# Cookie Policy

Effective Date: September 8, 2026

# Rory Cookie Policy (UK & EU Edition)

**Last Updated:** September 8, 2026  
**Effective Date:** September 8, 2026  
**Entity:** Rory LLC ("Rory", "we", "us", or "our")  
**Contact:** privacy@joinrory.com  
**Canonical Registry:** https://legal.joinrory.com/en-gb/cookies  

This Cookie Policy complies with the UK Privacy and Electronic Communications Regulations (PECR) and EU Directive 2002/58/EC (ePrivacy Directive).

---

## 1. Strictly Necessary Cookies

Under Regulation 6(4) of PECR and Article 5(3) of the ePrivacy Directive, strictly necessary cookies do not require prior consent because they are technically necessary to provide a service explicitly requested by you:

- `rory_session`: Session authentication token (7 days duration, HttpOnly, Secure, SameSite=Lax).
- `rory_csrf`: Anti-forgery cryptographic token protecting forms and transaction endpoints.
- `rory_locale`: User language selection cookie.

---

## 2. Third-Party Payment Cookies

When completing coin checkouts, third-party payment providers (PayPal, Apple Pay, card processors) deploy security and fraud prevention cookies necessary to execute the payment transaction securely.

---

## 3. Analytics Cookies & Prior Consent

On joinrory.com, we use **Microsoft Clarity** analytics cookies exclusively with your prior, freely given, specific, and informed consent (via our consent management banner). You may withdraw or modify your consent at any time.

---

## 4. How to Manage Cookies

You may configure your browser to reject cookies. However, disabling strictly necessary cookies will prevent you from authenticating and using the Services.

---

## 5. Contact Us

- **Email:** privacy@joinrory.com / legal@joinrory.com  
- **Canonical Policy:** https://legal.joinrory.com/en-gb/cookies
