Cookie Policy
1. INTRODUCTION
This Cookie Policy explains how Damascus Projects & Services ("Damascus Projects," "we," "us," or "our") uses cookies and similar technologies when you visit our website, use our mobile application, or interact with our online services.
This Cookie Policy should be read together with our Privacy Policy and Terms of Use.
By continuing to use our website or services, you acknowledge the use of cookies and similar technologies as described in this Policy, subject to any consent requirements applicable under law.
Where applicable, we will request your consent before placing or using non-essential cookies or similar technologies.
2. WHAT ARE COOKIES?
Cookies are small text files that websites store on your computer, smartphone, tablet or other internet-connected device.
Cookies allow a website to recognise a device and remember certain information about your visit.
Cookies can help websites:
- function properly;
- remember your preferences;
- keep you signed in;
- maintain security;
- understand how visitors use the website;
- improve performance;
- provide personalised features; and
- support advertising and marketing activities where applicable.
3. SIMILAR TECHNOLOGIES
In addition to cookies, Damascus Projects may use technologies such as:
- pixels;
- web beacons;
- software development kits (SDKs);
- local storage;
- device identifiers;
- session technologies;
- tracking technologies; and
- similar technologies.
For simplicity, this Cookie Policy refers to these technologies collectively as "Cookies" unless a distinction is necessary.
4. WHY DAMASCUS PROJECTS USES COOKIES
We use cookies for several essential and functional purposes. Below is a detailed breakdown of the cookies our platform sets and the technologies we use.
5. STRICTLY NECESSARY COOKIES
These cookies are required for our website and services to function correctly. They cannot be disabled through our cookie-consent system (when implemented).
| Cookie Name | Purpose | Duration |
|---|---|---|
session | Manages your authenticated session (Flask‑Login). Contains user ID, flash messages, payment details, referral info, UI state, CSRF token and user type. | Session (expires when browser is closed) |
remember_token (planned) | If you check "Remember Me" during login, this cookie keeps you signed in across browser sessions. | Persistent (30 days) |
Technical note: Our code contains an explicit set_cookie call that writes a session cookie with an empty session.sid value. This is redundant because Flask already sets the session cookie automatically. We recommend removing that line to avoid potential conflicts.
5.1 Information stored in the session cookie
- Authentication: Flask‑Login user ID and login state.
- Flash messages: Temporary notifications displayed after redirects.
- Payment details: Subscription ID, Paystack reference, currency, phone, town and country (during checkout).
- Referrals: Marketer ID and referral code (when a user is referred).
- UI state: Whether the update‑popup has been dismissed.
- CSRF token: Flask‑WTF token for form security.
- Account type: Regular user, administrator or marketer (used for role‑based access).
6. FUNCTIONALITY AND PREFERENCE COOKIES
We use localStorage and sessionStorage (browser storage, not cookies) to remember your preferences and improve your experience. This includes:
- Firebase device ID (for push notifications).
- Sidebar state (collapsed/expanded).
- Membership state and update reminders.
- Payment‑form field values (preserved if you navigate away and return).
These items are stored locally on your device and are not transmitted to our servers automatically.
7. ANALYTICS AND PERFORMANCE COOKIES
We do not currently set any first‑party analytics cookies. However, our website may load resources from third‑party CDNs (e.g., Google Fonts, Bootstrap CDN, Font Awesome) that could set their own cookies. These are beyond our control.
We are evaluating whether to implement analytics in the future; any such implementation will be disclosed and consent will be obtained where required.
8. SECURITY COOKIES
The session cookie itself contributes to security by maintaining your authenticated state and CSRF protection. We do not set additional security cookies.
9. ADVERTISING AND MARKETING COOKIES
We do not currently use advertising cookies. We may consider limited marketing in the future, but any such use will require your explicit consent.
10. SOCIAL MEDIA TECHNOLOGIES
Our website may include social‑media sharing buttons or embedded content from platforms such as Facebook, Instagram, TikTok or YouTube. These third parties may set cookies when you interact with their content.
We do not control these cookies and encourage you to review the privacy policies of those platforms.
11. THIRD-PARTY SERVICES AND THEIR COOKIES
Our platform integrates with the following third‑party services, which may place their own cookies:
- Paystack – payment processing (may set session/security cookies during checkout).
- Google Fonts – loads font files (may set performance cookies).
