It’s time to talk about cookies.
No, not the warm, gooey, chocolate chip cookies you bake in an oven.
We’re talking about internet cookies, also known as HTTP cookies, browser cookies, web cookies, or simply “cookies”.
You’ve likely seen website pop-ups or messages stating “This website uses cookies. Allow necessary cookies.”
What does this mean? Should you allow cookies? What are the risks? How do you enable them? How do you clear them?
In this guide, we’ll cover everything you need to know about cookies. So grab a cold glass of milk and let’s dive in.
What are cookies on the internet?
Cookies are small data files created by websites and stored on your computer or device by your web browser. These files help websites recognize and remember you as you navigate the site, enhancing the overall user experience.
Cookies serve various purposes, including personalizing content, tracking your preferences, and enabling website functionality. For instance, when you log into an online platform, a cookie saves your login details. This allows for a seamless browsing experience as you move from one page to another without needing to re-enter your credentials.
This is made possible by the web browser sending the stored cookie back to the website's server each time you access the site, ensuring your preferences and information are consistently applied.
Beyond personalization, cookies also play a vital role in online advertising. Advertisers use cookies to collect information about your browsing habits and interests, enabling them to deliver targeted ads that are more likely to appeal to you. This process, known as behavioral advertising, can lead to a more relevant and tailored online experience for you.
There are different types of cookies, including session cookies and persistent cookies. Session cookies are temporary and are deleted once you close their browser, while persistent cookies remain stored on your device for a fixed period or until they are manually deleted.
Some cookies, like first-party cookies, originate from the website a user is visiting, while third-party cookies are generated by other websites or services integrated into the site being visited. Each type of cookie has its own specific function and duration, but all contribute to your overall experience on the internet.
Why are they called cookies?
The term "cookies" originates from the programming concept of "magic cookies," which were packets of data containing messages. This name was likely inspired by fortune cookies, which reveal hidden messages inside their crisp shells.
The concept of magic cookies existed in computer programming before they were applied to the web. In programming, magic cookies functioned as tokens or identifiers that were passed between different parts of a system to maintain state or convey information.
The transition of this concept to the internet happened in 1994 when Lou Montulli, a computer programmer and an early Netscape employee, needed a way to maintain the state between the web server and the user's browser.
Montulli's solution to this problem was to create small pieces of data, similar to magic cookies, that could be exchanged between the browser and the server. These browser cookies would store information on the user's computer, allowing the server to identify and remember the user during their interaction with a website.
This invention proved to be a vital component in the development of the modern web, enabling features such as personalized content, e-commerce shopping carts, and user authentication.
Since then, internet cookies have evolved in terms of functionality and complexity, but their core purpose remains the same. The name "cookies" pays homage to their programming roots as magic cookies and reflects the essence of their role in storing and transmitting information between web servers and your browsers.
What are cookies used for?
Cookies are primarily used for maintaining user sessions, personalizing user experiences, and tracking user behavior on the internet. These small data files enable websites to identify and remember you, providing a more seamless and customized browsing experience.
User sessions
If you allow cookies, websites can associate your activity with you by assigning a unique identifier. This identifier enables the website to maintain your session across multiple pages and requests.
When you log into an account, a session cookie is created. This lets you navigate the site without having to log in again each time you visit the site. This makes your browsing experience smoother with fewer interruptions.
Personalization
Cookies help websites remember your actions and preferences, enabling a tailored experience based on your interests and browsing habits. By storing data such as language settings, location, or previously viewed items, cookies allow websites to present relevant content and suggestions.
This level of personalization can significantly enhance your interaction with a website, making it more engaging and efficient.
Tracking
Cookies can be used to monitor and record your behavior on the internet, including the websites you visit and the content you interact with. This information is often used by advertisers to deliver targeted advertisements based on your interests and online activity.
Tracking cookies can be either first-party, originating from the website being visited, or third-party, which are generated by other websites or services integrated into the visited site.
Beyond advertising, tracking cookies are also employed by various analytics services to gather data on your activity, providing valuable insights for website owners to optimize their content and user experience.
Where are cookies stored?
You won’t find these types of cookies in the cookie jar.
Internet cookies are stored on your device within a specific folder or file designated by their web browser. Each browser has its unique method of organizing and storing cookies, but they all maintain them locally on a device.
In most web browsers, cookies are stored in a folder or file that is separate from the browser's cache and other temporary data. For instance, Google Chrome saves cookies in a file named "Cookies" within the user's profile folder.
To access and manage cookies in
Chrome
, you can navigate to the browser settings, click on "Privacy and security," and then select "Cookies and other site data." This section provides options to view, manage, and delete stored cookies.
