Cookie Policy
2026-09-23
This Cookie Policy explains how Terlizzi SRL uses cookies and similar technologies on this website, in line with the ePrivacy rules, GDPR and the Italian Data Protection Authority guidance.
1. What are cookies
Cookies are small text files stored on your device. Similar technologies (local storage, pixels, SDKs) may serve comparable purposes. Some are strictly necessary; others require prior consent.
2. Controller
Controller: TERLIZZI SOCIETA' A RESPONSABILITA' LIMITATA · Via Pietro Colletta 133, 70022 Altamura (BA) · Italy · VAT 09088100723 · Tax code 09088100723 · REA BA-670903. Contact: PEC / certified email (official privacy channel; not a commercial inbox): terlizzisrl@pecaruba.it. Full details are in the Privacy Policy.
3. Categories we use
- Necessary — required for security, network management, consent storage, language/theme preferences and authenticated session in reserved areas. Always active; do not require consent.
- Functional — enable optional features such as the interactive map on the Contact page (Leaflet + Mapbox dark basemap tiles). Activated only with your consent.
Analytics and marketing trackers are not installed on this website at the date of this notice.
4. Cookie and similar technologies in use
The following inventory is generated from the site configuration so documentation stays aligned with implementation.
| Name | Category | Type | Party | Duration | Purpose |
|---|---|---|---|---|---|
| terlizzi-cookie-consent | Necessary | localStorage | First party | Until withdrawn or policy version change (v4) | Stores cookie consent preferences. |
| terlizzi-theme | Necessary | localStorage | First party | Persists until changed or cleared | Remembers the user’s light/dark theme choice. |
| terlizzi.finder.v2 | Necessary | localStorage | First party | Persists until the product finder path is reset | Saves product-finder wizard state (local technical choices). |
| authjs.session-token / __Secure-authjs.session-token | Necessary | cookie | First party | Session / configured JWT lifetime | Authentication for Professionals Area and internal console. |
| authjs.csrf-token / __Host-authjs.csrf-token | Necessary | cookie | First party | Session | CSRF protection for authentication flows. |
| authjs.callback-url / __Secure-authjs.callback-url | Necessary | cookie | First party | Session (during sign-in) | Post-login redirect. |
| Mapbox (tile / eventuali cookie di dominio mapbox.com) | Functional | network | Third party | Per Mapbox’s policies (third party) | Provide dark basemap tiles (mapbox/dark-v11) for the Contact map. |
| Esri ArcGIS Online (tile) — fallback | Functional | network | Third party | Per Esri’s policies (third party) | Dark basemap fallback when NEXT_PUBLIC_MAPBOX_TOKEN is missing. |
5. Third parties
When you allow functional cookies, the Contact page may load an interactive map (Leaflet) that requests map tiles from Mapbox (api.mapbox.com). Those third-party requests may set cookies or similar technologies under Mapbox’s policies. You can refuse this category and still open the address via an external map link.
6. How to manage consent
On your first visit a banner lets you accept all, reject non-essential cookies, or set preferences by category. Equal prominence is given to accept and reject. You can reopen preferences anytime via “Manage cookies” in the footer. You may also clear cookies in your browser settings. If the consent version changes (e.g. new trackers), you will be asked again.
7. Duration
Consent choices are stored locally until withdrawn or until the consent version changes. Technical cookies last for the session or the short period needed for their purpose. Third-party durations depend on each provider.
LEGAL_DATA_REQUIRED: confirm the maximum consent storage period you want applied operationally (commonly 6–12 months).
8. Rights
For rights under the GDPR and how to contact us or the Supervisory Authority, see the Privacy Policy.