All of the entries below are strictly necessary for the operation of the service. Without them you will not be able to log in, place an order or retain your preferences. None of them is shared with third parties.
sb-*-auth-token Purpose: The login session (Supabase Auth) - keeps you logged in across pages and subpages; for a longer session it may be split into several parts (suffix .0, .1).
Duration: Refreshed on every activity, up to 12 months; removed when you log out.
Type: HTTP cookie, Secure, SameSite=Lax (set by the server as httpOnly).
cart:excellent, cart:oem Purpose: The shopping cart contents for Users who are not logged in (separately for the Excellent PRO and OEM catalogues), stored locally in the browser. After you log in the cart is merged with the Account cart in the Controller's database and the local entry is removed.
Duration: Until merged with the Account or until the User manually clears the browser data - no automatic expiry.
Type: localStorage (not an HTTP cookie).
epro_lang, epro_currency Purpose: Remembering the selected language (PL/EN) and price display currency (PLN/EUR), so that the Platform opens in your version.
Duration: 12 months from the last change of the setting.
Type: HTTP cookie set in the browser, SameSite=Lax; contains only the language or currency code.
ep-popup-* Purpose: Remembering that an announcement (information window) has already been shown, so that it is not displayed again in this session or more than once a day.
Duration: Until the tab is closed (sessionStorage) or a timestamp in localStorage checked for 24 hours; the entry is not sent to the server.
Type: sessionStorage or localStorage.
epro_panels_* Purpose: For the Controller's staff only: the list of available panels, so that the server is not queried on every navigation.
Duration: Until the browser tab is closed.
Type: sessionStorage.
excpro_consent_v1 Purpose: Remembering your choice in the consent banner (which categories you enabled), so that we do not ask on every visit.
Duration: 12 months, after which we ask again.
Type: localStorage. Analytics cookies - only with your consent
These are activated only after you enable the “Analytics” category in the banner. Until you do, no Google script is downloaded or executed, and Google receives no data about you. The Google script is loaded through a Google Tag Manager container which, in our configuration, runs Google Analytics 4 only.
_ga, _ga_* Purpose: Google Analytics 4 - visit statistics: how many people use the Platform, which sources they arrive from and which product pages they view.
Duration: Up to 24 months (Google setting).
Type: Third-party cookies (Google Ireland Ltd.).
Legal basis: Your consent - you may withdraw it at any time (see § V). Cookieless traffic measurement
Independently of the above, we use Cloudflare Web Analytics, a tool that measures page views and loading speed. We list it here for full transparency, even though it stores no files on your device (no cookies, no localStorage), assigns you no identifier, does not track you across sites and builds no profile. For that reason it does not require consent and operates independently of your banner settings. Provider: Cloudflare, Inc.