Cookie policy
Last updated 2026-09-05
This policy names every cookie and browser store this site uses, what each one holds, how long it lasts, and how to change or withdraw your choice. Nothing that is not strictly necessary is set before you choose, and refusing is a single click on the same banner as accepting.
Your cookie choice
Checking your current choice…
1. What a cookie is here
A cookie is a small file this site asks your browser to keep and send back on your next visit. This site also uses two related browser stores — localStorage and sessionStorage — which keep information on your device but, unlike a cookie, never travel to our servers. Where this policy says "cookie" it means all three, because the choice you are being offered is the same one.
2. Strictly necessary — always on
These make signing in and staying signed in possible. They carry no advertising identifier and are never shared. They cannot be switched off, because without them the site cannot tell one signed-in person from another — which is a security property, not a convenience.
- altora_session — the sign-in token for a client account. Set only when you sign in, removed when you sign out. It is httpOnly, so no script on the page can read it, and SameSite=Lax, which is what refuses a cross-site request made in your name.
- altora_staff and altora_operator — the same thing for our own staff and for partner operators. A visitor never receives either.
- altora_who — your display name and role, so the page header can show you as signed in before it has spoken to the server. Readable by the page on purpose, and it holds no token: it can identify you to yourself, never authorise anything.
3. Preferences — kept on your device only
These are stored in your browser and never sent to us. Clearing your browsing data removes them, and the site works without them — it simply asks again.
- altora.consent.v1 — the cookie choice you made on the banner, and the date you made it. This one exists so we can prove we asked and honour your answer.
- altora.airports.recent — the airports you last searched, so the picker offers them first.
- altora.wizard.draft.v1 — an unfinished charter request, so closing the tab does not lose the trip you were describing.
- altora.ticker.dismissed — that you closed the announcement strip, so it stays closed.
- NEXT_LOCALE — the language you chose, so the site opens in it next time.
4. Analytics — only if you accept
We record your answer to the banner and, at the time of writing, no analytics provider is loaded on this site at all. If one is ever added it will run only where you have accepted, it will be named in this section before it is switched on, and this page will show a new "last updated" date.
There is no advertising, retargeting, fingerprinting or data-broker tag on this site, and no cookie here is sold or shared with one.
5. Changing or withdrawing your choice
Use the button above to reopen the banner and answer again. Withdrawing is as easy as giving, which the law requires and which is the reason the button is on this page rather than in a settings screen you would have to find.
You can also clear cookies and site data for this site in your browser settings, or refuse them entirely. Refusing the strictly necessary ones will stop you being able to sign in.
6. Questions
Write to [email protected] and we will answer. How we handle personal data more generally — including the rights you have over it — is set out in our Privacy policy.