This Cookie Policy helps you understand how https://thefilm.app (our service, we, the service) uses cookies and similar technologies to ensure the service works properly, to provide access to secured content, and to understand general usage through privacy-friendly analytics.
1) What cookies are
Cookies are small text files stored on your device when you visit a website. Some cookies are strictly necessary for the service to function, while others are used for analytics or embedded third-party media.
2) Cookies we use
We use the following categories of cookies:
A) Strictly necessary (functional) cookies
These cookies are required for the service to work. They enable essential features such as authentication and session security for accessing protected content.
Examples of functional usage
- Keeping you logged in after entering the access password
- Maintaining a secure session across language pages (/en, /fr, /de)
- Supporting protection against brute-force login attempts
- Preserving access state while navigating between pages and sections of the service
B) Analytics cookies (Matomo — self hosted)
This site may use a self-hosted Matomo analytics instance to measure overall traffic and understand how the service is used (for example: page views, device type, approximate location, and general navigation patterns). The goal is to improve performance, stability, and content presentation.
We do not use Matomo to sell personal data or to build advertising profiles.
Where possible, analytics settings are configured to reduce unnecessary personal data collection (for example, IP address masking and limited retention).
C) Third-party media cookies (YouTube / Vimeo)
When videos are embedded or played from third-party platforms such as YouTube or Vimeo, those providers may set cookies and collect data according to their own policies. These cookies may be used to deliver the video player, remember preferences, and measure performance.
If you prefer to avoid third-party cookies, you can choose not to play embedded videos, or you can adjust your browser settings (see section 5).
3) Session cookies (authentication)
Authentication for secured access uses a session cookie created by PHP (via session_start()). This session cookie is typically temporary and expires when you close your browser, unless your browser keeps sessions active.
Session security settings may include:
- HttpOnly cookies (not accessible via JavaScript)
- Secure cookies (HTTPS only, when available)
- SameSite restrictions (to reduce cross-site risks)
- Scoped cookie path limited to the service root
- Regenerating the session ID after successful login to reduce session fixation risks
4) How long cookies stay on your device
Some cookies are deleted automatically when you close your browser (session cookies). Other cookies, such as those from analytics or third-party services, may remain for longer depending on their configuration and provider settings.
The exact duration can also vary depending on your browser configuration and whether you manually clear cookies.
5) Managing cookies
You can control and delete cookies at any time through your browser settings. Most browsers allow you to:
- Block cookies entirely
- Delete cookies after each session
- Remove cookies already stored on your device
- Block third-party cookies only
Please note: blocking strictly necessary cookies may prevent the service from working correctly, including access to protected content.
6) Third-party policies
Some features of this service rely on external providers. If you interact with embedded third-party media (such as playing a video), those providers may process data under their own terms and privacy policies.
Relevant third-party policies include:
- YouTube / Google: https://policies.google.com/privacy
- Vimeo: https://vimeo.com/privacy
- Matomo: https://matomo.org/privacy-policy/
7) Updates to this cookie policy
This cookie policy may be updated from time to time to reflect technical changes, legal requirements, or improvements to the service. The latest version will always be available on this site.
6) Contact
If you have questions about this Cookie Policy or the way cookies are used, you may contact us at:
contact+tfa@gsant.net
Last updated: 12.01.2026