What Are Cookies?
Cookies are small pieces of data transmitted from a web server to a web browser; it is stored on a local hard drive such that the web server can later read back the cookie data from a web browser. They allow a website to recognize a user’s device and remember user’s preferences.
Why Do We Use Cookies?
The Bank of East Asia, Limited (The Bank) uses cookies to gather and store the choices and preferences user has made in The Bank’s website. A more personalized and unique banking experiences can be created for user after using cookies. The Bank does not gather or share any personal information through cookies on our website.
Cookies Categories
The cookies we use can be classified in one of the following categories:
- Strictly Necessary Cookies are required for the operation of our website.
- Performance Cookies monitor website performance and collect anonymous data on how visitors use a website. These cookies provide information to help improve how a website works.
- Functionality Cookies are used to remember user preferences so that the website can be customized for them.
- Targeting or Advertising Cookies are used to target advertisements to the interests of users, based upon previous web browsing activity.
How Long Do Cookies Last?
Both session cookies and persistent cookies are used in The Bank’s website. Session cookies are stored in user’s browser temporarily and they will be erased automatically after user closing the browser. Persistent cookies are retained in user’s browser for a period of no longer than 3 years unless user removes them from the browser.
What Cookies Are We Using?
HKBEA Corporate Website
| Name | Purpose | Category | Type | 
| BEACOOKIEKEYFORWHP | Collect aggregated information for statistical and evaluation purposes. | Performance | Persistent | 
| TS* | Generated by Web Application Firewall (WAF) to maintain the state of the session. | Strictly Necessary | Session | 
| _ga | Used by Google Analytics to gather information, which helps The Bank to understand how visitors interact with The Bank’s website to improve the structure of the website. | Performance | Persistent | 
| _ga_* | 
| _gid | 
| _gat* | 
| cookieConsent | Used to record if a user has accepted the use of cookies on The Bank’s website. | Strictly Necessary | Persistent | 
| incap_ses_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Session | 
| nlbi_* | 
| visid_incap_* | Persistent | 
| BEACookie | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| _gcl_au | Used by Google AdSense for experimenting with advertisement efficiency. | Targeting / Advertising | Persistent | 
| _fbp | Used by Facebook to deliver, measure, and improve the ads relevance. | Targeting or Advertising | Persistent | 
| fr | 
| sb | 
| JSESSIONID | Provide session security, and ensure all requests are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| UnitTrusts | Used to record if a user has accepted the disclaimer to read materials prepared by BEA. | Strictly Necessary | Persistent | 
| ecoResearch | 
 
Cyberbanking Services
| Name | Purpose | Category | Type | 
| Channel | Identify the computer or device used by the user, to optimize the cyberbanking service interface. | Strictly Necessary | Session | 
| JSESSIONID | Provide session security, and ensure all requests are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| LBPERSIST | Used to maintain the connection between users and cyberbanking. | Strictly Necessary | Session | 
| iBankTestCookie | Identify if the user browser has enabled the Cookies feature | Strictly Necessary | Persistent | 
 
"BEA SmarTrade" Securities Trading Services
| Name | Purpose | Category | Type | 
| vertx-web.session | Provide session security, and ensure all requests received are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| JSESSIONID | Provide session security, and ensure all requests received are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| CMS_session_name | Provide session security, and ensure all requests received are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| visid_incap_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Persistent | 
| incap_ses_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Session | 
| TS* | Generated by Web Application Firewall (WAF) to maintain the state of the session. | Strictly Necessary | Session | 
| _ga | Used by Google Analytics to gather information, which helps The Bank to understand how visitors interact with The Bank’s website to improve the structure of the website. | Performance | Persistent | 
| _gid | Persistent | 
| _gat* | Session | 
| sensorsdata2015jssdkcross | Used to tag user triggered events and actions. | Functionality | Session | 
 
Cybertrading Services
| Name | Purpose | Category | Type | 
| Session-Cookie | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| JSESSIONID | Provide session security, and ensure all requests received are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
| *_ACTIVATETIME | Used to record session active time for the account login. | Strictly Necessary | Session | 
| *SYSLANG | Used to store language preferences, and to serve content in the stored language. | Strictly Necessary | Session | 
| TS* | Generated by Web Application Firewall (WAF) to maintain the state of the session. | Strictly Necessary | Session | 
| cookieConsent | Used to record if a user has accepted the use of cookies on The Bank’s website. | Strictly Necessary | Persistent | 
| incap_ses_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Session | 
| visid_incap_* | Persistent | 
| ASP.NET_SessionId | Used by AASTOCKS for user credentials authentication. | Strictly Necessary | Session | 
| teletext | Use by AASTOCKS for Service entitlements authentication. | Strictly Necessary | Session | 
| EASC_Login | 
 
Document Upload Services
| Name | Purpose | Category | Type | 
| TS* | Generated by Web Application Firewall (WAF) to maintain the state of the session. | Strictly Necessary | Session | 
| cookie_persist_session | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| BEACookie | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| cookieConsent | Used to record if a user has accepted the use of cookies on The Bank’s website. | Strictly Necessary | Persistent | 
| incap_ses_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Session | 
| nlbi_* | 
| visid_incap_* | Persistent | 
| JSESSIONID | Provide session security, and ensure all requests are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
 
Bonus Gallery
| Name | Purpose | Category | Type | 
| TS* | Generated by Web Application Firewall (WAF) to maintain the state of the session. | Strictly Necessary | Session | 
| cookie_persist_session | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| cookieConsent | Used to record if a user has accepted the use of cookies on The Bank’s website. | Functionality | Persistent | 
| incap_ses_* | Used by Imperva to prevent denial-of-service (DDoS) attacks. | Strictly Necessary | Session | 
| nlbi_* | 
| visid_incap_* | Persistent | 
| BEACookie | Ensure incoming network traffics or requests are efficiently distributed across our servers. | Strictly Necessary | Session | 
| JSESSIONID | Provide session security, and ensure all requests are submitted by user who has already been authenticated. | Strictly Necessary | Session | 
 
How Do I Disable Cookies?
The browsers of most computers, smartphones and other web-enabled devices are typically set up to accept cookies. If you wish to amend your cookie preferences for The Bank’s website, you can do this through browser settings. However, you may not be able to use some of the features on our website or access our Cyberbanking services without cookies.