Cookies
Last updated August 25, 2026
This is the complete list. It is shorter than most because we do not run analytics, advertising, or third-party scripts.
| Cookie | Purpose | How long |
|---|---|---|
sb-*-auth-token | Keeps you signed in. Set by Supabase, our login provider. Without it you would be signed out on every page | Until you sign out or it expires |
Why there is no cookie banner
A consent banner exists so you can refuse cookies that are not essential. We do not set any. The cookie above is required for signing in to work at all, which is the one category that does not need consent under the GDPR and similar laws.
Showing you a banner today would be asking permission for something we are not doing.
We do use error reporting
When something on the site breaks, the error is sent to a service called Sentry so we find out about it. That is not a cookie and it does not store anything on your device, which is why it does not appear in the table above and why there is nothing here to consent to.
We turned off the setting that would have sent your IP address, your cookies and your email with each report, and we strip email addresses out of the error text before it is sent. Reports are deleted after 90 days. The privacy policy describes it alongside every other company that handles your data.
If we add analytics, you will get a real choice before anything runs, and refusing will be exactly as easy as accepting. The same goes for any error tool that records what you did on a page rather than just what broke.
What we do not use
- No advertising or marketing pixels
- No analytics or session recording
- No social media embeds or share buttons that phone home
- No cross-site tracking of any kind