Cookies Policy
Our cookies policy and their usage
Cookie Policy of Chrysalis Official
Effective Date: September 28, 2025
This Cookie Policy (hereinafter "Policy") explains how Chrysalis Official, part of the Exagon Industries Ltd group (hereinafter "we", "our" or "Chrysalis Official"), uses cookies and similar tracking technologies on the website chrysalisofficial.com and any related services or applications. This Policy is designed to provide transparent information about our use of these technologies and your choices regarding them.
Chrysalis Official is managed and controlled by Exagon Industries Ltd, located at Claire Causeway, Crossways Business Park, Dartford Kent DA2 6QA, United Kingdom. We are committed to complying with all applicable laws globally, including but not limited to:
- The EU ePrivacy Directive (2002/58/EC, as amended) and national implementations.
- Regulation (EU) 2016/679 (General Data Protection Regulation - GDPR) and the UK GDPR.
- California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and other U.S. state privacy laws (e.g., Virginia CDPA, Colorado CPA).
- Federal Law of the Russian Federation No. 152-FZ "On Personal Data" and related regulations on electronic communications.
- United Arab Emirates Federal Decree-Law No. 45/2021 on the Protection of Personal Data and any implementing rules.
- Other relevant international, federal, state, or local laws in jurisdictions where we operate or process data, such as those in the USA, Russia, UAE, and beyond.
This Policy applies universally but includes jurisdiction-specific provisions where necessary. If you are in a region with stricter requirements (e.g., consent under GDPR/ePrivacy or opt-out under CCPA), those will take precedence.
1. What Are Cookies and Similar Technologies?
Cookies are small text files placed on your device (e.g., computer, smartphone, tablet) when you visit a website. They store information about your browsing activity and can be used to recognize you on subsequent visits. Similar technologies include:
- Pixels/tags/beacons: Small images or code snippets that track interactions.
- Local storage: HTML5 storage for data persistence in your browser.
- Device fingerprinting: Collecting device characteristics for identification.
- SDKs in apps: Similar to cookies but for mobile applications.
These technologies may collect data such as IP address, browser type, device ID, pages viewed, time spent, and interactions. Some are session-based (deleted when you close your browser), while others are persistent (remain until expired or deleted). We use these technologies to enhance functionality, analyze usage, personalize content, and deliver targeted advertising.
2. Types of Cookies We Use
Strictly Necessary/Technical Cookies: Essential for the website's basic operation. They enable core features like navigation, security, and access to secure areas (e.g., session or load-balancing cookies).
- Legal Basis: Not requiring consent under most laws (e.g., GDPR legitimate interest, CCPA business purpose); always active.
- Duration: Session or short-term (up to 6 months).
- Examples: PHPSESSID (session management), __cfduid (Cloudflare security).
Analytical/Performance Cookies: Collect aggregated data on how users interact with the site (e.g., pages visited, bounce rates, traffic sources) to improve performance and user experience.
- Legal Basis: Legitimate interest (GDPR Art. 6(1)(f)); consent where required (e.g., if not anonymized); opt-out available under CCPA.
- Duration: Up to 2 years.
- Examples: _ga, _gid (Google Analytics with IP anonymization); _pk_id (Matomo/Piwik).
Functionality/Preference Cookies: Remember choices (e.g., language, region, layout preferences) to provide a more personalized experience.
- Legal Basis: Consent (GDPR Art. 6(1)(a)); opt-in/opt-out as required.
- Duration: Up to 1 year.
- Examples: lang (language selection), user_preferences (custom settings).
Profiling/Targeting/Marketing Cookies: Track behavior across sites to build profiles for personalized advertising, retargeting, or content recommendations; may involve cross-device tracking.
- Legal Basis: Explicit consent (GDPR/ePrivacy); opt-out for "sale/sharing" under CCPA; consent under Russian/UAE laws.
- Duration: Up to 2 years.
- Examples: NID, IDE (Google Ads/DoubleClick); _fbp (Facebook Pixel); YSC (YouTube).
Third-Party Cookies: Set by external services integrated into our site (e.g., social media plugins, embedded videos, analytics tools). These parties may use the data for their own purposes; see their policies.
