COOKIE POLICY

Cookie usage and consent management designed to align with EU ePrivacy Directive and Swedish law

Last updated: August 29, 2025
Aligned with ePrivacy principles
Following PTS guidelines

Cookie Consent Notice

This policy is designed to follow the EU ePrivacy Directive and Swedish Electronic Communications Act (ECA). We aim to stay up to date with future IMY and EU guidance. Your consent choices are respected and can be changed at any time.

Controller Information & Overview

Cookie Controller

Company:: Bromander Global AB

Address:: Ringaby 432, 718 92 Frövi, Sweden

Contact:: support@bromanderglobal.com

Supervisory Authority:: Swedish Post and Telecom Authority (PTS)

This Cookie Policy explains how Bromander Global AB uses cookies and similar technologies on our website. We are committed to transparency and following the principles of the EU ePrivacy Directive and Swedish Electronic Communications Act.

Our digital services (Shinery, Smart Bookkeeping) may have additional cookie considerations for their specific features. This policy covers the Bromander Global website.

What Are Cookies & Similar Technologies?

Cookies are small text files stored on your device when you visit our website. Similar technologies include pixels, web beacons, local storage, and other tracking technologies that collect information about your interaction with our services.

🍪 HTTP Cookies

Small text files stored in your browser that contain information about your visit and preferences.

📊 Pixels & Web Beacons

Tiny invisible images that track when emails are opened or pages are viewed.

💾 Local Storage

Browser storage that persists data locally on your device for enhanced functionality.

🔍 Session Storage

Temporary storage that expires when you close your browser tab or window.

Important Notice

Under Swedish law, we need your consent before placing most cookies on your device. This policy explains which cookies require consent and how you can manage your preferences.

Third-Party Services & Cookies

We carefully select third-party services and ensure they comply with EU/Swedish data protection laws:

Google Analytics 4 (GA4)

Purpose: Website analytics and performance monitoring

Data Processing: EU servers, IP anonymization enabled

Consent Required: Yes - Analytics category

Cookies Set: _ga, _ga_*, _gid, _gat_gtag_*

Duration: 13-24 months

Google Privacy Policy

LinkedIn Insight Tag

Purpose: B2B marketing analytics and audience insights

Data Processing: EU/US with Standard Contractual Clauses

Consent Required: Yes - Marketing category

Cookies Set: li_sugr, lidc, UserMatchHistory

Duration: 30 days to 2 years

LinkedIn Privacy Policy

CloudFlare CDN

Purpose: Performance, security, and DDoS protection

Data Processing: EU servers, essential functionality

Consent Required: No - Strictly necessary

Cookies Set: __cflb, __cf_bm, cf_clearance

Duration: Session to 1 year

CloudFlare Privacy Policy

We Do NOT Use

  • Cross-site tracking without consent
  • Fingerprinting technologies
  • Data brokers or audience networks
  • Undisclosed third-party cookies

Your Cookie Rights & Controls

Under Swedish and EU law, you have comprehensive rights regarding cookies and tracking:

Consent Rights

  • Give or refuse consent for non-essential cookies
  • Withdraw consent at any time without penalty
  • Granular control over different cookie categories
  • Consent choices respected across all visits

Browser Controls

Chrome: Chrome: Settings → Privacy and security → Cookies and other site data

Firefox: Firefox: Preferences → Privacy & Security → Cookies and Site Data

Safari: Safari: Preferences → Privacy → Manage Website Data

Edge: Edge: Settings → Cookies and site permissions

Transparency Rights

  • Clear information about all cookies we use
  • Purpose and duration of each cookie
  • Identity of third parties setting cookies
  • Data transfer information for international cookies

Impact of Cookie Controls

Essential Cookies: Cannot be disabled; may prevent basic website functions

Analytics Cookies: Website remains functional; we cannot improve user experience

Functional Cookies: May require re-entering preferences on each visit

Marketing Cookies: Less relevant content and advertising

Cookie Preference Center

Access your cookie preferences at any time:

Available in footer on every page

Cookie Security & Data Retention

Security Measures

  • Secure (HTTPS-only) cookie transmission
  • HttpOnly flags to prevent JavaScript access where appropriate
  • SameSite attributes to prevent CSRF attacks
  • Regular security audits of cookie implementation
  • Encryption of sensitive cookie data

Data Retention

Session Cookies: Deleted when you close your browser

Persistent Cookies: Automatically expire after specified duration

Analytics Data: Aggregated and anonymized after 26 months

Consent Records: Maintained for 3 years for compliance purposes

Data Minimization

We follow GDPR data minimization principles, collecting only necessary cookie data and retaining it for the shortest time required for its stated purpose.

International Transfers

Some third-party cookies (Google Analytics, LinkedIn) may transfer data outside the EU. We ensure adequate protections through Standard Contractual Clauses and adequacy decisions.

Policy Updates & Compliance

Update Process

Minor Changes: Updated immediately with new "last updated" date

Material Changes: 30 days advance notice via email and website banner

New Cookie Categories: Fresh consent required before deployment

Version History: Previous versions archived for compliance audit

Regulatory Compliance

EU ePrivacy Directive: Implemented via Swedish ECA

GDPR: Article 6 legal basis and Article 7 consent requirements

Swedish Authorities: PTS (technical) and IMY (data protection) oversight

2025 Guidelines: Compliant with IMY dark patterns guidance

Regular Reviews

We conduct quarterly reviews of our cookie inventory, consent mechanisms, and compliance with evolving Swedish and EU requirements to ensure ongoing legal compliance.

Technology Updates

As cookie technology evolves (e.g., Topics API, Privacy Sandbox), we will update this policy and obtain fresh consent as required by Swedish law.

Contact & Cookie Support

For questions about cookies, consent management, or this policy, please contact us:

Cookie & Privacy Inquiries

support@bromanderglobal.com

General Support

Bromander Global AB

Örebro, Sweden

Regulatory Authorities

For cookie-related complaints in Sweden:

Swedish Post & Telecom Authority (PTS): pts.se | Email: pts@pts.se

Swedish Authority for Privacy Protection (IMY): imy.se | Email: imy@imy.se

Response Times

Cookie questions: Cookie questions: 3 business days

Consent issues: Consent issues: Same day

Technical problems: Technical problems: 24 hours

Legal inquiries: Legal inquiries: 5 business days

Cookie Preference Management

Accessibility

If you need this Cookie Policy in an alternative format for accessibility reasons, please contact us and we will provide it in a suitable format within 3 business days.

Cookie Policy Effective

This Cookie Policy is effective as of the last updated date and applies to all visitors to our website. By continuing to use our website after reading this policy, you acknowledge understanding of our cookie practices.

Bromander Global | Innovative Solutions for Modern Businesses