Cookie Policy
Last update: May 9, 2026
1. What cookies are
Cookies are small text files stored in the user's browser or device when visiting a website. They are used to enable the technical operation of the site, remember certain preferences, strengthen access security, obtain statistical information or enable certain third-party services.
2. Controller responsible for cookie use
The website aeocms.es uses cookies under the AEOCMS brand. For any question related to this policy, the user may write to info@aeocms.es.
3. Types of cookies used on this site
This site may use the following categories of cookies:
- Technical or strictly necessary cookies: essential for the basic operation of the site, session management, security, navigation, resource download or the use of the private area.
- Security cookies: aimed at strengthening authentication, access protection and the management of mechanisms such as two-factor verification.
- Analytics cookies: intended to measure site usage and obtain aggregated browsing statistics, where there is an adequate legal basis.
4. Technical and security cookies used by AEOCMS
AEOCMS may use its own cookies strictly necessary for the operation of the site and client area, including:
- PHPSESSID: technical session cookie required to maintain secure navigation, process forms, preserve temporary user state and protect certain internal operations. Its usual duration is limited to the active browser session or the strictly necessary technical time.
- remember_device or equivalent: cookie intended to remember a device previously validated through two-factor authentication. Its planned maximum duration is 7 days, unless changed technically or revoked earlier for security reasons.
- session_state or equivalent: technical identifier associated with the private area to control the authenticated session state. Currently, the expected maximum inactivity time for the client area is approximately 2 hours, without prejudice to renewal or early termination for security reasons.
- 2fa_pending or equivalent: temporary security data used to complete two-factor verification processes. Its estimated technical duration is up to 10 minutes or until the corresponding process ends.
These cookies are necessary for security, authenticated access, form validation, fraud prevention and the correct provision of digital services contracted by the user.
5. Analytics cookies
AEOCMS may use web analytics tools, including Google Analytics, to understand in aggregate how the site is used, which pages receive the most traffic, from which devices users browse and how the audience behaves statistically.
These analytics cookies are not considered necessary for the basic functioning of the site and, where legally required, will only be activated after obtaining the user’s valid consent through the consent management system implemented on the website.
6. Third-party cookies
Certain third-party services integrated into the site, such as payment providers, analytics services, players or technical tools, may install their own cookies under their own policies. AEOCMS does not directly control third-party cookies beyond the technical integration necessary to provide its services.
7. Legal basis
Technical and security cookies are used on the basis of technical necessity to provide the requested service, maintain site security or allow access to essential features.
Analytics or equivalent cookies that are not strictly necessary will be used, where appropriate, on the basis of the user's consent.
8. Management, configuration and withdrawal of consent
The user may accept, reject or configure the use of non-essential cookies through the consent management system available on the site, as well as through the browser settings.
Most browsers allow blocking or deleting cookies from their settings. However, disabling certain technical or security cookies may prevent access to the private area, affect the authentication process or limit the correct functioning of some parts of the site.
9. Retention
Cookies will be retained for the time strictly necessary to fulfill their purpose. In the case of session cookies, their duration normally ends when the browser is closed or when the corresponding technical session expires. In the case of security cookies or trusted-device cookies, their validity will be adjusted to the planned technical period or their early revocation.
10. Policy updates
AEOCMS may update this Cookie Policy when justified by regulatory, technical, operational or site-configuration changes. The version published at any given time will be the applicable one.