect and use data related to your browsing experience.
1. What Are Cookies?
Cookies are small text files placed on your device by websites you visit. They are widely used to make websites work efficiently, remember your preferences, and provide information to site owners. Cookies cannot run programs or deliver viruses to your device.
We also use similar technologies such as:
- localStorage and sessionStorage: Browser-based key-value stores used to remember session state and user preferences without server-side storage.
- Beacons / Pixels: Small data requests used for performance and analytics measurement.
2. Types of Cookies We Use
| Cookie / Storage Key | Type | Purpose | Duration |
|---|---|---|---|
| ekeySession sessionStorage |
Essential | Stores in-progress visit analytics for the current tab. Cleared when the tab is closed. Used only to build a complete session record before saving it. | Session (tab) |
| ekeySessionId sessionStorage |
Essential | Unique identifier for the current browser session, used to link page views within a single visit. | Session (tab) |
| dlBannerDismissed sessionStorage |
Functional | Remembers that you dismissed the download-required notification so it does not re-appear during the same tab session. | Session (tab) |
| ekeyVisits localStorage |
Analytics | Stores a record of visits to our platform including IP address (retrieved from a third-party geo service), browser type, device type, page views, click events, and session duration. Up to 1,000 records retained. Used for platform security, access auditing, and aggregate analytics. | Persistent (1 year, or until cleared) |
| ekAdminSession sessionStorage |
Essential | Secure session token for authenticated admin users. Contains a randomly generated token and expiry timestamp. No personal data is stored in this token. | Session (30 min inactivity) |
| ekAdminCreds localStorage |
Essential | Admin portal security: stores a PBKDF2-SHA256 password hash (100,000 iterations) and random salt. No plaintext passwords are stored. | Persistent (until reset) |
| ekeyApks / ekeySettings localStorage |
Functional | Admin panel configuration: stores APK distribution settings and rotation parameters. Only present on admin-authenticated sessions. | Persistent |
3. Third-Party Data Services
Our analytics tracker makes a single request to ipapi.co (a third-party IP geolocation service) upon your first visit to determine your approximate location (country, city, ISP). This request:
- Is made via HTTPS.
- Transmits only your IP address (which is inherent to any HTTP request).
- Returns approximate city-level location data, ISP name, and country code.
- Does not place cookies on your device.
- Is subject to ipapi.co's own Privacy Policy.
We use a free tier of this service (up to 1,000 requests/day). No advertising identifiers or persistent tracking pixels from ipapi.co are used.
4. Essential vs. Non-Essential Cookies
Essential
Session management (ekAdminSession, ekeySession, ekeySessionId) and security (ekAdminCreds) are essential to the operation of the platform. They cannot be disabled without impairing core functionality.
Functional
dlBannerDismissed and admin configuration keys improve your experience but are not strictly required. You may clear these from your browser's developer tools at any time.
Analytics
The ekeyVisits key stores visit analytics for platform security and auditing. Because our platform provides physical property access, maintaining an access audit trail is a legitimate security interest. Data is stored only in your own browser's localStorage and is not automatically transmitted to our servers unless you have configured an analytics endpoint.
5. Managing and Deleting Cookies
You can control and delete cookies and localStorage data through your browser settings:
- Chrome: Settings → Privacy and Security → Clear browsing data
- Firefox: Options → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Manage Website Data
- Edge: Settings → Privacy, search, and services → Clear browsing data
You can also use your browser's Developer Tools (F12 → Application → Storage) to view and delete specific keys.
Note: Deleting essential session data will log you out of the admin panel. Deleting analytics data removes the local visit history.
6. Do Not Track
Some browsers send a "Do Not Track" (DNT) signal. We currently do not alter our data collection practices based on this signal, as there is no universal standard for its interpretation. We encourage you to use the cookie management options described above.
7. Changes to This Policy
We may update this Cookie Policy from time to time. Changes will be reflected by the "Last Updated" date at the top of this page. We encourage you to review this policy periodically.
Questions?
Supra eKEY Systems
Email: [email protected]
Website: ekeysupra.com