COOKIES
StayMission Cookie Notice
StayMission uses essential account technology and limited first-party website measurement. Effective 16 September 2026.
Essential session cookie
The portico_session cookie keeps an authenticated user signed in for up to seven days. It is HttpOnly, SameSite=Lax and Secure over HTTPS. It is necessary to provide the requested account service and is not used for advertising.
Security token
A session-specific CSRF value protects actions that change data. It is returned only to the authenticated application and is required for protected requests.
Device preference
The interface may store a theme preference in browser local storage. It remains on the device and is not an advertising identifier.
First-party website measurement
StayMission uses a random identifier in session storage to estimate anonymous visits and page views during the current browser session. It records page paths, referring website domains, campaign labels, country codes supplied by Cloudflare and visit times. It does not use an analytics cookie, store full referring URLs or create advertising profiles. External analytics, behavioural advertising and cross-site tracking are disabled.