Cookie Policy

Last updated: 22 April 2026

1. What cookies are

Cookies are small text files saved to the user's device (computer, tablet, smartphone) when visiting a website. They allow the site to "remember" your settings and actions. The Community Network Platform (www.communitynet.ru — Russian-language version for users in Russia; www.communitynet.app — international version) uses cookies and similar technologies (localStorage, sessionStorage, IndexedDB, pixel tags, service-worker storage). The cookie set on both domains is identical, except for the functional default-language cookies. This Policy applies together with the Privacy Policy.

2. Categories of cookies used

Strictly necessary (mandatory, no consent required): — provide the basic Platform functionality; — login, navigation, security are impossible without them; — examples: auth_token, refresh_token, csrf_token, session_id; — lawful basis — contract performance (GDPR Art. 6(1)(b)). Functional (require consent in EU/EEA, UK): — preserve your preferences across sessions; — examples: i18n_locale, theme, cookie_consent; — lawful basis — consent (GDPR Art. 6(1)(a)). Analytical (require consent): — help understand how users interact with the Platform; — collected anonymously and in aggregate; — tools: internal analytics + Google Analytics only with consent, with IP anonymisation, retention 14 mo; — lawful basis — consent. Security (mandatory, no consent required): — detection of suspicious activity, CSRF, brute-force, session-hijack protection; — lawful basis — legitimate interest (GDPR Art. 6(1)(f)). Advertising cookies — not used. The Company does not participate in ad targeting, does not share data with ad networks and does not place third-party advertising pixels.

3. Specific cookies

auth_token (strictly necessary) — authentication JWT, expires: session. refresh_token (strictly necessary) — session refresh, expires: 30 days. csrf_token (security) — CSRF protection, expires: session. i18n_locale (functional) — selected interface language, expires: 1 year. theme (functional) — UI theme, expires: 1 year. cookie_consent (functional) — your cookie choice, expires: 1 year. _ga, _gid (analytical) — Google Analytics, only with consent, expires: up to 2 years. sidebar-visible (functional) — sidebar expanded state, expires: no limit.

4. Third-party cookies

Cookies of payment providers and KYC providers (Stripe, ЮKassa, SumSub) are set during payments and KYC. These cookies are managed by the providers and fall under their own privacy policies. Advertising cookies are not placed by the Company and are not permitted.

5. Managing cookies (Cookie Banner / Preference Center)

On first visit from the EU/EEA, UK, California and other regions requiring explicit consent, the user is shown a banner with a choice: — "Accept necessary" (strictly necessary and security only); — "Accept all" (all categories); — "Customise" (granular per-category choice). The choice is stored in the cookie_consent cookie and can be changed at any time in "Settings → Privacy". Browser settings. Most browsers allow viewing, deleting and blocking cookies: — Google Chrome: Settings → Privacy and security → Cookies; — Mozilla Firefox: Settings → Privacy & Security → Cookies and Site Data; — Safari: Settings → Privacy → Manage Website Data; — Microsoft Edge: Settings → Cookies and site permissions. Disabling strictly necessary cookies makes Platform use impossible. Disabling functional results in loss of saved preferences.

6. Do Not Track (DNT) and Global Privacy Control (GPC)

Global Privacy Control (GPC) — we recognise the GPC signal from users in US states where required by law (California, Colorado, Connecticut and others) and automatically treat it as an opt-out from the "sale and sharing" of personal data. Do Not Track (DNT) — there is no generally accepted binding standard; we honour GPC as the more specific and legally binding signal.

7. Local storage and similar technologies

In addition to cookies, the Platform uses localStorage, sessionStorage and IndexedDB to: — cache interface elements and speed up loading; — store draft messages and offline data (PWA); — store keys for end-to-end encrypted communication where applicable. This data remains on your device and is not sent to the server automatically. You can clear it via browser settings.

8. Changes to the cookie policy

We may update this Cookie Policy. Material changes will cause the cookie banner to reappear and request consent.

9. Contact information

Questions: privacy@communitynet.app Platform: www.communitynet.ru (Russian-language) · www.communitynet.app (international) Company: KG Connect ltd.

© 2026 Community Network