Examples: Social sharing buttons (Twitter/X, Facebook, LinkedIn); embedded maps (Google Maps); video players (YouTube, Vimeo).
We do not use cookies for automated decision-making with legal effects or similar significant impacts without your consent or other safeguards.
3. Cookie List
Below is a non-exhaustive list of cookies commonly used on chrysalisofficial.com. This may vary based on updates; for the most current list, check your browser's developer tools or contact us.
- PHPSESSID (Chrysalis Official) — Necessary — Session management — Duration: Session — Jurisdiction: Universal
- _ga (Google Analytics) — Analytical — Traffic analysis (anonymized) — Duration: 2 years — Notes: Opt-out via browser add-on; CCPA opt-out applies
- _gid (Google Analytics) — Analytical — User distinction — Duration: 24 hours — Notes: As above
- NID (Google) — Profiling — Personalized ads — Duration: 6 months — Notes: Consent required; CCPA "Do Not Sell"
- _fbp (Facebook) — Marketing — Ad tracking — Duration: 3 months — Notes: Consent; UAE/Russian consent rules
- YSC (YouTube) — Functionality — Video views — Duration: Session — Notes: Embedded content; GDPR consent
- __cfduid (Cloudflare) — Necessary — Security and performance — Duration: 1 month — Notes: Always active
4. How We Obtain Consent and Manage Preferences
Consent Mechanism: On your first visit, a prominent banner or pop-up will appear, explaining cookie categories and requesting granular consent (e.g., checkboxes for analytical, marketing). You can accept all, reject non-necessary, or customize. Consent is not pre-ticked and is freely revocable.
Withdrawal/Opt-Out: Access the "Manage Cookies" or "Cookie Preferences" link in the site footer at any time to withdraw consent or adjust settings. Changes take effect immediately.
Jurisdiction-Specific Options:
- EU/UK (GDPR/ePrivacy): Prior explicit consent for non-necessary cookies; no "legitimate interest" for marketing.
- USA (CCPA et al.): Opt-out of "sale/sharing" of personal information (including via cookies) via a dedicated link ("Do Not Sell or Share My Personal Information"). We honor global privacy signals like Global Privacy Control (GPC).
- Russia (Law 152-FZ): Consent for processing involving personal data; data localization for Russian residents if required.
- UAE (Law 45/2021): Explicit consent for profiling; rights to object at any time.
Browser Settings: You can block or delete cookies via your browser (e.g., Chrome: Settings > Privacy and Security > Cookies; Firefox: Options > Privacy & Security > Cookies). Note: Blocking may impair site functionality.
Do-Not-Track (DNT): We respect DNT signals where technically feasible and required by law.
If you reject cookies, we may use alternative technologies (e.g., local storage) only if they serve the same purpose and comply with laws.
5. Data Collected and Purposes
Cookies may collect personal data (e.g., IP address as a unique identifier). Purposes include:
- Site operation and security.
- Performance monitoring and error fixing.
- User preference storage.
- Analytics for site improvement.
- Targeted marketing and ad measurement.
For details on data processing, refer to our main Privacy Policy, as cookie data is treated as personal information where applicable.
6. Third-Party Links and Services
Our site may contain links to third-party sites or embed content (e.g., social media feeds). These may set their own cookies; we are not responsible for their practices. Review their policies (e.g., Google Privacy Policy, Facebook Data Policy).
7. International Transfers and Security
Cookie data may be transferred internationally (e.g., to Google servers in the USA). We use safeguards like Standard Contractual Clauses (SCC), EU-U.S. Data Privacy Framework, or equivalent. Security measures include encryption and access controls.
8. Your Rights
You have rights regarding cookie-related data, aligned with our Privacy Policy: access, correct, or delete data; object to processing or withdraw consent. For CCPA: opt-out of sales/sharing; request disclosure. Contact our DPO at privacy@exagongroup.com or use the contact form.
9. Changes to This Policy
We may update this Policy for legal, technical, or business reasons. Changes will be posted here with the new effective date. Significant changes will be notified via banner or email. Continued use after updates implies acceptance.
For questions, contact us at privacy@exagongroup.com. Chrysalis Official prioritizes your privacy and complies with global standards for cookie usage.