Legal
Cookies and Browser Storage
Last updated: 8 August 2026
Public website
CrystalSMP does not use advertising cookies, cross-site tracking or behavioural analytics cookies.
Necessary account session
After successful in-game verification, the cs_session cookie keeps the verified Minecraft account signed in for up to 30 days. It is HttpOnly, Secure and SameSite=Lax. Signing out removes the server-side session and clears the cookie.
Local browser storage
The cart is saved under crystalsmp-cart-v1. Private support-ticket references and access keys are saved under crystalsmp-support-tickets-v1 so you can return to a ticket. This data remains in your browser until you clear site data.
Checkout verification
The active verification credential is kept in the open checkout page while its server-side verification record expires after 15 minutes.
Security services
Cloudflare may use strictly necessary security mechanisms to deliver and protect the website. The protected staff area uses Cloudflare Access authentication only to maintain an authorised staff session.
Payment provider
When payments open and you continue to Tebex, its checkout runs on a separate domain and is governed by the cookie and privacy information shown there.
Contact
Questions about website storage can be sent to support@crystalsmp.us.