Web storage

Cookie & Local Storage Policy

A web-specific explanation of cookies, local storage, service worker cache, and when consent is or is not required.

Effective date: 28 May 2026 Last updated: 19 June 2026

---

1. Scope

This policy explains how Mima Party uses browser storage and similar technologies on:

  • The playable web app (PWA) at https://mimaparty.vercel.app — sign-in, shop, gameplay, and settings
  • Static marketing and legal pages on the same domain (landing pages, SEO pages, privacy, terms, support)
  • Native iOS and Android apps — these do not use browser cookies; they use platform storage (AsyncStorage, SQLite, app cache) as described in the Privacy Policy

2. Summary

| Surface | Advertising cookies | Optional analytics | Consent banner | | --- | --- | --- | --- | | Native iOS / Android | No | Product analytics after sign-in (no browser cookies) | No | | Web app (PWA) | No | Vercel Web Analytics — only after you Accept | Yes | | Static marketing / legal HTML | No | No client-side analytics scripts in the current build | No |

Mima Party does not set advertising cookies, social media tracking cookies, cross-site marketing cookies, or third-party advertising pixels on any surface.

3. Strictly Necessary Storage

We use strictly necessary storage for:

  • Supabase authentication session tokens, so you can stay signed in and access your account
  • Language, theme, sound, haptics, onboarding, and cookie-consent preferences
  • Catalog version data and free/public catalog cache, so the game loads quickly and works reliably
  • Premium catalog cache for content already unlocked and validated for your account
  • PWA service worker shell and static asset cache, so the web app can reload and recover on poor networks
  • Security, routing, and authentication callback state needed to complete sign-in safely

This storage is necessary to provide the service you request. We do not ask for consent for this category because disabling it would break sign-in, preferences, catalog loading, or the installed PWA experience.

Legal basis: Article 6(1)(b) GDPR — performance of the service contract.

On the web app (PWA) only, we show a consent banner before enabling non-essential analytics. Until you make a choice, or if you choose Essential only, we do not load Vercel Web Analytics and we do not send optional product analytics events from the web build.

If you choose Accept all:

  • We load Vercel Web Analytics in a cookieless configuration. It does not set advertising cookies, but it transmits page-view and coarse request metadata (URL, referrer, user-agent, timestamp) to Vercel for aggregated website analytics.
  • We may also record limited server-side product analytics in Supabase when you are signed in. These events are linked to your Mima Party account identifier.

Your choice is stored in browser local storage under mima_party_consent. You can change it later via Settings → Cookie preferences (web).

Legal basis: Article 6(1)(a) GDPR — consent. You may withdraw consent at any time via cookie preferences; withdrawal does not affect prior lawful processing.

5. Static Pages and Hosting Logs

Static marketing and legal HTML pages do not load Vercel Web Analytics or other client-side analytics scripts in the current build. They may still set or read strictly necessary technical data when served through our hosting provider.

Vercel (and similar infrastructure providers) may process technical server logs — such as IP address, user agent, request time, and security events — for hosting, CDN delivery, abuse prevention, and security. This processing is independent of the in-app cookie banner and is described in our Privacy Policy.

6. Third-Party Services

The web app connects to:

  • Supabase — authentication, database, serverless functions, and account data
  • RevenueCat — indirectly through mobile purchase validation and entitlement state
  • Apple and Google — sign-in and store purchase ecosystems
  • Stripe — web checkout (when you purchase on web)
  • Vercel — web hosting, CDN delivery, security headers, static file delivery, and (when consented) Web Analytics

These providers may process technical request data as part of hosting, fraud prevention, and service delivery. Their own privacy notices apply to their independent processing.

7. Managing Browser Storage

You can clear Mima Party web storage through your browser settings by deleting site data for mimaparty.vercel.app.

Clearing site data may sign you out, remove local preferences (including your cookie choice), remove offline cache, and require the catalog to be downloaded again. It does not delete your Mima Party account. To delete your account and server-side data we control, use Settings → Account → Delete account or visit https://mimaparty.vercel.app/account-deletion.

8. Changes

We may update this policy when the web app, browser storage behaviour, hosting providers, analytics configuration, or legal requirements change. The latest version is published at https://mimaparty.vercel.app/cookies.

9. Contact

For privacy or cookie questions, contact:

Milosevic Zlatan Romania Email: mimaparty.app@gmail.com