Cookie Policy
Effective 2026-04-27. This is a plain-language summary written by the founder; it is not legal advice. For binding interpretation, consult a lawyer in your jurisdiction.
We use a minimal set of cookies. None track you across the web. None are used for advertising.
Strictly necessary
- Supabase auth tokens (HttpOnly cookies): keep you signed in across page loads. Cleared on sign-out.
- CSRF tokens: required for Server Actions and form posts.
Optional
- Theme preference: saved locally if you change the UI theme. Currently dark-only, so this isn't in use.
- Analytics (when enabled): Plausible or PostHog first-party analytics with no cross-site tracking. Opt-in only via banner.
Managing cookies
Browsers let you block all cookies, but the strictly-necessary set is required to sign in. Use the cookie banner to opt out of analytics.