Cookie Policy

This policy explains what cookies are, which ones alborkids.com uses, what each of them is for, and how you can change your mind at any time. It should be read alongside our Privacy Policy.

1) What is a cookie?

A cookie is a small text file that a website asks your browser to store on your device. On your next visit the site can read that file, which is how it remembers things — that you are logged in, what is in your bag, which language you chose.

Cookies are not programs and they cannot damage your device. Some are genuinely necessary for a shop to work at all. Others exist to measure behaviour or to advertise, and those are the ones you get to decide about.

Where this policy says “cookies”, it also covers technologies that do the same job by other means — pixels, tags, and browser storage such as localStorage. Everything listed in section 5 is one of these, whichever technique it uses.

2) Types of cookie

By who sets them

  • First-party — set by alborkids.com itself.
  • Third-party — set by another company whose service we use, such as Google, Meta or Brevo.

By how long they last

  • Session — deleted when you close the browser.
  • Persistent — stay on your device until they expire or you delete them.

3) Do we need your consent?

Yes, for everything except the necessary ones. Nothing in the Statistics or Marketing categories is loaded until you choose to allow it. Closing the banner without choosing does not count as consent, and we do not treat it as such.

This follows Article 22.2 of Spanish Law 34/2002 (LSSI-CE) and the guidance of the Spanish Data Protection Agency.

4) How to read the list

Section 5 lists everything that stores or reads information on your device. Two notes on what you will and will not find there, because most cookie policies never say:

  • We name the service, not the file. A tracking service loads through one or more script files; listing those filenames tells you nothing useful, so we name the service that sets the storage and describe what it does.
  • We list what reaches you, not what reaches us. Shopify sets a number of cookies for the shop owner signed in to the admin area. Those never touch a customer's device, so they are not in this list.

5) What we use

5.1) Necessary - always active

These keep the shop working. They cannot be switched off, and they do not need your consent.

Name

What it does

Provider

Duration

cart, cart_currency

Remembers what is in your bag, and in which currency

Shopify

14 days

checkout, checkout_token

Identifies you through the checkout process

Shopify

14–21 days

_checkout_queue_token

Holds your place if there is a queue at checkout

Shopify

1 year

discount_code

Stores a discount code from a link so it applies at checkout

Shopify

Session

order

Lets you open your own order details page

Shopify

3 weeks

_shopify_essential, _shopify_essential_

Core store functions, session integrity and anti-tampering

Shopify

1 year

_shopify_test

Checks whether your browser accepts cookies at all

Shopify

1 minute

_shs_state

Session state for the storefront (localStorage)

Shopify

localization, _shopify_country

Shows the right country, currency and language

Shopify

2 minutes / session

customer_account_locale

Keeps your language when moving between the shop and your account

Shopify

1 minute

keep_alive

Identifies the first request of a session across our domains

Shopify

14 minutes

theme

Determines which storefront theme to render

Shopify

1 minute

_storefront_u

Lets you update your account details

Shopify

1 minute

identity-state, identity_customer_account_number

Keeps you signed in securely across our shop and account pages

Shopify

24 hours / 12 minutes

auth_state_*

Holds login state while you are redirected to sign in

Shopify

25 minutes

user, user_cross_site, login_with_shop_finalize

Signing in with a Shop account

Shopify

1 year / 5 minutes

shopify_pay, shopify_pay_redirect, shop_pay_accelerated

Faster checkout if you use Shop Pay

Shopify

1–30 minutes

hide_shopify_pay_for_checkout, skip_shop_pay

Remembers that you chose not to use Shop Pay

Shopify

Session / 1 year

_pay_session, _shop_app_essential

Session integrity for Shop Pay and the Shop app

Shopify

Session / 1 year

signInWithShop:cartSyncTransferCompletedAt

Records that your bag finished syncing with your Shop account (localStorage)

Shopify

shopify:webmcp_adapter_loaded

Internal flag confirming a platform component loaded (localStorage)

Shopify

Session

_landing_page, _orig_referrer

Records the first page you arrived on and where you came from

Shopify

2 years

_tracking_consent

Stores your privacy choices so we can apply them

Shopify

2 years

cookieconsent_status, cookieconsent_preferences_disabled

Records the choice you made on the cookie banner

Consentmo

1 year

consentHeader

Supports the consent banner display (localStorage)

Consentmo

On the last three rows: refusing cookies still requires a cookie, because the only way to remember that you said no is to write it down on your device. Deleting it makes the banner ask again.

