Cookies
The site sets cookies when you log in or send an enquiry.
No tracking cookies, no analytics cookies, no profiling. The cookies we set are needed for logging in and to make sure the public form cannot be sent from another site.
vh_session
Set when you log in at /mit. Keeps you logged in for 90 days. HttpOnly, Secure, SameSite=Lax. Applies across the whole site, so that /sporene can see that you are logged in.
vh_enhed
Set when you ask for a login link. Binds the link to the browser that asked for it, for one hour. HttpOnly, Secure, SameSite=Lax. Applies only under /mit.
vh_csrf
Set when you open an enquiry on /sporene. Checks that the form comes from here. Lives for 8 hours. HttpOnly, Secure, SameSite=Lax. Applies only under /sporene.
CF_Authorization
Set by Cloudflare Access, not by us, when you log in to the internal pages. Keeps you signed in behind Access. We read it; we do not set it.
What is loaded from outside
Fonts and our own videos are on our own domain. One page, Good links, embeds a film from YouTube in its privacy-enhanced mode (youtube-nocookie.com): Google receives a request when you open that page, and only sets cookies if you press play. No other page loads anything from Google. Cloudflare delivers the site and logs IP address, time and which page was loaded, for operational and security reasons. It is not something we use to recognise you.
How to control it
You can delete or block cookies in your browser’s settings. The Danish Data Protection Agency has guidance at datatilsynet.dk.