Cookie & Tracking Technologies Policy
Last updated: January 2026
1. Purpose of This Policy
This Cookie & Tracking Technologies Policy explains how Bowerlens uses cookies, local storage, tags, pixels, and similar technologies across the Platform, in accordance with the Privacy Act 1988 (Cth), the Australian Privacy Principles (APPs), and global best practice used by SaaS providers.
2. What Are Cookies?
Cookies are small text files stored on your device. They help operate the Platform, improve performance, personalise your experience, and support security and analytics.
3. Additional Tracking Technologies
In addition to cookies, Bowerlens may also use:
- LocalStorage and sessionStorage,
- IndexedDB storage,
- web beacons and pixel tags,
- tracking URLs and device identifiers,
- secure session tokens,
- IP Addresses
These technologies function similarly to cookies for authentication, caching, analytics, and performance.
4. Categories of Cookies & Technologies
- Strictly Necessary – required for login, security, authentication, image upload, signed URLs, and platform stability.
- Performance & Analytics – helps us monitor usage, improve features, diagnose issues, and measure performance.
- Functional – remembers settings and improves user experience.
- Marketing (Opt‑In Only) – used only if explicitly enabled by you; provides targeted advertising or communication relevance.
5. Representative Cookie & Storage Table
Below are typical examples (non-exhaustive):
- AWS / Cloud Hosting Cookies – session routing, load balancing (Strictly Necessary).
- Authentication Token (Secure, HttpOnly) – keeps users logged in (Strictly Necessary).
- Google Analytics (_ga, _gid) – traffic and usage metrics (Performance).
- Crash/Error Monitoring Tools – stability and debugging (Performance).
- Preference Cookies – theme, filters, or saved settings (Functional).
6. Data Security & Cookie Flags
Where supported by the browser, Bowerlens applies:
- Secure flag – prevents transmission over non-HTTPS connections.
- HttpOnly – prevents access to cookies via client-side scripts.
- SameSite strict or lax – reduces cross-site request risks.
- Tokenised, time-limited URL signing for file and photo access.
7. Cross-Device and Cross-Session Tracking
Analytics tools may recognise returning users across devices or sessions solely for:
- security,
- fraud detection,
- performance improvement.
No cross-device tracking is used for marketing unless explicitly consented.
8. Cookie Duration
Cookie retention varies by category:
- Session cookies – deleted when browser closes.
- Analytics cookies – typically 30–180 days depending on provider.
- Marketing cookies – up to 12 months unless earlier withdrawn.
- Local storage items – may persist until manually cleared or updated.
9. Third-Party Cookies & Overseas Transfers
Some cookies or analytics tools may process information in Australia, Singapore, the United States, or the EU.
Bowerlens ensures reasonable protections and contractual safeguards for cross-border transfers as required under APP 8.
10. No Sale of Cookie Data
Bowerlens does not sell, rent, or trade cookie‑generated personal information to any third party.
11. Managing Cookie Preferences
Users may:
- Accept all cookies,
- Reject non-essential cookies,
- Manage granular preferences.
Preferences may be updated at any time using the "Cookie Settings" panel. Withdrawal of consent does not affect strictly necessary cookies required for platform operation.
12. Blocking & Disabling Cookies
You can disable cookies through browser settings. However:
- the Platform may not function correctly,
- authentication, uploads, or dashboards may fail,
- essential site features may be degraded.
13. Analytics, Crash Reporting & Diagnostics Tools
Bowerlens may use trusted third-party services for:
- performance tracking,
- crash/error logging,
- behavioural analytics,
- platform optimisation.
These operate according to their respective privacy policies and contractual safeguards.
14. Personal Information Collected Through Cookies
Depending on the cookie type, the following may be processed:
- device identifiers,
- browser type/version,
- session timestamps,
- usage events and navigation paths,
- anonymised IP fragments (where supported),
- performance metrics.
This information is used only for permitted operational, security, and analytical purposes.
15. Consent Mechanism & Records
Bowerlens records:
- cookie consent status,
- timestamps,
- browser/device identifiers.
This helps demonstrate compliance with Privacy Act obligations and global consent frameworks.
16. Updates to This Policy
Bowerlens may update this Policy.
- Material changes will be communicated through the Platform.
- Continued use of the Platform constitutes acceptance of updates.
17. Contact
For questions about this Policy: info@bowerlens.com
