Legal
Cookie Policy
This policy explains cookies and similar technologies, the information they can store, and your choices when using the Creator Clash website.
Last updated: 9 September 2026
Section 1
About this policy
Creator Clash is operated by I Made This Limited, a company registered in the United Kingdom. In this policy, “we”, “us” and “our” refer to I Made This Limited.
This policy concerns storage and access technologies used on the Creator Clash website. Read it alongside our Privacy Policy, which explains how we handle personal information, your data protection rights and how to exercise them.
Our approach is based on the Privacy and Electronic Communications Regulations and applicable UK data protection law. Cookie choices are separate from agreeing to purchase terms or signing up for marketing emails.
Section 2
What cookies are
Cookies are small files that a website stores in your browser. They can help a website recognise a browsing session, remember a choice or connect a visit with information stored on a server.
Similar technologies include local storage, session storage, tracking pixels and scripts that store or access information on a device. We use “cookies” as a convenient term for these technologies in this policy. The cookie list identifies the particular technologies used.
- Session cookies normally last for a browsing session. Some browsers can retain them when restoring a previous session.
- Persistent cookies have a set expiry time and can remain until they expire or are deleted. Some are renewed when used again.
- Local storage does not normally have an automatic expiry; it remains until removed by the website, the browser or you.
- First-party and third-party cookies are associated with our website's domain or another domain respectively. A technology on our own domain may still send information to an external provider.
The lifetime of a browser cookie is separate from how long information associated with it is held on a server. Our Privacy Policy explains personal-information retention.
Section 3
How we use cookies
Our website uses a session to connect your browser with information held on our server. The navigation checks that session to recognise whether you are signed in and display the relevant account or login link.
When cookies are enabled for this session, a cookie holds the identifier that links your browser to it. The website can start a session before you sign in, including when you open this policy page. The cookie list describes this use and the cookie's configured duration.
When the checkout bootstrap starts a session itself, its supplied configuration
requests a browser-session cookie with a lifetime of zero, the / path,
HttpOnly, SameSite=Lax and Secure when
the request is over HTTPS. The active router or authentication startup may have
already started the session, so the live response headers determine which settings
apply.
We assess each purpose individually. A technology is not automatically strictly necessary because it is useful to our business, provided by a payment company, or labelled as a security or performance tool.
Section 4
How cookies are categorised
The purpose of a cookie determines how it is treated. A session cookie is not automatically strictly necessary, and a persistent cookie is not automatically an advertising cookie.
Strictly necessary cookies
These are essential to provide a service you request, such as maintaining your sign-in while you use your account. They can operate without asking for cookie consent, provided their use is limited to the necessary purpose.
Optional technologies
Analytics can measure visits and interactions; preference technologies can remember additional choices; advertising technologies can connect visits with promotions or track activity across websites. Describing these categories does not mean that we currently use them.
If we introduce optional analytics, preference or advertising technologies, our policy is to explain them and request your consent before they operate. A choice stored solely to provide a feature you specifically request may instead qualify as strictly necessary.
Section 5
Cookie list
This list describes identified cookies and similar technologies, their providers, purposes, duration and when they are used. The session cookie's name, scope and duration are taken from the settings used when this page loads. Stripe's row is based on the supplied checkout and Stripe's published information; its live cookie set and duration still need verification.
Website inventory review:
| Name and technology | Provider and domain | Purpose and information involved | Duration | Consent or exception | When used |
|---|---|---|---|---|---|
|
PHPSESSID First-party cookie used for a PHP session |
I Made This Limited (Creator Clash) The hostname you are visiting (host-only); path: / |
Stores an identifier linking your browser to a session on our server. The navigation uses the session to recognise whether you are signed in. The login and checkout code also stores CSRF tokens and basket data in that server-side session; those values are not placed in this cookie. | Browser session; some browsers retain session cookies when restoring a previous session. | No consent is needed where use is strictly necessary to maintain the account service you request. See the consent section below. | On pages that start or resume a session, including this policy page, login, basket and checkout. A session can start before you sign in. |
|
__stripe_mid, __stripe_sid, m Third-party Stripe.js payment script and related storage |
Stripe; privacy information: https://stripe.com/gb/legal/privacy-center js.stripe.com; m.stripe.network; m.stripe.com (Stripe-controlled hosts) |
Stripe states that Stripe.js uses cookies and similar technologies to collect device signals for fraud prevention during payment. Other Stripe technologies may apply depending on the checkout configuration. | To be confirmed from live checkout responses and Stripe configuration; no duration is inferred from the supplied PHP. Stripe says the exact set varies by product and configuration. | Purpose-specific assessment required. Payment and fraud prevention may be strictly necessary for a requested checkout service; optional Stripe purposes must not operate without the consent required by law. | Checkout only, when the basket is not empty and a Stripe publishable key is configured. |
Section 6
Consent and your choices
We do not need your consent for cookies used solely where strictly necessary to provide a service you request. For example, a cookie used to keep you signed in during an account visit can meet this exception. Simply calling a cookie a “session cookie” does not establish an exception for every use.
