A cookie is a small text file that a website stores on your device when you visit it. The file holds an identifier and sometimes a few preferences. The next time you visit, the cookie is sent back so the site can recognise you, remember your cart, keep you logged in, or count how many times you have visited.
Cookies on their own are not harmful. The privacy concern arises when they track behaviour across different sites (third-party cookies, common in advertising networks). EU and UK law require sites to be transparent about cookies and, in most cases, to obtain your consent before non-essential cookies fire.
The legal framework
- EU ePrivacy Directive (2002/58/EC), as transposed into national law — sets the consent rules for cookies
- EU GDPR (Regulation 2016/679) and UK GDPR — apply when cookies process personal data
Together they require us to inform you about cookies and to ask for your consent before non-essential ones fire. You can withdraw consent at any time with the same ease as giving it.