Rechtsdokumente

Cookie-Richtlinie

Zuletzt aktualisiert · 13. August 2026 · Version 1.0

Wir verwenden wenige Cookies und legen sie alle offen. Die technischen Cookies halten dich eingeloggt; alles andere läuft nur, wenn du zustimmst — und du kannst es jederzeit über das Banner ändern.

1. Was sie sind

Small files the site saves in your browser to remember something between one page and the next: the sign-in session, the chosen language, the consent you gave.

2. Die vier Kategorien

Necessary: they make the site work and need no consent. Preferences: they remember how you like to see the site. Statistics: they measure visits in aggregate. Marketing: they measure advertising campaigns. Everything except the necessary ones runs only if you turn it on, and stays off until you do.

3. Einwilligung erteilen und widerrufen

On your first visit a bar appears with three equivalent options: reject all, customise, accept all. Closing the bar with the X counts as rejecting. The choice lasts 180 days and you can change it at any time from the “Cookie preferences” link at the bottom of every page. If we update this policy, consent is asked again.

4. Einwilligungsregister

To be able to demonstrate consent, as article 7.1 GDPR requires, we record the choice made: a random identifier, the categories enabled, the policy version, the date, your IP address without its last part, and the browser. Nothing that identifies you. The record is deleted after two years.

5. Dritte

Google Analytics through Google Tag Manager, for statistics. Stripe, which sets its own cookies on payment pages to prevent fraud. Both may process data outside the European Union on the basis of standard contractual clauses.

6. Aus deinem Browser

Regardless of this banner, every browser lets you block or delete cookies from its settings. Deleting them also erases the memory of the choice made here, and the bar comes back.

7. Cookie-Liste

This table is generated from the site configuration: it lists the cookies that are actually installed.

Name Zweck Dauer Verantwortlicher
ci_session Hält die Browsersitzung und die Anmeldung im Kundenbereich offen. 2 ore heythor.ai
csrf_cookie_name Schützt Formulare vor dem Absenden durch fremde Websites. Sessione heythor.ai
thor_device Erkennt ein als vertrauenswürdig markiertes Gerät und öffnet den Kundenbereich ohne erneute Anmeldung. 30 giorni heythor.ai
thor_consent Merkt sich die Auswahl aus diesem Banner. 180 giorni heythor.ai
_ga, _ga_* Google Analytics: misst Besuche aggregiert. Läuft nur mit Einwilligung in Statistiken. 13 mesi Google
__stripe_mid, __stripe_sid Betrugsprävention auf den Zahlungsseiten. Von Stripe gesetzt. 1 anno / 30 min Stripe

Bei allen Fragen zu Daten schreib an privacy@heythor.ai.

Entwurf, vor der Veröffentlichung mit dem Rechtsberater zu prüfen · die Felder in eckigen Klammern sind auszufüllen