Cookies and local storage
Version 1.2, last updated 4 October 2026
In short: Hammerprice sets no cookies for analytics, advertising or tracking and loads no scripts or fonts from third-party servers. We only store what you trigger yourself: your wallet choice, your sign-in, your paddle, a pack purchase you are completing and your choice to load live video. Under Section 25(2) no. 2 of the German Telecommunications Digital Services Data Protection Act (TDDDG) no consent is needed for that. That is why we show no cookie banner. Card images and blockchain queries are fetched by your browser directly from third parties. That is not storage on your device, but it does transmit your IP address; see the Privacy Policy, sections 4 and 6.
What we store
The law speaks of storing information in, or accessing information on, your device. That covers cookies as well as your browser's local storage and session storage. We use only the following:
| Name | Type | Purpose | When set | Duration | Legal basis |
|---|---|---|---|---|---|
walletName | Local storage | Remembers which wallet provider you connected with (the name of the wallet extension), so the connection can be restored after a reload. Contains no address and no key. The key name comes from the wallet adapter we use. | When you select a wallet | until you disconnect or clear storage | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp_session | Cookie (own domain, HttpOnly, Secure, SameSite=Lax) | Keeps you signed in after you have signed the sign-in message with your wallet. Holds a token signed by us with your wallet address, an internal profile number and the issue and expiry time. Without it you would have to sign again for every action. | When you sign in with your wallet | 12 hours | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp:paddle:… | Session storage | The signing key of your paddle: a key your browser creates for one room and your wallet authorised once, so that bids can be signed without a wallet popup. Limited by the maximum amount and the validity you signed along with it. It is not a key of your wallet and can sign nothing except bids in this room. | When you register a paddle in a room | until the tab is closed, at most until the authorisation expires (at most 6 hours in a live show, at most 7 days in a timed auction) | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.signin | Session storage | Remembers that you tapped Sign in and your wallet was asked: your wallet address, the time and whether the sign-in was already picked up once. This lets the page continue the sign-in when you come back from the wallet app on a phone. Contains no key and no signature. | When you tap Sign in | until the sign-in is done, at most until the tab is closed (after 3 minutes it is ignored anyway) | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.autosign | Session storage | Remembers for which wallet address the page already asked for a sign-in by itself in this tab, so that your wallet is not asked again on every reload after you declined. Contains only the public wallet address, no key and no signature. | When a connected wallet without a session is asked to sign in | until the tab is closed | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.sell.recent | Local storage | Remembers the rooms (id, title, time) you created as a seller in this browser, so you can find the manage page again. Contains no address and no key. The manage page always asks the server, which checks that you are the seller. | When you create a room | until you clear storage (at most 10 entries) | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.video.… | Session storage | Remembers that you pressed "Load live video" in a room, so the picture does not have to be confirmed again after a reload. The key contains the number of the room, the value is only 1. Without your click no connection to the video server is made. | When you press "Load live video" | until the tab is closed or you choose "Video off" | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.pack.… | Session storage | Remembers in this tab which pack purchase you are completing (key with the pack number, value the draw number) and whether the drawn card has already been shown to you (key with the draw number, value 1). A reload in the middle of a purchase finds the purchase again, and the card is not revealed twice. Contains no address and no key. | When you buy a pack | until the tab is closed | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.tour.v1 | Local storage | Remembers that you have already been shown the short tour of the auction room, so it appears only once. Contains only the value 1, no address and no key. | When the tour starts for the first time | until you clear storage | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp:ai-agent:v1:… | Local storage | Keeps your conversation with the AI agent (your messages and its answers with their cards) in this browser only, so it can continue when you come back and between the AI page and the assistant in the room. The key name contains your wallet address, so another wallet in this browser does not see the conversation. The content is never sent to us or anyone else. At most the last 200 messages and about 300 KB. | When you send a message to the AI agent with a signed-in wallet | until you click "Reset chat" or clear storage | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
hp.hint.…, hp.adv.… | Session storage | Remembers for this session whether you have already seen a note about a wallet confirmation and which "Advanced options" sections you opened. Contains only the value 0 or 1, no address and no key. | When you complete a wallet confirmation or open or close a section | until the tab is closed | Sec. 25(2) no. 2 TDDDG, Art. 6(1)(b) GDPR |
The language is part of the address (/de or /en). We store no language setting and no display (light or dark) setting.
The session cookie contains your wallet address and an internal profile number, because that is what keeps you signed in. It is used for nothing else and is sent to no third party. The other values contain no identifier. Nothing in the table is sent to third parties.
Why no consent is needed
Under Section 25(1) TDDDG you need consent to store information on, or read information from, a device. This does not apply where the storage is strictly necessary so that we can provide a service you have expressly requested (Section 25(2) no. 2 TDDDG). You set wallet reconnection, signing in and paddle registration in motion yourself, and the services do not work as requested without them. The conference of the German data protection authorities (DSK) names the storage of a non-identifying value such as "language: de" as an example of necessary storage in its guidance.
What we do not use
- no analytics services (not even "cookieless" counting pixels),
- no advertising or retargeting technology,
- no social media plugins or maps from third parties, and no video from a third party before you press "Load live video" (see "Live video" below),
- no external fonts or scripts. We serve all fonts and scripts from our own domain. (Card images and blockchain queries are the exception described above.)
If we ever use any of these, we will ask for your consent first and then show a banner in which "Decline" is as easy to reach as "Accept". This page and the privacy policy will be updated then.
Live video
A seller can switch on live video for a show. Your browser connects to the video server only after you press "Load live video", and only for that show and that browser session. The only thing we store for it is the key hp.video.… in session storage (see the table), so that you do not have to press the button again after a reload. The connection itself is not storage on your device, but it does transmit your IP address to the video server, see the Privacy Policy, section 3.10.
What your browser and wallet store themselves
Your wallet (browser extension or app) and your browser store their own data under their own rules, for example your keys. We have no influence on that. Please read the notes from your wallet provider.
How to delete or block the values
You can delete or block cookies and local storage in your browser at any time. Hammerprice keeps working; you only have to reconnect your wallet and sign in again.
More information
More about data processing when you visit is in the Privacy Policy. Questions to info@futurewebservice.de.