1. What Cookies Are
Cookies are small text files stored on your device when you visit a website. They allow the site to recognise your browser between requests. We also use functionally similar technologies — local storage, session storage and HTTP headers — and refer to all of them collectively as "cookies" in this policy.
2. The Categories We Use
Strictly necessary — authentication session, CSRF token, language preference. Cannot be disabled without breaking the service.
Functional — UI preferences (sidebar collapsed, chart granularity), recently-viewed picks.
Analytics — anonymous, aggregated usage data so we can understand which features are working. Off by default outside of authenticated, opted-in sessions.
Marketing — not used. We do not run ad-network pixels.
3. Your Consent & Controls
On first visit you can accept, reject, or customise non-essential cookies. You can change your choice anytime in Settings → Privacy.
You can also clear cookies via your browser. Doing so will sign you out and reset preferences.
4. Third-Party Cookies
Stripe sets cookies during checkout for fraud prevention — strictly necessary for processing payments. Cloudflare sets a session cookie for DDoS mitigation. We do not embed Facebook, Google Analytics, TikTok or any advertising pixels.
5. Changes
Material changes will be flagged in-product. Continued use after the effective date constitutes acceptance.
