Vitrine

Legal

Cookie Policy

Last updated 18 August 2026

The short version.

This website sets no cookies, runs no analytics, and loads nothing from a third party. That is why there is no consent banner: there is nothing to consent to.

This website

vitrine.swonie.com is served as plain HTML and CSS from our own server. It sets no cookies of any kind — not necessary ones, not analytics, not advertising. It loads no external fonts, scripts, images or trackers, so no third party learns that you visited. The only script on the page normalises what you type into the install form before it is submitted, and it stores nothing.

We therefore have no visitor analytics. We know how the site performs from server logs, which are described in the Privacy Policy.

The builder in your Shopify admin

The builder runs inside the Shopify admin and authenticates with a short-lived session token that Shopify issues on each load. That token is held in memory and is not written to a cookie or to browser storage — deliberately, because there is then nothing lying around for a script on the page to steal.

One exception: if you sign in to the standalone dashboard with an email and password rather than through Shopify, your access token is kept in your browser's localStorage so a page refresh does not sign you out. It is removed when you sign out. This is browser storage rather than a cookie, but it exists for the same reason and we mention it so the description is complete.

Shopify's own admin sets its own cookies. Those are Shopify's, governed by Shopify's cookie policy, and out of our control.

The mobile app

Mobile apps do not use cookies, but they do keep data on the device. The app published through Vitrine stores, locally on the phone:

  • The published theme and its version tag, so the app can paint the home screen from cache before the network answers instead of showing a spinner.
  • The identifier of the shopper's cart. The cart itself lives in Shopify; only the pointer to it is on the device.
  • A recently-viewed list. This stays on the device and is never sent to us, which is why it does not follow a shopper to another phone.
  • A customer access token, if the shopper signs in. It is issued by Shopify, kept on the device, and sent with a request only so we can pass it to Shopify. We do not store it.
  • A push notification token, if the shopper allows notifications. Unlike the items above, this one is also registered with us so notifications can be delivered — see the Privacy Policy.

Checkout opens in Shopify's own native checkout, which sets whatever Shopify needs for the purchase to work.

Your own storefront

Vitrine adds no code to your Shopify theme and installs no pixels or script tags on your website. Cookies on your storefront come from Shopify and from the other apps you have installed — not from us.

Clearing what is stored

In the app, deleting it removes everything it stored on the device, and notification permission can be withdrawn at any time in the phone's settings. In a browser, the standalone dashboard's token is cleared by signing out, or by clearing site data for this domain.

Changes

If we ever add a cookie or a third-party service to this site, we will update this page and — where the law requires it — ask for your consent before setting anything. The date at the top tells you when this was last true.