Last updated: 5 August 2026
This page lists every cookie that Asore (asore.net) sets in your browser and why. We do not use advertising cookies, tracking pixels, or third-party analytics on this platform.
A cookie is a small piece of data that a website asks your browser to store, and that your browser sends back on later requests. That's how a site remembers you are logged in as you move between pages.
| Name | Purpose | Lifetime | Flags |
|---|---|---|---|
asore_sess |
Holds a random session identifier so we can recognise your browser between requests. The session record on our server — keyed by this identifier — is what actually stores your login state and the CSRF token that protects your form submissions. The cookie itself contains no personal data. | Session — ends when you close the browser or sign out. | HttpOnly; SameSite=Lax; Secure over HTTPS |
This is the only cookie we set. It is strictly necessary for the platform to function — without it, you cannot stay signed in.
When you make a payment we redirect you to Paystack. Paystack sets its own cookies during that flow to protect against card fraud. Those cookies are governed by Paystack's own cookie policy. We do not read or share them.
We load Bootstrap, Alpine.js, Bootstrap Icons, and (for admins enrolling in 2FA) a QR code library from public CDNs (jsDelivr, Cloudflare). These CDNs may log your IP address to serve the file. We do not receive that log data.
The app does not use localStorage or sessionStorage to
hold personal data. Alpine.js may briefly cache UI state (menu open / closed) in
memory for the current tab.
You can clear or block cookies in your browser's privacy settings. Blocking
PHPSESSID will prevent you from signing in to Asore.
Because the only cookie we set is strictly necessary for the service you asked for (signing in), we do not display a cookie consent banner. If we ever add non-essential cookies (analytics, marketing, etc.) we will ask for your consent first.
Questions about this policy: privacy@asore.net