More About Cookies used by my Website and Shopping Cart:
Cookies used by my website host, Weebly.com:
No cookies bearing any of your personal information are stored on my website.
Information about the types of cookies used by the shopping cart:
Here is a rough list of the types of cookies used by my shopping cart service (BigCommerce) that pertain to customer orders and personal details and a little information about them.
*mobileViewFullSite--Used to determine if the user should be shown the mobile site
*PERPAGE_PREFS--Determines and stores how many items to show per page
*RECENTLY_VIEWED_PRODUCTS--Stores recently viewed products (for 30 days)
*SHOP_ORDER_TOKEN--Houses a representation of the order for lookup when passed back from external
providers*
*SHOP_SESSION_TOKEN--Houses a representation of the user session for lookup when passed back or
called from external providers*
*SHOP_TOKEN--Used to store the customer's details after logging in
*SORTING_PREFS--Stores a user's sorting preferences
*STORE_VISITOR--Tracks anonymous site usage
*External providers, in this case, consist of my credit card processor or a website use analysis service, in this case Google Analytics.
Part of being PCI (payment card industry) compliant means that any time you enter personal information (such as your name or address to complete an order, etc) it is encrypted so as to protect your privacy. This type of information is retained, encrypted, to save you the trouble of having to enter it the next time you place an order. However, while a record of your transaction is retained on the credit card processor's system, the credit card information itself is NEVER stored in a cookie or in any other manner on either the BigCommerce platform or my credit card processor's platform (and therefore must be entered each time an order is placed). Credit card information is encrypted as it is entered via an SSL certificate and transmitted directly to my credit card processor. Credit card processors, similarly, are held responsible for following the same PCI compliance standards to protect the customers’ information.