Back to home
Version dated 13.07.2026

Cookie Policy of the “Virola” service

This Policy explains which cookies and similar technologies are used on the virola.pro website when using the “Virola” online video generation service, for what purpose, on what legal basis, and how the User can manage them.

1. General provisions

1.1. This Cookie Policy (the “Policy”) is an integral part of the documents governing the operation of the virola.pro website (the “Website”) and the “Virola” online service (the “Service”), and applies together with the Privacy Policy and the User Agreement (offer).

1.2. The operator of the data obtained via cookies is the Administration of the “Virola” Service (the “Operator”, “we”). Full details of the Operator: [Operator's details to be inserted].

1.3. The Policy has been prepared in accordance with Federal Law No. 152-FZ of 27.07.2006 “On Personal Data”, Federal Law No. 149-FZ of 27.07.2006 “On Information, Information Technologies and Information Protection” and other applicable rules of the legislation of the Russian Federation.

1.4. By using the Website (continuing to browse pages, signing in, performing actions in the Service's interface), the User confirms that they have read this Policy. The legal grounds for using specific categories of cookies are set out in section 8.

2. What cookies and similar technologies are

2.1. Cookies are small text files that the Website stores in the User's browser or on their device when visiting the Website. On subsequent visits, the browser returns these files to the Website, allowing it to recognize the User's session, save their settings and ensure the correct operation of the Service.

2.2. “Similar technologies” means other means of local storage and identification performing functions similar to cookies, including: browser local storage (localStorage, sessionStorage), web beacons (pixels), and identifiers used by third-party analytics and payment services.

2.3. For the purposes of this Policy, the term “cookies” covers both cookies proper and the similar technologies specified in clause 2.2, unless expressly stated otherwise.

2.4. Cookies are not malware, do not execute program code and by themselves do not identify the User's identity. In some cases, cookie data combined with other information may qualify as personal data — in that respect its processing is governed by the Privacy Policy and Federal Law No. 152-FZ.

3. Categories of cookies used by the Service

3.1. The Service uses three categories of cookies, differing in purpose and in whether they can be disabled:

  • 3.1.1. Strictly necessary (technical) cookies — ensure the basic operation of the Website: sign-in, maintaining the user session, security and protection against unauthorized access. The Service cannot function without them. They cannot be disabled via the Website's interface; they are set out of technical necessity to provide the service requested by the User. This category includes, in particular, the virola_session session cookie.
  • 3.1.2. Functional cookies — store user settings and preferences (interface language, default AI avatar, interface element state, acknowledgment of this Policy), improving the convenience of using the Service. They may be disabled, but this may limit certain conveniences.
  • 3.1.3. Analytics (statistical) cookies — help understand how Users interact with the Website (page traffic, referral sources, behavior in the viral video feed, errors) in order to improve the quality and stability of the Service. They are set with the User's consent and can be disabled.

4. List of specific cookies and their purpose

4.1. Below is a list of the main cookies with their category, purpose and retention period. Names and periods may be refined as the Service evolves; up-to-date information is always available in this Policy.

  • virola_session — category: strictly necessary. Purpose: identifying the User's signed-in session, maintaining access to the account, protection against session hijacking. Duration: session (deleted on sign-out or when the browser is closed).
  • virola_auth / token — category: strictly necessary. Purpose: confirming authentication and securely extending the session without re-entering credentials. Duration: until the sign-in session expires.
  • virola_csrf — category: strictly necessary. Purpose: protecting forms and requests against cross-site request forgery (CSRF). Duration: session.
  • virola_prefs — category: functional. Purpose: storing selected interface settings (language, default avatar, display parameters). Duration: up to 12 months.
  • virola_cookie_consent — category: functional. Purpose: recording the fact and parameters of the User's consent to the use of cookies so as not to ask again. Duration: up to 12 months.
  • Analytics identifiers (incl. _ga, _ga_*, _ym_uid, _ym_d and similar) — category: analytics (third-party). Purpose: collecting anonymized traffic and behavior statistics on the Website via external analytics systems. Duration: from a few minutes to 24 months depending on the specific file and provider settings.
  • Payment provider cookies — category: strictly necessary for payment. Purpose: secure processing of token package payments, protection of the payment transaction against fraud. Duration: determined by the payment provider.

5. Third-party cookies

5.1. Some cookies are set not by the Operator but by third-party services integrated into the Website. Such cookies are processed in accordance with the policies of the respective providers.

