YOUSRA JEWELRY COOKIE POLICY
TRANSPARENT DATA COLLECTION & USER CONTROL
Effective Date: 05/12/2025
Last Updated: 05/12/2025
Policy Version: 1.0
Compliance: GDPR, CCPA, ePrivacy Directive, LGPD, PIPEDA
Cookie Controller: FASHION YOUSRA LLC
Data Protection Officer: privacy@yousrajewelry.com
Consent Management Platform: OneTrust Enterprise
Cookie Audit Frequency: Quarterly
1.0 INTRODUCTION TO COOKIE TECHNOLOGY
1.1 What Are Cookies?
Cookies are small text files placed on your device when visiting websites. They enable:
- Site functionality and user experience enhancement
- Personalization and preference memory
- Analytics and performance measurement
- Marketing and advertising optimization
1.2 Cookie Classification System
We categorize cookies based on function, duration, and provider:
| Category | Purpose | Consent Required | Default Status |
|---|---|---|---|
| Essential | Site operation | No | Always active |
| Performance | Analytics & optimization | Yes | Inactive until consent |
| Functional | Personalization | Yes | Inactive until consent |
| Marketing | Advertising & targeting | Yes | Inactive until consent |
| Third-Party | External services | Varies | Based on provider policy |
1.3 Alternative Technologies
We also use similar technologies:
- Local Storage: Browser-based data storage
- Session Storage: Temporary browser data
- Web Beacons/Pixels: Tiny transparent images for tracking
- Device Fingerprinting: Anonymous device identification
- API Tracking: Server-to-server communication
All technologies are governed by this policy collectively as “Tracking Technologies.”
2.0 ESSENTIAL COOKIES (ALWAYS ACTIVE)
2.1 Purpose & Necessity
These cookies are strictly necessary for basic website functionality. Without them, the site cannot operate properly.
2.2 Essential Cookie Inventory
| Cookie Name | Provider | Purpose | Duration |
|---|---|---|---|
| yousra_session | Yousra Jewelry | Maintains user session state | Session |
| cart_token | Yousra Jewelry | Shopping cart persistence | 7 days |
| csrf_token | Yousra Jewelry | Security and fraud prevention | Session |
| currency_pref | Yousra Jewelry | Selected currency memory | 30 days |
| language | Yousra Jewelry | Language preference | 365 days |
| consent_status | OneTrust | Records cookie preferences | 365 days |
| age_gate | Yousra Jewelry | Age verification compliance | Session |
2.3 No Opt-Out Available
Essential cookies cannot be disabled as they are required for:
- Adding items to your cart
- Processing checkouts
- Maintaining login sessions
- Protecting against security threats
- Complying with legal requirements
GDPR Legal Basis: Legitimate interest (Article 6(1)(f)) and contract necessity (Article 6(1)(b))
3.0 PERFORMANCE & ANALYTICS COOKIES
3.1 Purpose Statement
These cookies help us understand how visitors interact with our website, enabling:
- Performance measurement and optimization
- User experience improvement
- Error detection and resolution
- Traffic pattern analysis
3.2 Analytics Cookie Inventory
| Cookie Name | Provider | Purpose | Duration | Data Collected |
|---|---|---|---|---|
| _ga | Google Analytics | Distinguishes unique users | 2 years | Anonymous ID |
| _gid | Google Analytics | Distinguishes unique users | 24 hours | Anonymous ID |
| _gat | Google Analytics | Throttles request rate | 1 minute | None |
| ga* | Google Analytics | Persists session state | 2 years | Session data |
| amplitude_* | Amplitude | Product analytics | 1 year | Usage patterns |
| hotjar_* | Hotjar | Heatmaps & recordings | 365 days | Anonymous behavior |
| clarity_* | Microsoft Clarity | User session recording | 365 days | Anonymous interactions |
3.3 Anonymization Protocols
All analytics cookies implement:
- IP Address Anonymization: Last octet removed
- Data Retention Limits: Maximum 26 months
- Cross-Device Tracking: Only with explicit consent
- Data Sharing Restrictions: No raw data to third parties
- User Control: Opt-out available for each service
3.4 Opt-Out Mechanisms
Google Analytics: https://tools.google.com/dlpage/gaoptout
Hotjar: https://www.hotjar.com/legal/compliance/opt-out
Amplitude: https://amplitude.com/privacy/opt-out
Microsoft Clarity: https://clarity.microsoft.com/opt-out
GDPR Legal Basis: Consent (Article 6(1)(a))
4.0 FUNCTIONALITY & PERSONALIZATION COOKIES
4.1 Purpose Statement
These cookies remember your preferences and choices to provide enhanced, personalized experiences.
