Skip to content

Legal

Cookies and local storage

Version 1.2, last updated 4 October 2026

In short: Hammerprice sets no cookies for analytics, advertising or tracking and loads no scripts or fonts from third-party servers. We only store what you trigger yourself: your wallet choice, your sign-in, your paddle, a pack purchase you are completing and your choice to load live video. Under Section 25(2) no. 2 of the German Telecommunications Digital Services Data Protection Act (TDDDG) no consent is needed for that. That is why we show no cookie banner. Card images and blockchain queries are fetched by your browser directly from third parties. That is not storage on your device, but it does transmit your IP address; see the Privacy Policy, sections 4 and 6.

What we store

The law speaks of storing information in, or accessing information on, your device. That covers cookies as well as your browser's local storage and session storage. We use only the following:

NameTypePurposeWhen setDurationLegal basis
walletNameLocal storageRemembers which wallet provider you connected with (the name of the wallet extension), so the connection can be restored after a reload. Contains no address and no key. The key name comes from the wallet adapter we use.When you select a walletuntil you disconnect or clear storageSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp_sessionCookie (own domain, HttpOnly, Secure, SameSite=Lax)Keeps you signed in after you have signed the sign-in message with your wallet. Holds a token signed by us with your wallet address, an internal profile number and the issue and expiry time. Without it you would have to sign again for every action.When you sign in with your wallet12 hoursSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp:paddle:…Session storageThe signing key of your paddle: a key your browser creates for one room and your wallet authorised once, so that bids can be signed without a wallet popup. Limited by the maximum amount and the validity you signed along with it. It is not a key of your wallet and can sign nothing except bids in this room.When you register a paddle in a roomuntil the tab is closed, at most until the authorisation expires (at most 6 hours in a live show, at most 7 days in a timed auction)Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.signinSession storageRemembers that you tapped Sign in and your wallet was asked: your wallet address, the time and whether the sign-in was already picked up once. This lets the page continue the sign-in when you come back from the wallet app on a phone. Contains no key and no signature.When you tap Sign inuntil the sign-in is done, at most until the tab is closed (after 3 minutes it is ignored anyway)Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.autosignSession storageRemembers for which wallet address the page already asked for a sign-in by itself in this tab, so that your wallet is not asked again on every reload after you declined. Contains only the public wallet address, no key and no signature.When a connected wallet without a session is asked to sign inuntil the tab is closedSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.sell.recentLocal storageRemembers the rooms (id, title, time) you created as a seller in this browser, so you can find the manage page again. Contains no address and no key. The manage page always asks the server, which checks that you are the seller.When you create a roomuntil you clear storage (at most 10 entries)Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.video.…Session storageRemembers that you pressed "Load live video" in a room, so the picture does not have to be confirmed again after a reload. The key contains the number of the room, the value is only 1. Without your click no connection to the video server is made.When you press "Load live video"until the tab is closed or you choose "Video off"Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.pack.…Session storageRemembers in this tab which pack purchase you are completing (key with the pack number, value the draw number) and whether the drawn card has already been shown to you (key with the draw number, value 1). A reload in the middle of a purchase finds the purchase again, and the card is not revealed twice. Contains no address and no key.When you buy a packuntil the tab is closedSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.tour.v1Local storageRemembers that you have already been shown the short tour of the auction room, so it appears only once. Contains only the value 1, no address and no key.When the tour starts for the first timeuntil you clear storageSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp:ai-agent:v1:…Local storageKeeps your conversation with the AI agent (your messages and its answers with their cards) in this browser only, so it can continue when you come back and between the AI page and the assistant in the room. The key name contains your wallet address, so another wallet in this browser does not see the conversation. The content is never sent to us or anyone else. At most the last 200 messages and about 300 KB.When you send a message to the AI agent with a signed-in walletuntil you click "Reset chat" or clear storageSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR
hp.hint.…, hp.adv.…Session storageRemembers for this session whether you have already seen a note about a wallet confirmation and which "Advanced options" sections you opened. Contains only the value 0 or 1, no address and no key.When you complete a wallet confirmation or open or close a sectionuntil the tab is closedSec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR

The language is part of the address (/de or /en). We store no language setting and no display (light or dark) setting.

The session cookie contains your wallet address and an internal profile number, because that is what keeps you signed in. It is used for nothing else and is sent to no third party. The other values contain no identifier. Nothing in the table is sent to third parties.

Why no consent is needed

Under Section 25(1) TDDDG you need consent to store information on, or read information from, a device. This does not apply where the storage is strictly necessary so that we can provide a service you have expressly requested (Section 25(2) no. 2 TDDDG). You set wallet reconnection, signing in and paddle registration in motion yourself, and the services do not work as requested without them. The conference of the German data protection authorities (DSK) names the storage of a non-identifying value such as "language: de" as an example of necessary storage in its guidance.

What we do not use

  • no analytics services (not even "cookieless" counting pixels),
  • no advertising or retargeting technology,
  • no social media plugins or maps from third parties, and no video from a third party before you press "Load live video" (see "Live video" below),
  • no external fonts or scripts. We serve all fonts and scripts from our own domain. (Card images and blockchain queries are the exception described above.)

If we ever use any of these, we will ask for your consent first and then show a banner in which "Decline" is as easy to reach as "Accept". This page and the privacy policy will be updated then.

Live video

A seller can switch on live video for a show. Your browser connects to the video server only after you press "Load live video", and only for that show and that browser session. The only thing we store for it is the key hp.video.… in session storage (see the table), so that you do not have to press the button again after a reload. The connection itself is not storage on your device, but it does transmit your IP address to the video server, see the Privacy Policy, section 3.10.

What your browser and wallet store themselves

Your wallet (browser extension or app) and your browser store their own data under their own rules, for example your keys. We have no influence on that. Please read the notes from your wallet provider.

How to delete or block the values

You can delete or block cookies and local storage in your browser at any time. Hammerprice keeps working; you only have to reconnect your wallet and sign in again.

More information

More about data processing when you visit is in the Privacy Policy. Questions to info@futurewebservice.de.