Cookie & Storage Policy
Effective: April 2026 · Version 1.0
1. Overview
Keptt uses a minimal approach to cookies and browser storage. We collect only what is strictly necessary to provide our service.
2. What We Use
Session Cookie (Strictly Necessary)
A single HTTP-only, Secure session cookie managed by Better Auth. It authenticates your session and maintains your login state. This is the only cookie set by Keptt directly. It is exempt from consent requirements under Article 5(3) of the ePrivacy Directive (2002/58/EC, as amended) as strictly necessary for the provision of a service explicitly requested by you.
Service Worker (PWA Caching)
Keptt uses a service worker to cache static assets for performance and offline reliability. It caches application assets only (not user data), does not track behavior, and does not send data to third parties.
Push Notification Subscription
If you opt in, your browser generates a push subscription (endpoint URL and encryption keys), stored server-side in your organization's database. Used exclusively for task reminders and alerts.
3. What We Do NOT Use
- No analytics cookies (no Google Analytics, Plausible, or Mixpanel)
- No tracking pixels (no Meta Pixel or LinkedIn Insight Tag)
- No third-party advertising cookies
- No fingerprinting or device identification beyond session management
- No localStorage or sessionStorage for tracking
- No cross-site tracking of any kind
4. Third-Party Cookies
Stripe (Payment Processing)
When interacting with Stripe for payment, Stripe may set its own cookies on the stripe.com domain for fraud prevention and payment security. These are subject to Stripe's Cookie Policy.
Google OAuth (Optional)
If you sign in with Google, Google may set cookies during the OAuth flow on accounts.google.com for authentication. These are subject to Google's Privacy Policy.
5. Cookie Consent
Our session cookie is strictly necessary under Article 5(3) of the ePrivacy Directive (2002/58/EC). Because we set no analytics, advertising, or non-essential cookies, Keptt does not display a cookie consent banner. Third-party cookies set by Stripe (during checkout) and Google (during optional OAuth sign-in) are governed by their respective cookie policies, which you may review at https://stripe.com/cookies-policy/legal and https://policies.google.com/technologies/cookies.
6. How to Manage Cookies
You can manage or delete cookies through your browser settings. Blocking the Keptt session cookie will log you out. You can unregister the service worker via browser DevTools and manage push notifications in your browser's site settings.
7. Changes to This Policy
We will update this Cookie Policy if our practices change. Material changes will be reflected in the Effective Date and communicated via email.
8. Contact
For questions about our cookie and storage practices, see our Privacy Policy or contact us at [email protected]. You may also lodge a complaint with the supervisory authority in the EU/EEA member state of your habitual residence.