Privacy
Last revised 2026-09-09
- 01
The short version
You can read every page on this site without giving us anything, and we have built it so that we could not identify you if we wanted to. We embed no third-party analytics, no advertising or social scripts, and sell nothing to anyone. We do count page views — on our own server, in a way described below that stores nothing on your device and cannot be traced back to you.
One thing does get stored, and only if you ask for it: saving a piece needs somewhere to keep the list. That is the next clause, and it is the only cookie on the site.
- 02
Saved pieces, and the one cookie
If you put a piece aside with the bookmark button, we set a cookie named ls_id. It holds one randomly generated identifier — nothing derived from you, your device or your browsing — and it is what lets the server hand your list back to you on your next visit. It lasts a year from the last time you touch the list.
Against that identifier we store the pieces you saved: the piece as it was on the day you saved it, when you saved it, whether you have marked it as bought, and — if you press re-check — what the shop said about it and when we asked. Nothing else, and nothing that says who you are.
Re-checking is done by our server, not your browser, so the shops see a request from us and learn nothing about you from it.
- Nothing is set until you save something. Reading the site sets no cookie at all, which is why there is no cookie banner: this one is strictly necessary for a feature you asked for.
- The list lives on this browser. Clear your cookies and it is gone from your side, and unreachable from ours.
- We delete lists nobody has returned to for eighteen months, together with the identifier.
- It is not used to track you — not across sites, not across sessions for any purpose but this, and never for advertising.
The legal basis is your request for the feature; under the ePrivacy rules a cookie strictly necessary to provide a service the user asked for needs no consent, and under the GDPR the processing rests on our legitimate interest in providing it (Art. 6(1)(f)).
- 03
How we count readers
We need to know roughly how many people read the site, which pieces they open and which brands they go on to visit — otherwise there is no way to tell whether any of this is worth doing. That counting happens on our own server, from the requests it already has to answer.
It sets nothing on your device. No analytics cookie, no localStorage, no identifier that comes back to you and no script from anyone else. Nothing about your visit leaves our server.
For each page view we record the time, the page (without its query string, so a search you typed is never kept), the language, whether the request came from a phone or a computer, the referring site’s domain — the domain only, never the full address — and any campaign tag in the link you followed.
- To tell one reader from two we derive a short one-way code from your IP address and browser, under a secret that is generated fresh every midnight and never written down. Your IP address itself is never stored. Because the secret is gone the next day, the code cannot be reversed, cannot be matched to you, and cannot be linked to yesterday’s or tomorrow’s visits.
- When you follow a link out to a brand, the page tells our own server which piece you clicked — the piece, and nothing about you. The link itself is unchanged and still goes straight to the brand: nothing is routed through us, and no identifier, tag or referral code travels with you.
- These records are deleted after thirteen months.
- If your browser sends a “Do Not Track” or Global Privacy Control signal we honour it, and it is a real opt-out: nothing about the visit is recorded at all — no page view, no code, no row. You are not counted, rather than counted more vaguely.
Because nothing is stored on or read from your device, this needs no consent under the ePrivacy rules, which is why the site has no cookie banner. It meets the conditions the French CNIL and the German data protection authorities set for audience measurement that is exempt from consent: first-party, for our own use only, never cross-referenced with other data, never shared with anyone and kept no longer than thirteen months. Under the GDPR the basis is our legitimate interest in understanding how the site is used (Art. 6(1)(f)).
- 04
What we do not collect
- No user accounts, sign-ups, newsletters or passwords.
- No cookies beyond the one above — none for analytics, none for advertising, none set by anyone but us.
- No third-party analytics, heatmaps, session recording, advertising pixels or cross-site tracking. Nothing about your visit is sent to Google, Meta or anyone else.
- No other browser storage: your filters travel in the page’s URL, not on your device.
- No profiling, no automated decisions about you, and no data resale. Ever.
- 05
What the server unavoidably sees
Serving a page means receiving a request. Our host processes standard server logs — IP address, the page requested, timestamp, browser user-agent, referrer — because a web server cannot answer without them.
We use these only to deliver pages, keep the site up and defend it from abuse. We do not build profiles from them, do not link them to anything else, and do not export them. Under the GDPR the legal basis is our legitimate interest in operating and securing the service (Art. 6(1)(f)). Logs are short-lived and rotated by the host.
- 06
The third parties your browser contacts
Two of them, and it is worth naming both:
- Product images load directly from the brands’ own shops and image servers, so those servers see your IP address and browser. We send no referrer with those requests, so they cannot tell which lagomsale page you were on.
- Typefaces load from Google Fonts, which likewise sees your IP address when it serves the font files. Google’s handling is governed by its own privacy policy.
Hosting is by Railway Corp., served from a datacentre in the Netherlands (europe-west4), acting as our processor.
- 07
When you click through to a brand
Following a link out ends our part entirely. From there you are on the brand’s site under the brand’s privacy policy — and they will very likely use cookies, analytics and the rest. We pass no identifier, no tag and no referral code with you, because there is none to pass.
- 08
If you write to us
An email to [email protected] reaches a mailbox, and we keep the correspondence for as long as it takes to deal with it and a reasonable period after. That is the only place we hold anything you would recognise as your personal data.
- 09
Your rights
Where the GDPR applies you have the right to access, correct, erase, restrict, port and object to the processing of your personal data. In practice there is rarely anything to act on — but if you have written to us, ask and we will do it.
A saved list is the one thing you can act on yourself, and immediately: clearing this site’s cookies severs it from you for good, and removing every piece from the list leaves nothing behind but an identifier that expires on its own.
You can also complain to your national data protection supervisory authority. Requests and questions: [email protected].
- 10
Children
The site is not aimed at children and collects nothing from anyone, including them.
- 11
Changes to this policy
If we ever add something that touches your data — an analytics tool, a newsletter, anything at all — this page changes first, with a new revision date at the top. We do not intend to.
The promise, unabridged
We never hold stock, never take a cut, and never resell your data. Every link goes straight to the brand.