Cookie Policy
This page lists every cookie, and every cookie-free tracking mechanism, used on almillennium.com, in line with the Dutch Telecommunicatiewet (the Dutch implementation of the EU ePrivacy rules).
Strictly necessary cookies — no consent required
These cookies are essential for the site to work and are exempt from consent under Dutch and EU ePrivacy rules.
- Session cookie (Laravel session) — keeps you signed in and remembers short-lived state (like your cart) as you move between pages.
- CSRF protection cookie (XSRF-TOKEN) — protects forms on the site from being submitted by malicious third-party sites on your behalf.
Cookieless analytics
Al Millennium uses a first-party analytics beacon that does not use cookies. It records an anonymous, aggregate page view (which page, an approximate device/screen category, and an approximate country from your IP address at that moment — the IP address itself is not stored). Because it sets no cookie and does not track you across visits or sites, this does not fall under the cookie-consent requirement.
Third-party requests that may set their own cookies
- YouTube (privacy-enhanced embeds) — trailers use YouTube's "nocookie" embed mode, which limits tracking until you press play. Playing a video may load Google/YouTube resources that set their own cookies, under Google's control, not ours.
- Google Fonts — some pages load typefaces directly from Google's servers, which may set cookies or log the request when your browser fetches them.
Why there is no cookie consent banner right now
Because the only cookies currently set by this site are strictly necessary (session + CSRF), Dutch and EU ePrivacy rules do not require a consent banner. The analytics beacon above sets no cookie at all. If that changes — for example if advertising cookies, tracking pixels, or non-essential analytics cookies are introduced — a consent banner will become mandatory and will be added before those cookies are set.
Managing cookies
You can control or delete cookies through your browser settings at any time. Note that blocking the session cookie will prevent you from staying signed in to The Vault.