Skip to main content
Design

Cookies

Rules for using cookies and similar technologies.

To comply with the Privacy and Electronic Communications Regulations (PECR), you must manage how your service uses cookies.

Your responsibilities

You must:

  • tell users if your site uses cookies or similar technologies
  • clearly explain what the cookies do and why
  • not store cookies for longer than necessary (max 1 year)
  • get explicit consent before storing non-essential cookies
  • save consent preferences for 1 year only
  • not store unique identifiers in the consent preference cookie

User rights

A user must be able to:

  • withdraw consent as easily as they gave it
  • change their cookie settings at any time
  • use the service without consenting to cookies

Read the full guidance on cookies and similar technologies on GitHub.