All Policies

Cookies Table

Last updated: July 28, 2026

This page lists the cookies that core.shop currently sets, grouped by category. For an overview of how we use cookies and how to manage your choices, see our Cookie Policy.

Necessary Cookies

Necessary cookies are required for the Service to function. They are always active and cannot be turned off without breaking sign-in or core navigation. We do not need your consent to set them, because the Service cannot work without them.

Cookie NamePurposeDomainFirst or Third PartyLifespan
sb-<project-ref>-auth-tokenAuthentication session (Supabase). Keeps you signed in.core.shopFirst1 hour (refresh token rotates every 7 days)
sb-<project-ref>-auth-token-code-verifierPKCE code verifier used during sign-in to protect against interception of the auth callback.core.shopFirstSession (cleared after sign-in completes)
coreshop_cookie_consentLocal storage entry that remembers your cookie choices per category so the banner doesn’t reappear on every visit.core.shopFirstUntil you clear it
coreshop_analytics_consentMirrors your Analytics choice into a cookie so our server can honour the same decision when it fires analytics events.core.shopFirst1 year

<project-ref> is replaced at runtime with the unique reference of our Supabase project.

Analytics Cookies

Analytics cookies are not necessary to deliver the Service, but they help us understand how it is used and how to improve it. They are set only after you opt in through our cookie banner.

Our only analytics provider is PostHog (hosted on their EU Cloud infrastructure). See our Cookie Policy for what PostHog actually collects.

Cookie / Storage NamePurposeDomainFirst or Third PartyLifespan
ph_<project-key>_posthogFirst-party cookie, mirrored in local storage. Holds a randomly generated device identifier, a session identifier, your first referrer and landing page, and — once you sign in — your Core account identifier, so we can count unique visitors, group page views into sessions, and link activity to your account.core.shopFirst365 days (cookie); local storage persists until cleared
ph_<project-key>_window_id, ph_<project-key>_primary_window_exists, ph_<project-key>_posthogSession storage. Tells apart individual browser tabs and windows within one session.core.shopFirstCleared when the tab closes

<project-key> is replaced at runtime with our PostHog project identifier. You can see the exact name in your browser’s developer tools while signed in.

Marketing Cookies

Marketing cookies help us market the Service more effectively to people who may be interested in it, and may be used by our partners to show relevant ads on other sites.

Core does not currently set any marketing cookies. If we introduce a marketing partner in the future, the cookies they set will be listed here before they go live, and we will surface the change in the cookie banner.

Contact Us

Questions about cookies: contact@core.shop