Skip to content
Camelot Designs

Legal

Cookies Policy

Last updated: 14 September 2026

Draft— this page is a starting point and hasn’t been reviewed by a lawyer yet. Please don’t treat it as final or legally binding until it’s been checked against your actual data practices and local law.

What this page covers

A cookie is a small file a website can ask your browser to store. Here’s exactly what this site actually uses today — nothing more.

Cookies we use

CookiePurposeSet for
authjs.session-tokenKeeps a logged-in staff member signed in to /admin.Staff only, after login
authjs.csrf-tokenSecurity — prevents forged login requests.Staff only, on the login page

Both are “strictly necessary” cookies — the site’s admin login can’t function without them, and under most cookie laws (including Nigeria’s NDPA and the EU/UK’s ePrivacy rules) they don’t require visitor consent. If you’re simply browsing the shop, journal, or contact page, none of these cookies are ever set for you.

What we don’t use — yet

No analytics (e.g. Google Analytics), no advertising or retargeting pixels, and no third-party tracking scripts run on this site at present. The small banner you may see on your first visit reflects exactly that.

If that changes — for instance, if we add analytics to understand how the site is used — we’ll update this page first and ask for your consent through that same banner before anything non-essential loads.

Managing cookies

You can clear or block cookies at any time through your browser settings. Doing so will simply sign out any admin session in progress — it won’t affect your ability to browse the public site.

Questions

Email [email protected].