5.2. Web analytics systems. External analytics services (for example, Yandex Metrica, Google Analytics or similar) are used to collect anonymized statistics about Website usage. They set their own cookies and may collect visit information in anonymized form. The processing of such data is governed by the policies of the respective providers.

5.3. Payment provider. When purchasing a token package, payment is processed via an external payment service (for example, Stripe, YooKassa or similar). The payment provider may set technical cookies necessary for securely processing the transaction and preventing fraud. The Operator does not receive or store the User's full payment details (card numbers, security codes).

5.4. Publishing to social networks. When using the feature of publishing a finished video to external platforms (Reels/Shorts/TikTok), interaction occurs with the services of the respective platforms, which use their own cookies and technologies according to their own rules. The Operator does not control the composition and purpose of such third-party cookies.

5.5. The Operator is not responsible for the data processing policies of third-party services and recommends that the User read the documents of the respective providers.

6. Cookie retention periods

6.1. The retention period of cookies depends on their purpose and category:

6.2. Session cookies are stored only for the duration of the current session and are automatically deleted on sign-out or when the browser is closed.

6.3. Persistent cookies remain on the device for the period set for each file (typically from a few days to 24 months) or until manually deleted by the User.

6.4. Upon expiry of the retention period, cookies automatically cease to be effective. On a repeat visit to the Website, the respective cookies may be set again subject to the User's current consent.

6.5. Specific periods for the main files are given in section 4. Retention periods of third-party cookies are determined by their providers.

7. Managing and disabling cookies

7.1. The User may manage cookies at any time and withdraw previously given consent to the use of non-essential categories.

7.2. Managing via the banner/Website settings. On the first visit to the Website, the User may be offered a choice regarding functional and analytics cookies. A previously made choice can be changed by deleting the virola_cookie_consent cookie or by using the relevant settings section, if available in the interface.

7.3. Managing via the browser. Most browsers allow viewing, restricting and deleting cookies, as well as blocking their installation. The relevant settings are usually found in the “Settings”, “Privacy and security” or “Cookies and site data” sections. Instructions are available in the help materials of the browser used (Google Chrome, Mozilla Firefox, Safari, Microsoft Edge, Yandex Browser, etc.).

7.4. Consequences of disabling. Disabling strictly necessary cookies (including virola_session) will make sign-in and correct operation of the Service impossible: you will not be able to access the account, launch a video generation or make a payment. Disabling functional cookies will result in the loss of saved settings (language, selected avatar, etc.). Disabling analytics cookies does not affect the availability of the Service but limits our ability to improve it.

7.5. Deleting cookies does not withdraw the consent to personal data processing given under the Privacy Policy; the procedure for withdrawing such consent is governed by that Policy and Federal Law No. 152-FZ.

8. Legal basis for using cookies

8.1. Strictly necessary (technical) cookies are used on the basis of the Operator's legitimate interest and the need to perform the contract (offer) for providing the Service requested by the User. Their installation does not require separate consent, since the service is technically impossible without them (Art. 6, Art. 10 of Federal Law No. 149-FZ; Art. 6 of Federal Law No. 152-FZ).

8.2. Functional and analytics cookies are used on the basis of the User's consent, expressed by continuing to use the Website after notification and/or by confirming a choice in the interface. Consent may be withdrawn in accordance with section 7.

8.3. To the extent that cookie data qualifies as personal data, it is processed in accordance with Federal Law No. 152-FZ on the grounds provided for by the Service's Privacy Policy.

8.4. The use of information technologies, including cookies, is carried out in compliance with the requirements of Federal Law No. 149-FZ.

9. Changes to the Policy

9.1. The Operator may amend this Policy in connection with changes in legislation, the set of technologies used or the way the Service operates.

9.2. The current version of the Policy is posted on the Website at a permanent address with the date of the latest update indicated. Changes take effect from the moment of publication, unless otherwise stated in the Policy itself.

9.3. Continued use of the Website after publication of a new version constitutes the User's consent to the changes made. The Operator recommends reviewing this Policy periodically.

10. Contacts

10.1. For matters relating to the use of cookies, personal data processing and this Policy, the User may contact the Operator at: admin@hcohoco.com.

10.2. The Operator's details for official correspondence: [Operator's details to be inserted].

10.3. Inquiries are reviewed within the deadlines established by the legislation of the Russian Federation, including Federal Law No. 152-FZ.

Questions about this document: admin@hcohoco.com