Skip to content
ERPat System
ERPat System
Legal

Cookie Policy

This Cookie Policy explains the cookies and similar technologies ERPat uses, why we use them, and how you can control them. It expands on Section 7 of our Privacy Policy.

RA 10173 · NPCLast updated: June 28, 2026
On this page
  1. 1.What Cookies Are
  2. 2.Categories We Use
  3. 3.Session & Authentication Cookies
  4. 4.CSRF & Security Tokens
  5. 5.Appearance & Preference Cookies
  6. 6.Analytics & Measurement
  7. 7.Third-Party & Integration Cookies
  8. 8.Managing Cookies in Your Browser
  9. 9.Changes & Contact

ERPat, operated by BytesCrafter IT Solutions, uses a small number of cookies and similar technologies to keep the Service secure, remember your preferences, and understand how the platform is used. We do not use cookies to build advertising profiles and we do not sell the data they generate.

Strictly necessary by default.

Most of the cookies ERPat sets are required for the Service to work at all — signing you in, keeping your session valid, and protecting your requests. Blocking these will prevent the Service from functioning. See the Privacy Policy for the full description of what we collect and why.

1.What Cookies Are

Cookies are small text files that a website stores on your device so it can recognize your browser on later visits. Similar technologies — such as local storage, session storage, and server-set tokens — serve the same purpose and are covered by this Policy wherever we refer to “cookies.”

A cookie is a session cookie if your browser deletes it when you close it, or a persistent cookie if it survives until it expires or you clear it. A cookie is first-party if ERPat sets it, or third-party if a provider we use sets it in the course of delivering a feature you have enabled.

2.Categories We Use

CategoryWhat it does
Strictly necessaryRequired for the Service to operate — authentication, session continuity, load balancing, and request integrity. These cannot be switched off through our interface.
Session & securityMaintains your signed-in session and protects requests against cross-site request forgery (CSRF) and session fixation.
PreferenceRemembers choices you have made, such as your appearance/theme setting, language, and interface layout, so you do not have to set them again.
AnalyticsLimited, aggregated measurement of how the Service is used — which pages and features are opened, and where errors occur — so we can improve it.

We do not use advertising, retargeting, or cross-site tracking cookies.

3.Session & Authentication Cookies

When you sign in, we set a session cookie that identifies your authenticated session. It lets you move between pages without re-entering your credentials, and it expires when you sign out, when the session times out, or when you close your browser, depending on your configuration. Deleting this cookie signs you out.

Where your organization enables one-time passwords or email verification, short-lived tokens may also be stored to complete that flow. These are discarded once verification succeeds or expires.

4.CSRF & Security Tokens

The Service issues a per-session token used to verify that form submissions and API requests genuinely originate from your session rather than a malicious site. This is a strictly necessary security measure described in Section 11 of our Privacy Policy and cannot be disabled without breaking the Service.

5.Appearance & Preference Cookies

We store your appearance/theme setting and similar interface preferences so the Service looks the way you left it. These cookies hold only your choice — not your identity — and clearing them simply returns the interface to its defaults.

6.Analytics & Measurement

We may use limited analytics to understand and improve how the Service is used, in line with Section 7 of our Privacy Policy. Analytics data is used in aggregate — page and feature usage, timestamps, browser and device type, and approximate location derived from IP — and is not used to make decisions about individuals.

Where analytics is not strictly necessary and consent is required in your jurisdiction (for example, under the ePrivacy rules that accompany the GDPR), we will seek that consent before setting the relevant cookies. See our GDPR Compliance statement for how consent is handled for EU, EEA, and UK visitors.

7.Third-Party & Integration Cookies

Enabling an integration — such as email, SMS, payment, cloud storage, or an external authentication provider — may allow that provider to set its own cookies as needed to deliver the feature. Those cookies are governed by the third party’s own policies, which we do not control. This mirrors Section 11 of our Terms of Service.

8.Managing Cookies in Your Browser

You can view, block, and delete cookies through your browser settings. Every major browser lets you clear cookies for a specific site, block third-party cookies, or refuse cookies entirely, and most offer a private or incognito mode that discards them when the window closes.

Disabling strictly necessary cookies will prevent you from signing in and may stop the Service from functioning properly. Disabling preference cookies will reset your interface choices on each visit. Clearing cookies does not delete the records stored in your ERPat account.

9.Changes & How to Contact Us

We may update this Cookie Policy to reflect changes in the technologies we use or in legal requirements. We will revise the “Last Updated” date above and, for material changes, provide reasonable notice. Questions about cookies, or a request to exercise your rights, can be sent to:

ERPat — BytesCrafter IT Solutions

This Cookie Policy is provided for general informational purposes and as a starting template aligned with the Philippine Data Privacy Act of 2012. It does not constitute legal advice. We recommend review by a qualified Data Protection Officer or legal counsel to reflect the technologies actually deployed on your instance.

Experience the power of innovation built for your business efficiency today!

Level up your operations with a system built for growth and efficiency.