If we introduce technologies requiring consent, we will explain the purposes and providers and give you a choice before activating them. The controls will let you accept, reject or choose optional purposes, with refusing as easy as accepting. We will also explain how to reopen those controls and withdraw consent just as easily as you gave it.
We will not treat continued browsing, closing a notice or accepting purchase terms as cookie consent, or preselect optional purposes. Your essential account and shopping services will not depend on accepting optional Creator Clash analytics or advertising. Payment-provider technologies must be assessed for their actual purposes before deciding which can operate without consent.
If you withdraw consent to a technology introduced in future, we will stop the relevant consent-based storage, access and processing, inform relevant providers and handle deletion of associated personal information as required by law. Withdrawal does not make earlier processing unlawful.
Section 7
Managing cookies
You can inspect, block and delete cookies and other site data through your browser's privacy or site-data settings. These settings usually let you manage information stored for a particular website as well as set general cookie preferences.
Blocking the session cookie may prevent sign-in and other features that depend on the session from working. Deleting it can sign you out. Deleting browser cookies does not itself delete your customer account or the information held on our server.
A new session cookie can be created on a later visit if your browser permits it. Browser controls apply to the browser and device you are using; you may need to change settings separately on other devices.
Contact us if you need help changing your choices or believe that your settings are not being respected.
Section 8
Third-party services
A third-party service used on a website can store or access information on your device even when its technology appears to operate from the website's own domain. The register identifies the relevant providers and recipients and explains their purposes so you can understand who is involved before making your choices.
Payment, fraud-prevention and embedded-content technologies must be assessed for their actual purposes. Only the purposes meeting a legal exception can operate without consent; unrelated tracking is not covered by that exception.
The supplied checkout loads Stripe.js from js.stripe.com when there
is a payable basket and a Stripe publishable key is configured. Stripe says its
script can use __stripe_mid, __stripe_sid and
m for fraud-prevention signals, and that other technologies can
depend on the Stripe products and configuration in use. See Stripe’s
Privacy Centre and
Cookie Policy.
We will verify the live checkout before finalising the exact cookie names,
durations and consent treatment.
The checkout presents Stripe’s payment elements and can offer Apple Pay, Google Pay, PayPal, Link, Klarna or Clearpay depending on device, location and configuration. These payment methods can involve provider-controlled storage or requests that are not visible in the supplied PHP or JavaScript, so they must be included in the live checkout review where applicable.
We remain responsible for the technologies we introduce on our website and for providing the required information and consent choices. A provider's own privacy notice gives further information about how it handles data.
If you follow a link to another website, that website has its own cookie information and controls. Following an external link does not change your cookie choices for Creator Clash.
Section 9
Cookies and personal information
Cookie identifiers and related information can be personal data when they identify you or can be linked with other information about you. Even technologies that do not identify you by name can be subject to cookie and data protection rules.
Our Privacy Policy explains the relevant lawful bases, recipients, retention arrangements, any international transfers and your rights. An exception from cookie consent does not remove our data protection responsibilities, and calling an activity a legitimate interest does not replace consent where consent is required.
You can contact us about privacy concerns using the details below. You can also raise a concern with the Information Commissioner's Office at ico.org.uk.
Section 10
Changes to this policy
We will review this policy and the cookie register when our technologies, providers, purposes or legal requirements change, and update the date above.
Where a change requires fresh consent, we will explain the change and ask before enabling the new consent-dependent use. Publishing a revised policy does not itself provide consent or override an existing refusal.