Safari, Apple's web browser, also stores cookies on the user's device, albeit with a different approach than other browsers. In Safari, cookies are stored within the user's Library folder, in a file named "Cookies.binarycookies."
To manage cookies in
Safari
, click on "Safari" in the menu bar, then select "Preferences". Then, navigate to the "Privacy" tab. From there, you can choose to block or allow cookies from specific websites or all websites, as well as delete stored cookies.
The management process in Safari reflects Apple's emphasis on user privacy and control, offering you the flexibility to customize your cookie preferences and browsing experience.
In
Firefox
, cookies are stored in a file called "cookies.sqlite" within the user's profile folder. You can manage cookies in Firefox by clicking the menu button, selecting "Settings," and navigating to "Privacy & Security."
Under the "Cookies and Site Data" section, you can view and manage stored cookies or clear them altogether.
Microsoft Edge
stores cookies in a folder named "Cookies" under the user's profile as well. If you need to manage cookies in Edge, you can click the three-dot menu button, select "Settings," and then choose "Privacy, search, and services." The "Cookies and site data" section offers options to view, manage, and delete cookies.
Although the specific location and management process for cookies may vary between browsers, the general concept remains the same: cookies are stored locally on a user's device within files or folders designated by the web browser being used.
This storage allows browsers to easily access and transmit cookies when needed, enabling a smoother and more personalized browsing experience.
Types of cookies
While chocolate chip, snickerdoodles, and oatmeal raisin cookies might be scrumptious treats, the internet is home to a different kind of cookie. In the digital realm, the main types of cookies are session cookies, persistent cookies, authentication cookies, tracking cookies, and zombie cookies.
Session cookies
These temporary cookies are essential for maintaining your session on a website. They are created when you access a site and are deleted once you logs out or close your browser. With no expiration date, session cookies enable a seamless browsing experience by keeping track of your activity and preferences within a single session.
Persistent cookies
Unlike session cookies, persistent cookies have a set expiration date and remain in your browser until that date or until they are manually deleted. These cookies store your preferences and settings, allowing websites to remember you and provide personalized content during subsequent visits.
Authentication cookies
These cookies are crucial for managing your sessions, particularly for secure websites requiring login credentials. When you log in, an authentication cookie is generated, associating your account information with a unique identifier string. This ensures that sensitive data is delivered only to the correct user sessions, maintaining privacy and security.
Tracking cookies
Generated by tracking services, these cookies monitor your activity and behavior across websites. They record browsing habits and send this information back to the tracking service when you visit a site that utilizes the same service. Advertisers often use tracking cookies to deliver targeted ads based on your interests and online activity.
Zombie cookies
Much like their namesake, zombie cookies have a knack for coming back to life after being deleted. These cookies create backup versions of themselves in locations outside the browser's typical storage area, allowing them to reappear after deletion. While some unscrupulous ad networks employ zombie cookies, they are also used by cyber attackers, making them a potential privacy and security concern.
By understanding the different types of cookies and their functions, you can better navigate the digital world and make informed decisions about managing your online privacy and browsing experience.
Should you allow cookies?
Deciding whether to allow cookies depends on the context and the specific website you are visiting. It's generally safe to accept cookies on reputable websites, but you should exercise caution on unfamiliar or unsecured sites. Understanding when to allow or reject cookies can help you maintain your online privacy and security.
Reputable and secure websites
On well-known and secure websites (those with HTTPS or a lock symbol in the URL), allowing cookies can enhance your browsing experience by remembering your preferences and providing personalized content. In these cases, cookies are typically harmless and can improve usability.
Unfamiliar or unsecured websites
If a website seems sketchy or lacks proper security measures (no HTTPS or lock symbol), it's best to avoid accepting cookies. Unsecured sites may use cookies to collect your data for malicious purposes or expose your information to third-party hackers.
Third-party cookies
Some websites request permission to use third-party cookies, which could result in your data being sold to unknown entities. In these cases, it's wise to decline third-party cookies to protect your privacy and avoid unwanted solicitations.
Sharing private data
When entering sensitive information such as your social security number or banking details, consider declining cookies to minimize the risk of identity theft or credit card fraud.
Antivirus warnings
If your antivirus software flags a website or its cookies as suspicious, heed its warning and refrain from accepting cookies on that site.
Storage space
Keep in mind that cookies occupy storage space on your device. Accepting all cookies could slow down your device's performance. Regularly clearing cookies can help mitigate this issue and maintain your device's speed.
By being mindful of the situations in which you allow or reject cookies, you can better safeguard your online privacy and security while still enjoying a smooth and personalized browsing experience.
Want more web security tips? Check out the Makios blog for helpful insights about online security, web tricks, and more!







