LEGAL · COOKIE POLICY · DRAFT v0.1

Cookie Policy

DRAFT FOR LAWYER REVIEW — this document is pending final legal review and is not yet in force.

Founder-prepared draft for fixed-scope counsel review before publication. Not legal advice. Bracketed [FIELDS] are placeholders.

LAST UPDATED: [MON 20XX] · VERSION 0.1 (DRAFT)

01 — In short.

We set one functional cookie to keep you signed in. No analytics run unless you accept them. No advertising or cross-site trackers — ever.

02 — Cookies we set.

  • kimi_sidStrictly necessary. Functional session cookie set when you sign in with an email link: you request a one-time, 15-minute HMAC-signed link (delivered by our email provider, Resend), and opening it sets this session cookie (HttpOnly, Secure, SameSite). Without it, signed-in areas cannot function. Duration: 30 days, or until you sign out.

04 — Preference storage (not cookies).

Your consent choice, dismissed announcements, and checklist state are stored in your browser's localStorage (eudr-cookie-consent and related keys). They never leave your browser and are not used to identify you.

05 — What we do not use.

No advertising cookies, no retargeting pixels, no social-media trackers, no fingerprinting, no cross-site tracking of any kind.

06 — Managing your choice.

Reopen the consent card any time via "Cookie settings" in the footer, or clear site data in your browser. You can also withdraw analytics consent at any time — see the Privacy Policy for how to reach us.

07 — Contact.

Questions: [privacy email]. See also the Privacy Policy for the wider GDPR picture, including your rights.