1. What Are Cookies?
Cookies are small text files that a website places on your device (computer, tablet, or mobile) when you visit it. They are widely used to make websites work efficiently, to remember your preferences, and to provide website owners with information about how users interact with their site.
Similar technologies include localStorage and sessionStorage, which are small data stores in your browser. Where we use these, they are covered by this policy in the same way as cookies.
We comply with the Privacy and Electronic Communications Regulations 2003 (PECR) and UK GDPR. We will always seek your consent before placing non-essential cookies on your device.
2. Types of Cookies We Use
Always active ·no consent required
Essential cookies are necessary for the website to function. Without them, core features such as secure login, session handling, and quote progression cannot operate. Because they are strictly necessary, they do not require your consent under PECR.
| Cookie Name | Provider | Purpose | Duration |
|---|---|---|---|
| next-auth.session-token | Boilers Scotland | Maintains your authenticated session via NextAuth.js. Stores an encrypted session token that keeps you logged into the admin or customer portal between page loads. | Session / 30 days |
| next-auth.csrf-token | Boilers Scotland | Cross-Site Request Forgery (CSRF) protection token generated by NextAuth.js. Prevents malicious third-party sites from submitting forms on your behalf. | Session |
| next-auth.callback-url | Boilers Scotland | Stores the URL to redirect to after a successful sign-in. Required for correct post-authentication navigation. | Session |
| __Secure-next-auth.session-token | Boilers Scotland | Secure variant of the session token cookie used when the site is served over HTTPS. Functionally identical to the session-token cookie above. | Session / 30 days |
Note: On HTTPS sites, NextAuth.js prefixes cookie names with __Secure- for additional security. You may see either variant depending on your browser and the connection type.
Active ·required for quote flow
Functional cookies allow the website to remember choices you make and provide enhanced, personalised features. They are used to preserve your progress through the multi-step quote process so that you do not lose your answers if you navigate between pages.
| Cookie / Storage Key | Provider | Purpose | Duration |
|---|---|---|---|
| quote-progress | Boilers Scotland | Stores your progress through the online quote form (property type, boiler selection, contact details) in browser sessionStorage so that navigating backwards does not erase your answers. | Session |
We may introduce analytics cookies in the future to help us understand how visitors use our website. Analytics cookies collect information in an aggregated, anonymised form ·they do not personally identify you.
Before any analytics cookies are set, we will update this policy and seek your explicit consent via our cookie consent banner. Analytics cookies are non-essential and you will always be able to decline them.
Active when Google Ads is enabled
We use Google Ads conversion tracking to measure the effectiveness of our advertising campaigns. These cookies help us understand which ads lead to quote requests, allowing us to improve our advertising and offer better deals. The tracking script only loads when Google Ads is configured.
| Cookie Name | Provider | Purpose | Duration |
|---|---|---|---|
| _gcl_au | Stores a unique identifier to attribute conversions (e.g. quote requests) back to specific Google Ads campaigns. | 90 days | |
| _gcl_aw | Records which Google Ads click brought you to the site. Used to measure advertising ROI. | 90 days |
3. Third-Party Cookies
Some features of our website rely on third-party services. These services may set their own cookies on your device. We do not control these cookies; they are governed by the privacy policies of the respective third parties.
The Stripe payment widget loads within a sandboxed iframe and may set cookies necessary for fraud prevention and secure payment processing. These are essential cookies placed by Stripe directly. For full details, refer to Stripe's Privacy Policy.
4. How to Manage and Delete Cookies
You can control and manage cookies through your browser settings. Please be aware that removing or blocking essential cookies will affect your ability to use the website, including completing the quote process and accessing any account features.
To manage cookies in your browser, follow the instructions for your browser below:
- Google Chrome: support.google.com/chrome/answer/95647
- Mozilla Firefox: support.mozilla.org/en-US/kb/clear-cookies-and-site-data-firefox
- Apple Safari: support.apple.com/en-gb/guide/safari/sfri11471/mac
- Microsoft Edge: support.microsoft.com (Microsoft Edge cookies)
You can also find comprehensive guidance on managing cookies at www.aboutcookies.org.
5. Cookie Consent
This website uses essential and functional cookies that are strictly necessary for the site to operate, plus marketing cookies for Google Ads conversion tracking when enabled.
Non-essential cookies (analytics, marketing) will only be placed with your explicit, informed consent via an opt-in mechanism. We will never pre-tick consent boxes or use dark patterns to obtain consent.
You may withdraw consent for non-essential cookies at any time by clearing your browser cookies or, once implemented, through our cookie preference centre.
6. Regulatory Basis
Our use of cookies is governed by:
- The Privacy and Electronic Communications Regulations 2003 (PECR), which requires us to obtain consent for non-essential cookies.
- The UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018, which govern how personal data collected via cookies is processed.
- Guidance issued by the Information Commissioner's Office (ICO).
7. Questions and Contact
If you have any questions about how we use cookies or wish to exercise any related rights, please contact us:
Email: info@boilersscotland.co.uk
You may also report concerns to the Information Commissioner's Office (ICO).
8. Changes to This Policy
We will update this Cookie Policy if we introduce new cookies or retire existing ones. The effective date above will always reflect when this policy was last revised. We encourage you to review this page periodically to stay informed about how we use cookies.