Zenario has full control over how cookies are issued.
For the majority of situations, explicit cookie control is needed for compliance. That is to say, every site visitor should be presented with a cookie message, asking for their acceptance to receive cookies, with the ability to accept, choose, or deny all but necessary cookies.
Zenario handles all of these things in a simple way.
It is common for third party JavaScript code to run on a site and issue cookies, for example for Google Analytics. Such code should be placed in a cookie-sensitive field in Zenario, such that Zenario does not run the code unless the user has agreed to those kind of cookies.
Zenario also supports implicit cookie control (cookies are issued and the visitor is simply informed with a "Continue" button), or it can be turned off entirely, but these approaches are not recommended.
Certain jurisdictions require that personal data is stored within that country, e.g. within Europe for European customers.
The OnZenario has servers in various locations in Europe, the UK, the USA and elsewhere.
When creating your OnZenario site, you can check that the site location suits your needs.
Sites that capture visitor data must follow GDPR privacy legislation, whether in Europe or other jurisdiction.
Zenario manages a customisable privacy policy page, and ensures it is linked from cookie messages and sign-up forms.
When capturing data, it records consents for each visitor, in a central log.
Various kinds of data can be captured: form responses; sent emails; extranet sign-ins; cookie consents.
Each type of private data has an expiry date, so that data is auto-deleted after a number of months or years, or kept indefinitely.
Zenario supports a number of types of encryption, including Personal Data Encryption (PDE) which encrypts and hashes personal data.