Cookie policy
What we actually store
| Name | What it is | Type | Lifetime |
|---|---|---|---|
| Site password cookie | Proves you entered the pre-launch password | Strictly necessary | 30 days |
| Supabase auth token | Keeps you signed in | Strictly necessary | Until sign-out or expiry |
sirin.plan.wanted | Remembers the plan you clicked on the price list, so you are not asked twice | Strictly necessary (session storage) | Until the tab closes |
| Application draft | Lets you resume a half-finished application | Strictly necessary (session storage) | Until the tab closes |
All of these are strictly necessary for something you asked for, so under
the ePrivacy Directive they do not require consent.
What we do not use
- No advertising cookies
- No third-party trackers
- No cross-site profiling
- No Google Analytics or equivalent
**If that ever changes, a consent banner becomes necessary and this document
changes with it.** Adding a tracker without both is the failure mode.
Managing them
Your browser can block or clear cookies. Blocking the strictly necessary ones
will sign you out and, before launch, stop the site loading at all.
Last updated: 13 September 2026

