iRota Policy for the use of Cookies
This policy applies to the iRota software service accessed through your organisation's application address at https://{client}.myirota.co.uk. It does not cover our public marketing websites, which have separate website cookie arrangements.
The service is provided by Gillett Limited, company number 11259154, Aizlewood’s Mill, Nursery Street, Sheffield S3 8GG, UK. In this policy, 'we', 'us' and 'our' mean Gillett Limited, and 'your organisation' means the organisation providing you with access to iRota.
A cookie is a small file stored on your computer or device by your browser. Similar technologies, such as local storage and session storage, can also store information on your device. This policy covers those technologies where used by the service.
HOW DOES OUR SERVICE USE COOKIES?
iRota uses first-party cookies to deliver the service to authenticated users. These cookies support signing in, continuity of your session and authentication security. iRota also uses a persistent cookie to recognise an authenticated browser as part of two-factor authentication where enabled. The service does not use analytics services, embed advertisements or use third-party cookies.
We use the cookies listed below only to provide the service and its authentication security. We rely on the strictly necessary exception under the Privacy and Electronic Communications (EC Directive) Regulations 2003, as amended, for these purposes. Where information processed through these cookies is personal information, the UK GDPR and the Data Protection Act 2018, as amended, also apply.
Using the service does not, by itself, constitute consent to optional cookies or tracking technologies. If we introduce technologies requiring consent, we will explain their purposes and obtain consent before using them.
SESSION COOKIES
Our session cookies support logging in and identifying you during your browsing session. They are temporary and are normally removed when you close your browser. Browser session-restoration settings may affect how long they remain available. Cookie duration is distinct from the service's sign-in and inactivity timeouts.
PERSISTENT COOKIES AND SIMILAR STORAGE
Persistent cookies remain until their configured expiry or until deleted. The inventory below describes the cookies used, their purposes and their duration.
For iRota, the remembered-browser cookie contains a random identifier and expires one year after your last visit. A further visit before expiry refreshes that period. When using a new device or browser, you may need to confirm your identity using an email/PIN.
WHAT COOKIES DOES OUR SERVICE USE?
The following first-party cookies are used by the iRota service. The persistent authentication cookie applies where the relevant two-factor authentication feature is enabled.
| Cookie or storage name | Provider and domain | Purpose | Duration or removal conditions | Consent requirement |
|---|---|---|---|---|
ASP.NET_SessionId | Gillett Limited; iRota service at {client}.myirota.co.uk | Identifies the user during a single service session | Session; normally removed when the browser closes | No consent required for the strictly necessary session purpose |
.ASPXAUTH | Gillett Limited; iRota service at {client}.myirota.co.uk | Identifies the user after successful sign-in | Session; normally removed when the browser closes | No consent required for the strictly necessary authentication purpose |
ID-{SITE}-{GUID} | Gillett Limited; iRota service at {client}.myirota.co.uk | Recognises the authenticated browser as part of two-factor authentication, where enabled | One year after the last visit; refreshed by a further visit before expiry | Used for authentication security under the strictly necessary exception |
CONTROL
You can use your browser settings to view, block or delete cookies and other stored website data. Blocking technologies required for authentication or session management may prevent you from signing in or using the service. Deleting stored information may require you to sign in again.
There are no optional-cookie controls within iRota because the service uses only the necessary cookies described above. Your organisation's administrator can help with questions about access to the service.
FURTHER INFORMATION
For questions about this policy, contact privacy@gillett.co.uk, or write to Gillett Limited, Aizlewood’s Mill, Nursery Street, Sheffield S3 8GG, UK.
For information about personal information processed within the service, read the iRota Privacy and Consent Statement and Data Processing Addendum, alongside your organisation's own privacy information.
We will review this policy annually and when changes to the service affect its cookies or similar technologies. The current version will be available with our service privacy information.