- Google Docs Viewer – used for viewing documents (may set its own session cookies).
- CDN providers (e.g., Bootstrap, Font Awesome, jQuery) – may set analytics or performance cookies.
These services operate under their own privacy and cookie policies. Damascus Projects does not control the cookies set by third parties.
12. COOKIES AND THE DAMASCUS PROJECTS MOBILE APPLICATION
Our mobile application uses similar technologies (SDKs, device identifiers, local storage) for authentication, security, analytics, crash reporting and push notifications. These are managed through the operating system’s permission settings.
13. SESSION AND PERSISTENT COOKIES
The session cookie is a session cookie – it expires when you close your browser.
The remember_token cookie (if implemented) will be persistent and last up to 30 days.
14. FIRST-PARTY AND THIRD-PARTY COOKIES
First‑party: The session cookie is set by Damascus Projects.
Third‑party: Cookies from Paystack, Google, CDNs and social‑media platforms are third‑party cookies.
15. COOKIE CATEGORIES
| Category | Purpose | Examples used |
|---|---|---|
| Strictly Necessary | Authentication, security, session management | session, remember_token (planned) |
| Functional | Remembering preferences | localStorage/sessionStorage (not cookies) |
| Analytics | Not currently used | None |
| Advertising | Not currently used | None |
| Social Media | Embedded content from third‑party platforms | Cookies set by Facebook, Instagram, TikTok, YouTube |
| Third‑Party Services | Payment, fonts, document viewer, CDN | Paystack, Google Fonts, Google Docs Viewer, CDNs |
16. COOKIE CONSENT
Currently, Damascus Projects does not display a cookie‑consent banner. We rely on implied consent through your continued use of our website and services.
We are actively developing a cookie‑consent management tool that will:
- request your explicit consent for non‑essential cookies;
- allow you to accept or reject specific categories;
- store your preferences for future visits.
Strictly necessary cookies will always remain active, as they are essential for the platform to work.
17. WITHDRAWING OR CHANGING YOUR CONSENT
Once our consent mechanism is live, you will be able to change your preferences through the Cookie Settings link on our website.
You can also manage cookies directly in your browser settings (see Section 18).
18. BROWSER CONTROLS
Most browsers allow you to:
- block all cookies;
- delete existing cookies;
- receive warnings before cookies are stored;
- allow only specific types of cookies.
If you disable the session cookie, you will not be able to log in or use most platform features.
19. DO-NOT-TRACK SIGNALS
We do not respond to Do‑Not‑Track (DNT) signals because there is no universally accepted standard. However, we respect your privacy choices through our own consent mechanisms when they become available.
20. INFORMATION COLLECTED THROUGH COOKIES
The session cookie may store the data listed in Section 5.1. No personal data is stored in cookies beyond what is necessary for authentication and session continuity.
Third‑party cookies may collect additional data as defined by their respective policies.
21. PERSONAL DATA AND COOKIES
Session‑cookie data (user ID, email, payment info) is considered personal data. We process this information in accordance with our Privacy Policy and applicable data‑protection laws.
22. INTERNATIONAL PROCESSING
Because we use third‑party services based in various countries, cookie data may be processed internationally. We implement safeguards where required.
23. COOKIE RETENTION
Session cookies expire when you close your browser. Persistent cookies (when implemented) will have a defined lifespan – typically 30 days for the remember_token.
24. UPDATES TO OUR COOKIE POLICY
We may update this policy to reflect changes in our practices or legal requirements. The "Last Updated" date at the top indicates the latest revision.
25. YOUR PRIVACY RIGHTS
You have the right to access, correct, delete or object to the processing of your personal data. For details, see our Privacy Policy.
26. CONTACT US
If you have questions about this Cookie Policy, please contact:
- Privacy Email: Privacy@damascusprojects.com
- General Email: Info@damascusprojects.com
- Address: 19 Emma Abimbola Cole, Lekki Phase 1, Lagos Nigeria
- Telephone: 09076623032
27. REGULATORY FRAMEWORK
We operate from Nigeria and comply with the Nigeria Data Protection Act 2023, as well as other applicable privacy laws.
28. ACKNOWLEDGEMENT
By using our website or application, you acknowledge that you have read and understood this Cookie Policy. When our consent mechanism is implemented, you will be given the opportunity to explicitly accept or reject non‑essential cookies.
Last Updated: 16th November 2025
Damascus Projects & Services