RD Virtual Credit Card
RD Virtual Credit Card

Cookie Policy

Last updated: 2026-05-19

1. Which cookies RDVCC uses

RDVCC follows a "minimum necessary cookies" principle and deploys only the following:

  • Session cookies (essential)
    • rdvcc_session — keeps you logged in to the user area; HttpOnly + Secure + SameSite=Lax, expires after 7 days;
    • rdvcc_admin_session — keeps administrators logged in to the admin area; HttpOnly + Secure + SameSite=Strict, expires after 8 hours.
  • First-party analytics cookies
    • rdvcc_attr — records which channel brought you to the site (UTM parameters / referring domain), valid for 30 days, used only for our own channel-performance reporting;
    • rdvcc_tid — an anonymous random visitor identifier used to count daily visits and sign-up conversion (the data stays on our own servers and is shared with no third party); HttpOnly + Secure, valid for 400 days, with per-visit detail retained for at most 180 days.
  • Third-party analytics (Google Analytics): _ga / _ga_* are written by GA4 to distinguish unique visitors, with a default lifetime of 13 months; you can disable them through your browser privacy settings or the Google Analytics opt-out add-on;
  • Local storage: used only for UI preferences (such as whether a section is collapsed) and analytics de-duplication markers; no sensitive data is stored.

2. Cookies RDVCC does not use

  • third-party ad-network tracking cookies (such as Google Ads or Facebook Pixel);
  • cross-site behavioural analytics, ad retargeting or user-profiling cookies;
  • social-platform sharing cookies.

In practice this means: whichever pages you browse on RDVCC, your browsing history is never handed to any third-party advertiser or data broker.

3. Cloudflare and CDN cookies

Our front end is served through Cloudflare for DNS and CDN acceleration. Cloudflare may set a Bot Management cookie named __cf_bm, which distinguishes humans from crawlers and lives for 30 minutes. We cannot switch this cookie off (it is injected at the Cloudflare platform layer), but it is not used for cross-site tracking.

4. How you stay in control

  • Browser settings: you can refuse all cookies in your browser's privacy settings, but if RDVCC's session cookie is refused you will not be able to log in;
  • Clearing cookies: "Clear site data" in your browser settings removes every RDVCC cookie;
  • Signing out: click "Log out" in the account menu and we clear the session cookie immediately.

5. Contact

If you have questions about this policy, please contact support.