Cookies
Cookie policy
What this site stores in your browser, what each item is for, and how long it lasts. The short version: only what is needed to work, and nothing that tracks you.
Last updated 14 September 2026
What is stored
εpsγlo sets no analytics cookies, no advertising cookies and no tracker of any kind. Everything below is technical storage, needed for the site and the app to function, which under art. 122 of the Codice Privacy and the Garante’s guidelines needs no consent — only this notice.
The list
| Name | Set by | Purpose | Lasts |
|---|---|---|---|
| sb-*-auth-token (localStorage) | εpsγlo (Supabase Auth) | Keeps you signed in between visits. Holds your session tokens; nothing else reads it. | Until you sign out, or the session expires. |
| ht.theme, ht.marketing.lang and other ht.* keys (localStorage) | εpsγlo | Your chosen theme, the language the site speaks, the tab order on a phone, and other preferences that need no account. | Until you clear them. |
| ht.consent (localStorage) | εpsγlo | Your answer to the cookie banner, if one is ever shown. Today none is, and this key is not written. | Until you clear it. |
| IndexedDB (vocabulary, mirror, Learn) | εpsγlo | The vocabulary bank and a mirror of your account state, so the app opens instantly and works offline. | Until you clear site data or delete the account from this device. |
| Paddle checkout cookies | Paddle | Checkout session state; loaded only while checkout is open. | Session. |
| Paddle fraud-prevention cookies | Paddle | Fraud prevention during checkout. | Up to 1 year, set by Paddle. |
| __cf_bm | Cloudflare, when bot protection is enabled | Distinguishes people from automated traffic. | 30 minutes of inactivity. |
| cf_clearance | Cloudflare, when challenges are enabled | Remembers a passed security challenge. | 30 minutes by default; depends on the deployed Challenge Passage setting. |
Why there is no banner
We use only technical storage, so no consent banner appears today. If a non-essential category is added, its scripts must be registered and held back until consent is given. The consent primitive stores a choice per category; registration alone is not permission to run a script.
Third-party scripts
Paddle.js loads only when you open checkout. The billing portal runs on Paddle’s site. Google sign-in redirects you to Google only when chosen. Fonts are self-hosted. We load no advertising or analytics scripts.
How to clear it
Your browser’s settings let you delete this site’s storage or block it altogether. Blocking it stops the app from keeping you signed in and from working offline; everything else on the site works without it. Signing out removes the session token; deleting the account removes the mirror on the next load.
Changes to this policy
When a new item is stored, or a listed one changes purpose or lifetime, this page is updated and the date at the top moves. Anything that would need consent is preceded by the banner described above, not by an edit to this page.
εpsγlo