Check current UK threat level ↗
Company no. 13953422Enquiries · +44 7588 432264

Cookie Policy

Draft for client review – live WordPress website | Reviewed 10 September 2026

This draft describes the live website at profedone.co.uk. GoDaddy Website Metrics was disabled on 8 September 2026. Checks of anonymous page responses on 10 September did not find the previously observed GoDaddy measurement scripts. A complete fresh-browser storage audit and client approval remain outstanding. This document is not a legal compliance sign-off and does not itself block cookies or record consent.

1. Who we are and what this policy covers

PROFEDONE LTD (company number 13953422), operating as Profedone Security Services, is responsible for this website. Our registered office is 168A Deans Lane, Edgware, England, HA8 9NT.

This policy explains cookies and similar browser storage associated with the live WordPress website at profedone.co.uk. It does not describe independently operated websites reached through external links. Contact us at v.ardzhanliev@profedone.co.uk or +44 7588 432264.

2. What cookies and similar technologies do

Cookies are small pieces of information saved in your browser. They can help a website recognise a login, protect against automated abuse or measure use. Browser local storage and session storage can serve similar purposes. These technologies can contain identifiers or other personal information; they are not necessarily anonymous.

Session cookies normally end with the browser session. Persistent cookies have an expiry period. Browser restoration, privacy settings and deletion can affect how long information remains. A first-party cookie is associated with the website you visit; it may still be written or read by code supplied by a hosting provider.

3. The live website’s configuration

The bespoke website theme does not add advertising cookies, Google Analytics, Meta Pixel or a browser-stored profile of your enquiries. The service-request form sends the information you enter to Profedone by email. Its anti-spam rate limit is stored on the server, not as a visitor cookie.

The hosting platform and WordPress can introduce separate storage, described below. Security cookies are distinct from optional measurement cookies; being supplied by the host does not automatically make a cookie essential.

4. Security, WordPress and browser storage

The following list distinguishes observed hosting behaviour from WordPress cookies that apply only when a particular feature is used. Most people browsing service pages do not need a WordPress account. Cookie-name suffixes such as {hash} or {user_id} vary by installation or user; they are not missing company details.

__cf_bm

Cloudflare, through the hosting service. Helps identify automated traffic and protect the site. Observed on anonymous live-site responses on 10 September 2026.

Duration: 30 minutes of inactivity.

wordpress_test_cookie

WordPress. Checks whether the browser accepts cookies when the login screen is opened. Observed on the login response.

Duration: Browser session.

cp_challenge

GoDaddy. Supports the login CAPTCHA/challenge process. Defined by the hosting login script when that challenge is used.

Duration: Browser session in the inspected script.

wp_lang

WordPress. Remembers a selected login-screen language, where the language selector is used.

Duration: Browser session.

wordpress_sec_{hash}; wordpress_logged_in_{hash}

WordPress. Authenticate authorised users and recognise their signed-in status. Relevant to account access, not ordinary anonymous browsing.

Duration: Normally a browser-session cookie; authentication validity is usually 2 days, or 14 days if Remember Me is selected. Hosting sign-in can differ.

wp-settings-{user_id}; wp-settings-time-{user_id}

WordPress. Remember an authorised user’s administration/interface preferences.

Duration: Normally 1 year.

wp-postpass_{hash}

WordPress. Remembers access after a visitor enters a password for password-protected content. Only applies if that feature is used.

Duration: Normally 10 days.

wpEmojiSettingsSupports (session storage)

WordPress. Remembers a browser’s emoji-rendering support to avoid repeating the compatibility test. This is browser storage, not an advertising identifier.

Duration: Current tab/session.

The WordPress durations above describe normal defaults, not a guarantee that every listed item is set on every visit. Hosting settings, updates and the way you sign in can change them.

5. GoDaddy hosting measurement

GoDaddy’s optional Website Metrics setting was disabled on 8 September 2026. Anonymous homepage response checks on 10 September found only the bespoke site’s navigation and enquiry scripts, not the previously observed GoDaddy measurement scripts. Google Analytics and Meta Pixel were not detected in those responses. These checks inspect delivered code and headers; they do not prove that no other storage can be used under any circumstances.

The earlier preview’s hosting scripts defined _tccl_visitor, _tccl_visit and _scc_session. They are not presented here as active cookies on the current site. Visitors who used an earlier preview may retain previously stored data until its expiry or until they clear site data. The final visitor-facing storage inventory should be confirmed in a fresh browser.

Optional measurement is not necessary for requesting security services. If measurement is enabled in future, its purposes, storage and applicable consent or exception requirements must be assessed before use. Where consent is required, it must be obtained before the relevant storage or access begins. The mere presence of this policy is not consent.

6. Your choices

You can inspect, block or delete cookies and site data through your browser’s privacy settings. Deleting or blocking login or security cookies may sign you out, prevent administration access or interrupt security checks. You can still contact Profedone directly by telephone or email.

Browsing the website, submitting an enquiry or closing a notice does not by itself give consent to optional tracking. If consent-based analytics, advertising or embeds are added, we will first update this policy and provide a choice that allows acceptance, refusal and later withdrawal. No functioning cookie-preference panel is represented as being in place by this draft.

7. Other websites, personal data and updates

Our links to MI5, Companies House, the SIA, SafeContractor and the ICO take you to independently operated websites. Those websites have their own cookie and privacy arrangements. The new theme uses links rather than embedded versions of those services.

Cookie identifiers, security information and hosting records may involve personal data. This policy is not a complete privacy notice for enquiries or security services. See our GDPR policy and contact us for information about how Profedone handles your personal data. Hosting providers may process information outside the UK; their own notices explain their processing arrangements.

We will review this policy when the website’s plugins, hosting, analytics or features change and update the review date. For questions or concerns, email v.ardzhanliev@profedone.co.uk, call +44 7588 432264, or write to PROFEDONE LTD at the address above. You can also contact the UK Information Commissioner’s Office at ico.org.uk.

Download this cookie policy as a PDF | GDPR policy | Contact Profedone

Sources and further information

ICO: storage and access technologies guidance

WordPress: cookies

Cloudflare: cookie information

GoDaddy: Real User Metrics

Companies House: PROFEDONE LTD

Start a conversation

Tell us what you need to protect.

+44 7588 432264Request services →