Cookie policy
This cookie policy explains what cookies are, how we use them and what benefits they allow while using our website. This is to be read alongside our privacy policy which can be found here and explains how we use personal information.
If you do not accept our use of cookies please disable them following our guidance below.
A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer if you agree. Cookies contain information that is transferred to your computer's hard drive. Our website uses cookies to distinguish you from other users of our website. This helps us to provide you with a good experience when you browse our website and also allows us to improve our site.
Although this notice refers to the general term ‘cookie’, it also applies to similar tracking technologies that we may use, such as ‘web beacons’, ‘clear GIFs’ and ‘pixel tags’.
You can find out more about cookies at www.allaboutcookies.org.
We may use the following cookies from time to time:
Please note that third parties (including, for example, providers of external services like web traffic analysis services) may also use cookies, over which we have no control. These cookies are likely to be analytical/performance cookies or targeting cookies. You can find out more about how Google stores, uses and manages this data via Google's Privacy and Terms.
The table below provides more information about the cookies we use and why:
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| .AspNetCore.Antiforgery.# | ASP.NET Core | Prevents CSRF attacks by validating secure tokens for form submissions. | Session |
| .AspNetCore.Antiforgery.cdV5uW_Ejgc | ASP.NET Core | Anti-forgery token for secure backoffice actions. | Session |
| .AspNetCore.Mvc.CookieTempDataProvider | ASP.NET Core | Stores temporary data between HTTP requests. | Session |
| BIGipServer~VCC-WEBINFRASTRUCTURE~defaultV10APIPool | F5 BIG-IP | Load balancing for API infrastructure. | Session |
| BIGipServer~VCC-WEBINFRASTRUCTURE~defaultV10UIPool | F5 BIG-IP | Load balancing for UI traffic. | Session |
| BIGipServer~VCC-WEBINFRASTRUCTURE~LDNAPIHbry | F5 BIG-IP | Infrastructure session persistence. | Session |
| BIGipServer# | F5 BIG-IP | Traffic routing and infrastructure balancing. | Session |
| TS# | app.five9.eu | Security and fraud detection routing cookie. | Session |
| CookieConsent | Cookiebot | Stores user cookie consent preferences. | 1 year |
| f-cookies-allowed | gambleaware.org | Stores user cookie consent state. | Session |
| f-cookies-allowed-version | gambleaware.org | Stores consent versioning. | Session |
| f9-chatconsoleR2FtQ2FyZS0gKHRocnUgYmFiYmxlKQ== | Five9 | Live chat session persistence. | Session |
| PING_GamCare-(thru babble)_ | Five9 | Live chat continuity tracking. | Session |
| JSESSIONID | Five9 / Java | Maintains live chat server session. | Session |
| Id_token_hint-76bb35ee-2d93-4ff9-b654-2e9a6b95f94b | Auth provider | Authentication token for login state. | Session |
| SEARCH_SAMESITE | Maintains secure search session consistency. | Session | |
| UMB_MCULTURE | Umbraco CMS | Stores language/culture preference. | 1 year |
| UMB_UCONTEXT | Umbraco CMS | Maintains backoffice session context. | Session |
| UMB-XSRF-TOKEN | Umbraco CMS | CSRF protection token. | Session |
| UMB-XSRF-V | Umbraco CMS | CSRF token validation. | Session |
| remote_sid | YouTube | Required for embedded video functionality. | Session |
| __lotr | gambleaware.org | Internal session state handling. | Session |
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| __cf_bm | Cloudflare | Bot detection and traffic protection. | 30 minutes |
| ak_bmsc | Akamai | Bot management and request validation. | 1 day |
| ar_debug | Meta / Facebook | Debug/testing cookie for integrations. | Session |
| _ScCbts | Snapchat | Conversion and campaign performance tracking. | 1 year |
| _scid | Snapchat | Embedded feature session tracking. | 1 year |
| _scid_r | Snapchat | Retargeting session tracking. | 1 year |
| _sctr | Snapchat | Campaign and A/B testing tracking. | 1 year |
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| _ga | Google Analytics | Core analytics tracking identifier. | 2 years |
| _gid | Google Analytics | Session analytics identifier. | 24 hours |
| _ga_WJC8PG2K3C | Google Analytics | GA4 property identifier. | 2 years |
| _ga_CYY83H5EF6 | Google Analytics | GA4 property identifier. | 2 years |
| _gcl_au | Google Ads | Conversion attribution tracking. | 3 months |
| lo_session | Amazon | Heatmaps and behaviour analytics. | Persistent |
| u_scsid | sc-static.net | Visitor behaviour analytics. | Session |
| _rdt_em | Analytics attribution tracking. | 3 months | |
| _rdt_uuid | Unique visitor analytics ID. | 3 months |
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| APISID | Advertising personalization. | 2 years | |
| HSID | Secure authentication profiling. | 2 years | |
| SAPISID | Identity verification for ads. | 2 years | |
| __Secure-1PAPISID | Ad personalization. | 2 years | |
| __Secure-1PSID | Advertising authentication. | 2 years | |
| __Secure-1PSIDCC | Secure ad session. | 1 year | |
| __Secure-1PSIDTS | Ad session validation. | Session | |
| __Secure-3PAPISID | Cross-site ad profiling. | 2 years | |
| __Secure-3PSID | Cross-site ad targeting. | 2 years | |
| __Secure-3PSIDCC | Secure ad handling. | 1 year | |
| IDE | DoubleClick / Google Ads | Retargeting and ad delivery. | 1 year |
| _gcl_ls | Google Ads | Conversion optimization. | Persistent |
| personalization_id | Twitter/X | Ad personalization. | 2 years |
| guest_id | Twitter/X | Visitor profiling. | 2 years |
| guest_id_ads | Twitter/X | Advertising profiling. | 2 years |
| guest_id_marketing | Twitter/X | Marketing profiling. | 2 years |
| muc_ads | Twitter/X | Promoted content tracking. | 1 year |
| 1/i/adsct | Twitter/X | Conversion pixel tracking. | Session |
| rp.gif | Share button tracking. | Session | |
| _schn1 | sc-static.net | Real-time bidding ID. | 1 day |
| _screload | Snapchat | Ad performance tracking. | Session |
| sc_at | Snapchat | Embedded authentication tracking. | 1 year |
| TDCPM | The Trade Desk | Programmatic ad tracking. | 1 year |
| TDID | Adsrvr.org | Cross-site ad targeting ID. | 1 year |
| u_sclid | sc-static.net | Advertising ID. | Persistent |
| u_sclid_r | sc-static.net | Retargeting ID. | Persistent |
| u_scsid_r | sc-static.net | Advertising profiling ID. | Session |
| lastExternalReferrer | Meta | Referral attribution tracking. | Persistent |
| lastExternalReferrerTime | Meta | Referral timestamp profiling. | Persistent |
| activity# | Ad interaction tracking. |
Our site uses two types of cookies, session and persistent. Session cookies are only stored during your active session with us, upon closing your browser these will be removed from your system. Persistent cookies have a specified lifespan and are not removed from your system upon closing your browser and are kept for future visits.
To find out how to allow, block, delete and manage the cookies on all standard web browsers, please go to About cookies on the Information Commissioner's Office website. If you use a mobile phone to browse our websites or other sites that use cookies, please refer to your handset manual for guidance.
Like many websites, we use Google Analytics to allow us to anonymously track page views across our site, and provide site statistics. These cookies are persistent, and once added to your computer unless removed by yourself, will not be deleted until the end of their lifespan.
Google offers more information on how to safeguard your data.
Last updated: February 2026