Zuletzt aktualisiert: 20 August 2026
No tracking or advertising cookies. CherryDrop uses only technically necessary and functional storage. No cross-site tracking, no sharing with ad networks.
Storage mechanisms used
sb-<project>-auth-tokenNecessaryLocation: LocalStorage
Purpose: Stores your active sign-in session (JWT) to keep you logged in.
Duration: Until logout or session expiry
cd_themeFunctionalLocation: LocalStorage
Purpose: Stores your theme preference (Light / Dark / System).
Duration: Until you change it
cd_langFunctionalLocation: Cookie (SameSite=Lax)
Purpose: Stores your language preference (DE / EN).
Duration: 1 year
IndexedDB: cherrydrop-cacheNecessaryLocation: IndexedDB
Purpose: Offline cache of the PWA (service worker) for drops and assets.
Duration: Until cache invalidation or app uninstall
Push subscription endpointsConsentLocation: Server-side (database)
Purpose: Recipient addresses for push notifications (only with active consent).
Duration: Until revocation or invalidation
Legal basis
Technically necessary storage is based on § 25(2) No. 2 TDDDG (strictly necessary). Functional storage required for a service you have expressly requested is based on § 25(2) No. 2 TDDDG and Art. 6(1)(b) GDPR. Push notifications require separate consent (Art. 6(1)(a) GDPR).
Withdrawal & deletion
You can clear browser-stored data (cookies, LocalStorage, IndexedDB) via browser settings or by uninstalling the PWA. Push consent is revocable in the app Settings.
More information
See the Privacy Policy for the wider context of data processing.