Cookie Notice
Questions about this document? Write to legal@layerport.app.
LayerPort uses the smallest number of cookies that lets a sign-in work. There are no advertising cookies, no third-party analytics scripts and nothing that follows you to another site.
What is stored
- Session cookie — set when you sign in, so the next request knows it is you. HttpOnly, SameSite, and only sent to this site. We store a keyed hash of it rather than the value. Removed when you sign out; expires on its own otherwise.
- Sign-in state cookie — a short-lived value used during the Google sign-in hop to prevent a forged callback. It lasts minutes.
- Local preferences — theme, language and whether you dismissed a notice, kept in your browser's local storage. They never reach our server and identify nothing.
All of these are strictly necessary for the service to function or are your own stored preferences, which is why there is no consent banner asking permission to set them: there is nothing here to opt out of that would leave a working site behind.
What is not used
- No Google Analytics, Meta pixel, or any third-party measurement script.
- No advertising or retargeting cookies, and no data sold or shared for advertising.
- No cross-site identifiers, fingerprinting or session replay.
Measurement without cookies
We do count page views, using no cookie and no identifier: a date, which page, whether the visitor was signed in, and the host they came from. See the Privacy Policy for the detail.
Controlling them
Blocking the session cookie in your browser is possible and will simply prevent signing in. Clearing site data removes the local preferences too. Questions: privacy@layerport.app.