Skip to content

Cookies

Cookie policy

What this site stores in your browser, what each item is for, and how long it lasts. The short version: only what is needed to work, and nothing that tracks you.

Last updated 14 September 2026

What is stored

εpsγlo sets no analytics cookies, no advertising cookies and no tracker of any kind. Everything below is technical storage, needed for the site and the app to function, which under art. 122 of the Codice Privacy and the Garante’s guidelines needs no consent — only this notice.

The list

NameSet byPurposeLasts
sb-*-auth-token (localStorage)εpsγlo (Supabase Auth)Keeps you signed in between visits. Holds your session tokens; nothing else reads it.Until you sign out, or the session expires.
ht.theme, ht.marketing.lang and other ht.* keys (localStorage)εpsγloYour chosen theme, the language the site speaks, the tab order on a phone, and other preferences that need no account.Until you clear them.
ht.consent (localStorage)εpsγloYour answer to the cookie banner, if one is ever shown. Today none is, and this key is not written.Until you clear it.
IndexedDB (vocabulary, mirror, Learn)εpsγloThe vocabulary bank and a mirror of your account state, so the app opens instantly and works offline.Until you clear site data or delete the account from this device.
Paddle checkout cookiesPaddleCheckout session state; loaded only while checkout is open.Session.
Paddle fraud-prevention cookiesPaddleFraud prevention during checkout.Up to 1 year, set by Paddle.
__cf_bmCloudflare, when bot protection is enabledDistinguishes people from automated traffic.30 minutes of inactivity.
cf_clearanceCloudflare, when challenges are enabledRemembers a passed security challenge.30 minutes by default; depends on the deployed Challenge Passage setting.

Why there is no banner

We use only technical storage, so no consent banner appears today. If a non-essential category is added, its scripts must be registered and held back until consent is given. The consent primitive stores a choice per category; registration alone is not permission to run a script.

Third-party scripts

Paddle.js loads only when you open checkout. The billing portal runs on Paddle’s site. Google sign-in redirects you to Google only when chosen. Fonts are self-hosted. We load no advertising or analytics scripts.

How to clear it

Your browser’s settings let you delete this site’s storage or block it altogether. Blocking it stops the app from keeping you signed in and from working offline; everything else on the site works without it. Signing out removes the session token; deleting the account removes the mirror on the next load.

Changes to this policy

When a new item is stored, or a listed one changes purpose or lifetime, this page is updated and the date at the top moves. Anything that would need consent is preceded by the banner described above, not by an edit to this page.