Cookie Policy
What i-table stores on your device, why, and how to change your mind. Written to be read, not to be survived.
Last updated
A cookie is a small file a website asks your browser to keep. Local storage and session storage do a similar job with a different mechanism, and the law treats all three the same way: what matters is that something is being stored on, or read from, your device.
This policy covers the public i-table website — the pages you are reading now, the booking pages restaurants publish, and the booking widget they embed in their own sites. It also lists what the restaurant management dashboard uses, marked separately, because that only applies once someone signs in.
1.The rule we are applying
Article 4(5) of Greek Law 3471/2006, which implements the ePrivacy Directive, says storage on your device requires your prior consent — unless it exists solely to carry out a communication, or is strictly necessary to provide a service you explicitly asked for. Where consent is required, it must meet the GDPR standard: freely given, specific, informed and unambiguous, and as easy to withdraw as it was to give.
So the test is not whether something is called a cookie. It is whether it is strictly necessary for what you asked the site to do. Everything below is classified on that basis, and every exemption we claim is written out with its reason rather than asserted.
2.What is in use right now
Necessary — always on
These exist so the site works and so your choices are honoured. They are not used to profile you and are not shared with anyone for advertising.
| Name | Provider | Purpose | Duration | Type |
|---|---|---|---|---|
| `i-table:consent` — Consent record | i-table (First party) | Stores your cookie choice, when you made it and which version of this notice it relates to, so you are not asked again on every page and so we can evidence the choice you made. | Until you clear it or change your choice | localStorage |
| `i-table:lang` — Language preference | i-table (First party) | Remembers whether you chose Greek or English, so the site opens in that language next time. | Until you clear it | localStorage |
| Name | Provider | Purpose | Duration | Type |
|---|---|---|---|---|
| `sb-<project>-auth-token` — Sign-in session | i-table (authentication provider) (First party) | Keeps a restaurant user signed in to the management dashboard and refreshes the session securely. It is set only after you sign in, and never for a visitor who is only browsing or booking. | Session, with periodic refresh | cookie |
Optional — only with your permission
There are currently none. The audit behind this policy found no analytics, no advertising or tracking pixels, no tag manager, no social media plug-ins, no session recording, no heat-mapping, no A/B testing, no chat widget, no captcha and no embedded third-party video or maps. Web fonts are served from our own servers rather than a font service, so simply loading a page does not disclose your IP address to any third party.
Because nothing optional is in use, no consent banner is shown. That is deliberate. Presenting a consent dialog when a site stores nothing that needs consent is not caution — it teaches people to dismiss these dialogs without reading them, and it misrepresents what the site actually does. If an optional technology is ever introduced, it will be added to the table below, the banner will appear, and nothing will load until you allow it.
3.Third parties
The public website contacts no third-party host. Every script, style, image and font is served from i-table's own domain. This was verified by loading the site in a clean browser and recording every outbound request.
4.Changing your mind
Select Cookie settings in the footer of any page to reopen the preference centre. You can allow or refuse each category individually, and withdrawal takes effect immediately — there is no confirmation step and no penalty for refusing.
When you switch a category off, we delete the first-party cookies and browser storage in that category that this site can reach. We are not able to reach a third party's own storage on their domain, and we cannot undo processing that already lawfully happened before you withdrew. Withdrawal stops future processing; it does not rewrite the past.
5.Controlling storage in your browser
Independently of anything on this site, your browser can block or delete stored data. The controls sit under Settings → Privacy in Chrome, Firefox, Safari and Edge, and every major browser offers a private-browsing mode that discards storage when you close the window. Blocking strictly necessary storage may stop parts of the site working — most obviously, you will not stay signed in.
Some browsers also send a Global Privacy Control signal. We do not currently use any technology that a GPC signal would apply to; if that changes, we will honour it.
6.Changes to this policy
If we introduce a new technology in an optional category, we will update the tables here and ask for your consent again before it runs. Changes that only correct wording do not reset your choice. The date at the top shows when this was last revised.
7.More information
How i-table handles personal data more generally is set out in the Privacy Notice, and the terms governing use of the platform are in the Terms of Service. If you have a question about anything here, write to [PRIVACY EMAIL].
