
iriri
Last updated: 2026-04-19
This policy explains which cookies Wriri uses and why.
All cookies listed below are strictly necessary or essential functional/security cookies used to operate and protect your account.
Legal basis: cookies are processed under GDPR Art. 6(1)(b) (contractual necessity) and Art. 6(1)(f) (legitimate interest for account security).
Device cookies support account login-and-security history and help users identify unauthorized account access.
For data protection requests, contact contact@wiriri.com.
jwt
Purpose
Authentication session token.
Duration
1 hour
Type
Strictly Necessary
Legal Basis
Art. 6(1)(b) — Contractual necessity
Consent Required
No
refreshToken
Purpose
Session renewal token.
Duration
7 days
Type
Strictly Necessary
Legal Basis
Art. 6(1)(b) — Contractual necessity
Consent Required
No
csrf-token
Purpose
Protects against CSRF attacks.
Duration
7 days
Type
Strictly Necessary
Legal Basis
Art. 6(1)(f) — Security legitimate interest
Consent Required
No
currency
Purpose
Stores your preferred currency display.
Duration
30 days
Type
Functional
Legal Basis
Art. 6(1)(b) — Contractual necessity
Consent Required
No
deviceId
Purpose
Unique device identifier used for account access management and security history.
Duration
1 year
Type
Security (Legitimate Interest)
Legal Basis
Art. 6(1)(f) — Security legitimate interest
Consent Required
No
deviceName
Purpose
Device label shown in account login-and-security history.
Duration
1 year
Type
Security (Legitimate Interest)
Legal Basis
Art. 6(1)(f) — Security legitimate interest
Consent Required
No
deviceType
Purpose
Device category used to monitor account access activity.
Duration
1 year
Type
Security (Legitimate Interest)
Legal Basis
Art. 6(1)(f) — Security legitimate interest
Consent Required
No
cookie-consent
Purpose
Stores that you acknowledged the cookie notice.
Duration
180 days
Type
Strictly Necessary
Legal Basis
Art. 6(1)(c) — Legal obligation
Consent Required
No
| Cookie | Purpose | Duration | Type | Legal Basis | Consent Required |
|---|---|---|---|---|---|
| jwt | Authentication session token. | 1 hour | Strictly Necessary | Art. 6(1)(b) — Contractual necessity | No |
| refreshToken | Session renewal token. | 7 days | Strictly Necessary | Art. 6(1)(b) — Contractual necessity | No |
| csrf-token | Protects against CSRF attacks. | 7 days | Strictly Necessary | Art. 6(1)(f) — Security legitimate interest | No |
| currency | Stores your preferred currency display. | 30 days | Functional | Art. 6(1)(b) — Contractual necessity | No |
| deviceId | Unique device identifier used for account access management and security history. | 1 year | Security (Legitimate Interest) | Art. 6(1)(f) — Security legitimate interest | No |
| deviceName | Device label shown in account login-and-security history. | 1 year | Security (Legitimate Interest) | Art. 6(1)(f) — Security legitimate interest | No |
| deviceType | Device category used to monitor account access activity. | 1 year | Security (Legitimate Interest) | Art. 6(1)(f) — Security legitimate interest | No |
| cookie-consent | Stores that you acknowledged the cookie notice. | 180 days | Strictly Necessary | Art. 6(1)(c) — Legal obligation | No |