Hulo Global Support

HULO Global Limited

Cookies and browser storage

The website and application storage used for security, sign-in and display preferences.

Last updated: 13 September 2026

HULO Global Limited uses browser storage and security technologies to deliver its websites and PayrollOS. A cookie is a small value stored by your browser; local storage is another way a site remembers information on your device.

HULO Global website

The contact form uses Cloudflare Turnstile to distinguish human enquiries from automated abuse. Cloudflare processes technical request and browser information to perform the check. Cloudflare’s security services may use challenge or bot-protection cookies when the applicable protection is triggered. These are used to protect the requested website or form, rather than to advertise to you.

Examples of conditional Cloudflare cookies are cf_clearance, which records a successful security challenge, and __cf_bm, which supports bot detection and expires after 30 minutes of inactivity. A particular visit may not set either cookie. The exact challenge lifetime depends on the website’s security configuration. Cloudflare explains its cookies and their purposes.

The HULO Global company homepage and PayrollOS information pages do not currently install advertising or audience-analytics trackers. If that changes, we will explain the technology and obtain consent where required before it is used. The separate Vendure plugin licensing service has its own cookie information.

PayrollOS application

The application uses a session cookie to keep you signed in and a request-protection cookie to help prevent another website from making unauthorised changes through your browser. These are needed for the account service you request. Cookie names are specific to each deployment to keep authentication separate.

The session ends when you sign out, it is revoked or it expires. Browser-close and server-side inactivity controls also apply; restoring a browser session does not override the server’s access controls. The request-protection cookie can remain after you sign out but does not itself grant access to an account.

The application stores theme, contrast and motion preferences in local storage under payrollos.ui.preferences. These preferences remain until replaced or cleared through your browser. The application does not put sign-in tokens or payroll records in this preference entry.

Your controls

Your browser can show, block and delete cookies and site storage. Deleting application cookies signs you out or requires the site to set fresh request-protection values. Blocking necessary storage can prevent sign-in or the contact form from working. Clearing local storage resets saved display preferences.

For an alternative to the contact form, email [email protected]. If you follow a link to HMRC, Companies House or Stripe, their sites provide their own cookie information.

See our privacy notice and PayrollOS privacy notice for how personal information is used. Questions can be sent to [email protected].