5.2) Statistics - only with your consent

These tell us how the site is used. Nothing here loads unless you allow it.

Name

What it does

Provider

Duration

_ga, _ga_*

Distinguishes one visitor from another and keeps the session state, so visits can be counted

Google Analytics 4

2 years

_shopify_ga

Passes Google Analytics parameters between our domains so a single visit is not counted twice

Shopify

Session

_shopify_y

Identifies a returning visitor for Shopify's own analytics

Shopify

1 year

_shopify_s

Identifies a single browsing session for Shopify's own analytics

Shopify

30 minutes

_shopify_analytics

Holds analytics data for the storefront and checkout

Shopify

1 year

shop_analytics

Analytics for the Shop app surfaces

Shopify

30 minutes

__shopify_agent_context_events

Queues analytics and pixel events before they are sent (localStorage)

Shopify

Shopify storefront analytics

Measures page views and interactions for the shop's own reporting

Shopify

Session

Google tag

Loads the Google measurement tag and passes it your consent choice

Google Tag Manager

The Google tag is a container: it can load both measurement and advertising tags. It only fires the ones you have consented to, and it is listed here because measurement is what we use it for.

5.3) Marketing - only with your consent

These let us reach you off the site and see whether it worked. Nothing here loads unless you allow it.

Name

What it does

Provider

Duration

_fbp

Identifies your browser so Meta can attribute a visit to an advert

Meta

4 months

Meta Pixel

Records which pages and actions followed an advert, to measure and retarget

Meta

Session

lastExternalReferrer, lastExternalReferrerTime

Records which external site you arrived from, and when (localStorage)

Meta

_shopify_marketing

Holds marketing attribution data for the storefront and checkout

Shopify

1 year

Custom pixel sandbox

Runs a merchant-configured pixel that reports storefront and checkout events for advertising attribution

Shopify

Session

sib_cuid

Identifies you to Brevo so email and on-site activity can be linked to one contact

Brevo

Session

Brevo web SDK

Loads Brevo's on-site script for contact tracking and messaging

Brevo

pushowl_visitor_token, pushowl_session_token

Identifies your browser and session for web push notifications

PushOwl

Session

po_visitor, pushowl_subdomain

Links your browser to our push notification account

PushOwl

Session

pushowl_referrer, pushowl_landing_page_url, pushowl_landing_page_url_params, pushowl_original_url_params

Records where you arrived from and on which page, so a push campaign can be attributed

PushOwl

Session

pushowl_current_config_key

Stores which push notification configuration applies to you

PushOwl

Session

Push notifications are never sent unless you separately accept them in your browser. Declining Marketing cookies here means we cannot ask.

6) How to change or withdraw your consent

You can change your choice at any time, and it takes effect immediately.

  1. On alborkids.com, open Cookie settings in the footer and switch any category on or off. Necessary cookies stay on because the site cannot run without them.
  2. In your browser, you can block or delete cookies for any site. The help pages for Chrome, Safari, Firefox and Edge each explain how.
  3. To opt out of Google Analytics across all websites, Google publishes a browser add-on at https://tools.google.com/dlpage/gaoptout.

Deleting cookies in your browser also deletes the record of your choice, so the banner will ask you again on your next visit.

7) What happens if you refuse

Nothing breaks. You can browse, choose a size, add to your bag and complete an order with Statistics and Marketing cookies switched off. What changes is that we lose the ability to see how the site is used, so improvements get slower and less well-informed. That is a fair trade and it is your decision to make.

8) Personal data

Some of the items above process data that counts as personal, such as an IP address or an online identifier. How we handle that, who receives it, how long we keep it and what rights you have is set out in our Privacy Policy. Questions go to privacy@alborkids.com.

9) Changes to this policy

Third-party services change their own cookies without telling us, so we re-scan the site periodically and update this page when the result changes. The version published here is the one in force.

Last updated: 14 September 2026