diff --git a/privacy.md b/privacy.md index 149ea1d..c0caf4d 100644 --- a/privacy.md +++ b/privacy.md @@ -24,7 +24,7 @@ We need to use a Session cookie and a cross-site request forgery (CSRF) cookie. The Session cookie allows the user to be recognized within the website. The cookie is deleted after the session. -The cross-site request forgery (CSRF) cookie helps to protect against Cross site request forgery by storing a security token. The cookie is kept for 24 hours. +The cross-site request forgery (CSRF) cookie helps to protect against cross-site request forgery by storing a security token. The cookie is kept for 24 hours. The legal basis of storing these cookies is Section 25 (2)(2) TTDSG (German Telecommunications and Telemedia Data Protection Act), Art. 6 (1) lit. f) GDPR. This site has a legitimate interest in protecting its systems and detecting and preventing attempted fraud.