Skip to content

Cookie Policy

What cookies WebList uses, for what and for how long.

Last updated: September 9, 2026

What cookies are

Cookies are small files your browser stores on your device when you visit a website. Many website features depend on them: keeping you signed in, remembering preferences and protecting forms from abuse.

WebList uses only **strictly necessary** cookies and preference cookies. We use no marketing cookies, we do not follow you across other websites and we do not sell browsing data. Optional statistics run only with your consent and never store information that identifies you.

Cookies used by WebList

NameCategoryDurationPurpose
authjs.session-tokenEssential30 daysKeeps you signed in. In production it carries the `__Secure-` prefix and cannot be read by scripts (httpOnly).
authjs.csrf-tokenEssentialUp to 24 hoursProtects authentication forms against CSRF attacks.
authjs.callback-urlEssentialUp to 24 hoursReturns you to the page you started the sign-in from.
NEXT_LOCALEPreference1 yearRemembers the language you chose.
wl_consentPreference1 yearStores your cookie-banner decision so we do not show the banner on every visit.

The cookie banner

On your first visit we show a small banner with two choices: essential cookies only (the site works the same) or also allowing statistical analysis. Your choice is stored in the `wl_consent` cookie and you can change it anytime from the “Cookie preferences” link in the page footer.

Optional statistics

Usage statistics are enabled by default and use our own cookieless tool: daily-aggregated page views and a visitor counter based on a code rotated every day. Your IP address is never stored. Turning them off in preferences limits no functionality.

Changes

If we ever add new cookies, we will update this document and the banner and, where required, ask for your consent again.