Legal
Cookie Policy
This Cookie Policy explains how Felagar (“we”, “our”, or “us”) uses cookies and similar storage technologies when you use Felagar (the “Service”). Read this policy alongside our Privacy Policy, which contains further information about how we handle your personal data.
1. What are cookies?
Cookies are small text files placed on your device by a website. They allow the site to remember information about your visit, such as your login session or display preferences. Similar technologies include local storage (key-value data stored in your browser) andsession storage (same, but cleared when you close the tab).
2. How we use cookies and storage
We use cookies and local/session storage for the following purposes:
2.1 Strictly necessary
These are required for the Service to function and cannot be disabled.
| Name / Key | Type | Purpose | Duration |
|---|---|---|---|
session | HTTP-only cookie | Authenticates your logged-in session. Contains a signed JWT; cannot be read by JavaScript. | 7 days |
two_factor_pending | HTTP-only cookie | Holds the two-factor authentication state during login when a second factor is required. | 10 minutes |
active_agency | HTTP-only cookie | Tracks which agency tenant you are currently acting under. | 7 days |
user_role_* | HTTP-only cookie | Stores your role-based permissions for the active agency session. | 7 days |
theme | Cookie | Stores your chosen colour theme (light or dark) on this site and in the app so the correct theme loads on first paint. | 1 year |
atmosphere | Cookie | Stores whether the atmosphere background is enabled. | 1 year |
locale | Cookie | Stores your chosen interface language so pages load in the correct language from the first request. | 1 year |
2.2 Functional
These storage entries remember your preferences to improve your experience. Clearing them does not prevent login, but some preferences will reset.
| Name / Key | Type | Purpose | Duration |
|---|---|---|---|
felagar.locale | Local storage | Mirrors your interface language preference in the browser. | Persistent (until cleared) |
| Notification preference keys | Local storage | Remembers certain UI notification preferences on your device. These contain no account secrets. | Persistent (until cleared) |
felagar_cookie_consent | Local storage | Stores your cookie preference choice (necessary only, or analytics allowed) on this browser origin so we can honour it on later visits. | Persistent (until cleared or updated) |
2.3 Analytics
On the Felagar marketing site (felagar.com) and the hosted product (agency dashboard and client portal on felagar.app and agency hosts), we may load optional analytics after you give consent via the cookie preferences banner:
- Google Analytics 4 - aggregated traffic and engagement metrics (Google's Privacy Policy).
- PostHog - product analytics events to improve UX (PostHog's Privacy Policy). We prefer an EU PostHog cloud host when configured.
- Cloudflare Web Analytics - privacy-oriented page performance and visit metrics via a lightweight beacon that does not use cookies or local storage for tracking (Cloudflare's Privacy Policy). We still treat it as optional analytics and load it only after analytics consent.
These scripts run only when the corresponding environment keys are configured for that deployment and you have allowed analytics. Self-hosted installs may omit these keys, in which case no third-party analytics scripts load. Rejecting non-essential cookies keeps analytics off; you can change your choice anytime via Cookie settings on each surface.
3. Third-party cookies
We do not place third-party advertising cookies. Third-party services that may set cookies in limited contexts include:
- Cloudflare - security and performance cookies such as
__cf_bmwhen Cloudflare bot management is enabled (Cloudflare's Privacy Policy). - Stripe - if you visit a billing page, Stripe may set cookies for fraud detection (Stripe's Privacy Policy).
- Google - if you use Google sign-in, Google may set cookies related to that authentication flow. If you consent to analytics, Google Analytics 4 may also set cookies (Google's Privacy Policy).
- PostHog - if you consent to analytics and PostHog is configured, PostHog may use cookies or local storage for product analytics (PostHog's Privacy Policy).
4. Managing your preferences
Cookie settings
On the marketing site, agency dashboard, and client portal, use the cookie banner (Accept all, Reject non-essential, or Preferences) the first time you visit. Reopen preferences anytime viaCookie settings in the marketing footer, on sign-in / register, or under My Account → Appearance in the agency dashboard. Preferences are stored per browser origin in felagar_cookie_consent local storage and are not synced across domains.
Browser settings
Most browsers allow you to view, block, or delete cookies via their settings. Note that blocking strictly necessary cookies (such as the session cookie) will prevent you from logging in.
- Chrome - Settings → Privacy and security → Cookies and other site data
- Firefox - Settings → Privacy & Security → Cookies and Site Data
- Safari - Preferences → Privacy → Manage Website Data
- Edge - Settings → Cookies and site permissions
Local storage
To clear local storage data set by Felagar, open your browser's developer tools (F12), go to the Application or Storage tab, and clear the items under the Felagar origin.
5. Do Not Track
Some browsers offer a “Do Not Track” (DNT) signal. Currently there is no industry-standard way to respond to DNT signals, so we do not alter our behaviour based on them. If a standard is adopted in the future we will update this policy accordingly.
6. Changes to this policy
We may update this Cookie Policy when we add or change how we use cookies. We will notify you of material changes via email or in-app notice. The “Last updated” date reflects the most recent revision.
7. Contact
Questions about this Cookie Policy? Email us at legal@felagar.com.