4.2 Functional Cookie Inventory
| Cookie Name | Provider | Purpose | Duration |
|---|---|---|---|
| wishlist | Yousra Jewelry | Saved wishlist items | 365 days |
| recently_viewed | Yousra Jewelry | Recently viewed products | 30 days |
| size_preferences | Yousra Jewelry | Remembered size selections | 90 days |
| layout_preference | Yousra Jewelry | Site layout choices | 30 days |
| notification_dismiss | Yousra Jewelry | Dismissed notification memory | 7 days |
| geolocation | Yousra Jewelry | Approximate location for relevant content | Session |
| accessibility | Yousra Jewelry | Accessibility tool preferences | 365 days |
4.3 Personalization Features Enabled
With functional cookies accepted, we can:
- Show items you’ve previously viewed
- Remember your size preferences across visits
- Maintain wishlists between sessions
- Display location-relevant content (currency, shipping)
- Save accessibility settings
4.4 Management Options
All functional preferences can also be managed through:
- User account settings (if logged in)
- Site preference center
- Manual re-selection each visit
GDPR Legal Basis: Consent (Article 6(1)(a)) or legitimate interest for basic functionality
5.0 MARKETING & ADVERTISING COOKIES
5.1 Purpose Statement
These cookies are used to:
- Deliver relevant advertising on other websites
- Measure advertising campaign effectiveness
- Build audience segments for targeting
- Limit ad frequency and repetition
5.2 Advertising Cookie Inventory
| Cookie Name | Provider | Purpose | Duration |
|---|---|---|---|
| _fbp | Meta (Facebook) | Browser identification for ads | 90 days |
| fr | Meta (Facebook) | Delivery and measurement | 90 days |
| _pin_unauth | Unauthenticated user tracking | 1 year | |
| _pinterest_sess | Session management | 1 year | |
| tt_* | TikTok | Advertising and analytics | 13 months |
| NID | Google Ads | Preferences for Google services | 6 months |
| IDE | Google DoubleClick | Advertising and retargeting | 13 months |
| personalization_id | Personalization and ads | 2 years |
5.3 Cross-Platform Tracking
With consent, these cookies enable:
- Retargeting: Showing our ads after you visit our site
- Lookalike Audiences: Finding similar potential customers
- Conversion Tracking: Measuring ad effectiveness
- Cross-Device Targeting: Recognizing you across devices
- Dynamic Product Ads: Showing specific products you viewed
5.4 Industry Opt-Out Programs
Digital Advertising Alliance: https://optout.aboutads.info
Network Advertising Initiative: https://optout.networkadvertising.org
European Interactive Digital Advertising Alliance: https://www.youronlinechoices.com
Platform-Specific Opt-Outs:
- Meta: https://www.facebook.com/adpreferences
- Google: https://adssettings.google.com
- Pinterest: https://help.pinterest.com/en/article/personalization-and-data
- TikTok: https://www.tiktok.com/legal/privacy-policy
GDPR Legal Basis: Explicit consent required (Article 6(1)(a))
6.0 THIRD-PARTY & EMBEDDED CONTENT COOKIES
6.1 External Service Providers
Certain pages may include content from third parties which set their own cookies:
Payment Processors:
- Stripe (payment functionality)
- PayPal (payment buttons)
Social Media:
- Instagram (embedded posts)
- Pinterest (save buttons)
- TikTok (embedded videos)
Service Integrations:
- Trustpilot (reviews)
- AfterShip (tracking)
- Zendesk (support widget)
6.2 Third-Party Cookie Disclosure
We disclose all known third-party cookies, but cannot control:
- Cookies set after policy updates
- Changes in third-party cookie practices
- Cookies from embedded content we’re unaware of
6.3 Our Controls
We implement:
- Cookie blocking until consent: For known third parties
- Privacy-enhanced modes: Where available (YouTube nocookie, etc.)
- Regular audits: Quarterly review of third-party cookies
- Vendor assessment: Privacy review before integration
