UPM – Cookie Policy
ZINFI utilize necessary technical cookies to enable standard core functionalities of the web application, such as security, user authentication, and access management. Analytics cookies are implemented to analyze web traffic to the Portal, measure user interactions, and store the traffic source or campaign that explains how the user reached the Portal. The following necessary technical cookies are utilized for the following functionalities:
- Security Cookies – Utilized to prevent Cross-Site Request Forgery (XSRF/CSRF) attacks and to make a request unique.
- Authentication Cookies – Utilized to implement User Authorization and represent Authorization Data.
- Accessibility Cookies – These are implemented to store preferred portal language, country, and user profile (admin/partner).
Name |
Purpose |
Type & Utility |
Duration |
XSRF-TOKEN |
Utilized to prevent cross-site request forgery, a form of exploit also known as a one-click attack or session riding because the attack takes advantage of the user’s previously authenticated session. |
"Security" Cookie |
Session |
authNonce |
Utilized to implement User Authentication using OpenID and IdentityServer and represent Authorization state and data. ZINFI Platform does not work before the authentication of the User for security parameters and Authentication/Authorization Cookies. If disabled, the User cannot log in to the UPM Portal/Platform. |
"Authentication" and "Authorization" Cookies |
Session |
authorizationDataIdToken |
Session |
||
_isAuthorized |
Session |
||
authStateControl |
Session |
||
authorizationData |
Session |
||
BeforeLoginURL |
In SSO implementations, the origin URL to the redirected login URL is usually utilized to track the source path for redirection to the ZINFI Portal. |
“Targeting” Cookies |
Session |
SearchCampaign |
Utilized to track source campaign, leading to redirection to the ZINFI Portal (if redirection processed via marketing campaign), and stored to report marketing campaign effectiveness metrics. |
Session |
|
_hjid |
A Hotjar cookie is set when the User or partner first lands on the UPM Portal with the Hotjar script. It is used to persist the Hotjar User ID, which is unique to the ZINFI Portal, on the browser. Hotjar cookies are responsible for displaying the correct content to ZINFI Portal users without personally identifying anyone. |
1 Year |
|
ASP.NET_SessionId |
These cookies allow our UPM Partner Portal and Customer Support Portal to respond to user browsing. The site may not work without them. |
“Functionality” Cookies |
Session |
ActiveSession |
Session |
||
isCookiesAcceptance |
Session |
||
CountryId |
UPM platform stores the following unique identifiers for users to store user settings and provide an optimum user-specific user interface and accessibility to the platform: |
“Functionality” and "Accessibility" Cookies |
5 Years |
CountryName |
Country selector |
5 Years |
|
CountryCulture |
Country selector |
5 Years |
|
LanguageCookie |
Language selector |
5 Years |
|
LanguageId |
Language selector |
5 Years |
|
LanguageName |
Language selector |
5 Years |
|
LANG |
Language selector |
5 Years |
|
ZoneID |
UPM Platform Menu/Module visibility and access as per configured Role for User. |
Session |
|
HasAdminRole |
UPM Platform Menu/Module visibility and access as per configured Role for User. |
Session |
|
Smenu |
UPM Platform Menu/Module visibility and access as per configured Role for User. |
Session |