COOKIE POLICY (EU/EEA/Switzerland)
Unlokie d.o.o.
Last updated: February 18, 2026
This Cookie Policy explains how Unlokie d.o.o. ("Unlokie", "we", "us", "our") uses cookies and similar technologies on our website, and similar app technologies in our iOS and Android apps.
This policy is part of our Privacy Policy and should be read together with it.
1. Data Controller
Controller: Unlokie d.o.o.
Address: Rozmanici 23 B, 51221 Kostrena, Croatia
Email: privacy@unlokie.com
Website: unlokie.com
For end-user services, Unlokie acts as controller for processing described in this policy.
2. Technologies Covered by This Policy
This policy covers:
- browser cookies;
- local storage/session storage;
- pixels/tags/web beacons;
- app identifiers and technical tokens;
- other technologies that store or access information in your browser or app environment.
3. Website vs Mobile App
3.1 Website
On the website, technologies may be used for:
- security and abuse prevention;
- essential session/technical operation;
- consent preference storage;
- optional analytics or marketing only after consent where required.
3.2 Mobile App (iOS/Android)
Mobile apps do not primarily rely on browser cookies, but use app technologies and local device storage for:
- secure authentication sessions;
- fraud prevention and account security;
- payment session integrity;
- map/location functionality requested by users;
- app diagnostics and reliability.
Non-essential tracking in mobile apps is used only after consent where required by law.
4. Categories and Legal Bases
| Category | Description | Legal Basis |
|---|---|---|
| Strictly Necessary | Core service functionality, security, login state, consent records | ePrivacy exemption for strictly necessary storage/access; GDPR legitimate interest and/or contract performance |
| Functional | Requested features (for example map-related functionality) | Contract performance; consent for device permissions where required |
| Analytics (non-essential) | Usage and performance measurement beyond strict necessity | Consent |
| Marketing/Tracking | Advertising measurement, remarketing, profiling | Consent |
5. Technologies Currently Used
| Provider/Technology | Channel | Purpose | Category |
|---|---|---|---|
| Unlokie first-party technical cookies/storage | Website | Essential operation, security, consent choices | Strictly Necessary |
| Firebase Authentication | iOS/Android/Web | User authentication, session and account security | Strictly Necessary |
| Google Sign-In | iOS/Android/Web | Social login and authentication | Strictly Necessary |
| Stripe | iOS/Android/Web checkout flows | Payment processing and fraud prevention | Strictly Necessary |
| Google Maps Platform | iOS/Android/Web feature flows | Map display and location-based functionality requested by the user | Functional/Strictly Necessary (feature-dependent) |
As of the last updated date above, Unlokie does not intentionally deploy marketing trackers on the website without prior consent.
6. Optional Technologies Introduced Later
If Unlokie introduces non-essential analytics or marketing trackers in future, we will:
- update this policy and inventory;
- request consent before activation where legally required;
- provide a mechanism to withdraw consent.
7. Examples of Lifetimes
Lifetimes vary by provider and implementation. Typical ranges:
- session identifiers: until app/browser session ends;
- security/auth tokens: short-lived to moderate duration;
- consent preference records: up to 12 months;
- analytics identifiers (where enabled with consent): up to 24 months depending on configuration.
8. Consent Management
Where legally required, we request consent before placing or accessing non-essential cookies/trackers.
You can:
- accept all;
- reject non-essential;
- choose categories;
- change choices later.
On the website, preferences are managed via cookie controls/CMP where available.
In mobile apps, preferences are managed via in-app settings where available and/or device settings.
9. Browser and Device Controls
You may also manage technologies through browser or OS settings:
- browser cookie controls (block/delete);
- mobile app permissions (for example location, notifications);
- advertising/tracking settings on iOS and Android.
Blocking strictly necessary technologies may prevent parts of the Services from working correctly.
10. Third-Party Processing and International Transfers
Some technologies are operated by third parties (for example Google/Firebase, Stripe). Data may be processed outside the EEA/UK/Switzerland. Where required, we apply appropriate transfer safeguards (for example SCCs and/or adequacy mechanisms).
11. Do-Not-Track
There is no single universally accepted technical standard for Do-Not-Track signals. We apply tracking choices through consent and privacy controls available in our Services.
12. Your Rights
Under applicable law, you may have rights including access, rectification, erasure, restriction, objection, portability, and withdrawal of consent.
To exercise rights, contact: privacy@unlokie.com.
You may also lodge a complaint with AZOP or another competent EU/EEA supervisory authority.
13. Policy Updates
We may update this policy to reflect legal, technical, or operational changes. The latest version and date will always be published.
14. Contact
Unlokie d.o.o.
Rozmanici 23 B
51221 Kostrena
Croatia
Email: privacy@unlokie.com
