Last updated 2 August 2026
We only use cookies that are needed to sign you in and keep the site secure. No advertising, no analytics, no tracking.
Cookies are small text files a website stores on your device. Some are needed for the site to work at all; others track what you do across sites. We only use the first kind.
Browsers also let sites store information in “local storage”, which works much like a cookie. We use a little of that too, and it is listed below for completeness.
UK rules require your consent before a site sets cookies that are not strictly necessary — analytics and advertising cookies, for example. We do not use any, so there is nothing for you to accept or reject. We do have to tell you what we use, which is what this page is for.
All of these are strictly necessary — the site cannot sign you in without them.
| Name | Purpose | Lasts |
|---|---|---|
| next-auth.session-token | Keeps you signed in as you move between pages. Set only after you sign in. | 30 days, or until you sign out |
| next-auth.csrf-token | Security. Confirms that sign-in and sign-out requests genuinely came from you, not another site acting on your behalf. | Until you close your browser |
| next-auth.callback-url | Remembers which page to return you to after you sign in. | Until you close your browser |
| Name | Purpose | Lasts |
|---|---|---|
| theme | Remembers whether you chose light or dark mode. Only set when you use the toggle. | Until you clear your browser storage |
| nextauth.message | Lets the site notice when you sign in or out in another tab, so every tab stays in step. | Cleared when you close the tab |
| greencoterie.cookie-notice | Remembers that you have seen the cookie notice, so it stops appearing. | Until you clear your browser storage |
Green Coterie carries no advertising cookies, no analytics or measurement cookies, no social media pixels, and no cross-site tracking of any kind. We do not sell or share browsing data.
The site loads an icon stylesheet from Cloudflare’s public CDN (cdnjs.cloudflare.com). That request does not set cookies, but it does mean Cloudflare receives your IP address, as it would for any file your browser fetches from another domain.
You can block or delete cookies in your browser settings. Because the cookies we use are the ones that sign you in, blocking them will stop you being able to log in or stay logged in — the rest of the site will still be browsable.