What cookies we use
| Name | Where | Type | Lifetime | Purpose |
|---|
| av_session | app.autovaluer.eu | Strictly necessary | Session | Keeps you signed in across page reloads (Firebase Auth). |
| av_csrf | app.autovaluer.eu | Strictly necessary | Session | Prevents cross-site request forgery on form submits. |
| av_locale | *.autovaluer.eu | Functional | 1 year | Remembers your preferred language (EN, HR, DE, FR, ES, IT). |
| _ga | *.autovaluer.eu | Analytics | 2 years | Google Analytics 4 — assigns a pseudonymous client ID for traffic measurement. IP truncated. |
| _ga_2KZDLSQ136 | *.autovaluer.eu | Analytics | 2 years | GA4 session state for the AutoValuer property. |
“Strictly necessary” cookies don't need consent under GDPR Art. 5(3). The functional locale cookie qualifies under the “implied consent” carve-out — removing it would only mean you'd have to pick your language on every visit, no tracking or profiling involved.
The two GA4 cookies are analytics. Under Croatian implementing law, simple aggregated traffic analytics with IP truncation falls below the consent threshold most regulators apply — but if you'd rather opt out, see “How to opt out” below.
Analytics
We use Google Analytics 4 (measurement ID G-2KZDLSQ136) to count page views, see which markets we reach, and identify pages that don't work. Google receives a truncated IP and a pseudonymous client ID. We do not enable Google Signals, Demographics, or any feature that links analytics to ad accounts.
If you'd rather not be measured, install Google's official opt-out browser add-on, or use a browser with tracker blocking enabled (Brave, Safari with ITP, Firefox with strict mode). The site continues to work either way.
Third-party cookies
When you check out a Pro plan, Stripe Checkout opens on a Stripe-hosted page and sets its own cookies under stripe.com — we don't control those. Stripe's cookie policy applies during checkout.
The marketing-site contact form posts through Neural Draft. Neural Draft sets no cookies on our domain.
We don't embed Facebook, LinkedIn, Twitter, TikTok, Hotjar, FullStory, or Intercom widgets.
How to clear them anyway
Browser-specific instructions:
Clearing the session cookie signs you out. Clearing the locale cookie resets your language preference. Clearing all of them changes nothing about what we know about you (we still won't know).
Changes
If we add a new cookie or change the lifetime of an existing one, we'll update this page and post a “What changed” note at the top.
This is version 2.0, effective 20 May 2026.
Questions about this policy? Email legal@autovaluer.eu. For data-subject requests under GDPR, contact dpo@autovaluer.eu and we'll respond within 30 days.