Legal
Cookie policy
Last updated: 2 May 2026
What we use
Crestio uses only the cookies and local storage entries that are strictly necessary to keep you signed in and remember your preferences within the app. We do not use advertising cookies, retargeting pixels, or analytics that identify individuals.
Strictly necessary
- Authentication session. A short-lived secure cookie that proves you signed in. Lives for the session duration. If you sign out, it is invalidated.
- Refresh token. A longer-lived cookie that lets the app refresh your session without re-prompting for your password. Stored as a secure, HTTP-only cookie.
- Locale preference. A small browser cookie remembering which language you chose. So you don't have to pick it again on the next visit.
- Marketing micro-state. Browser local storage entries used by the homepage (sandbox visit flag, sticky-bar dismissal). Never sent to a server, lives only in your browser.
What we do not use
- No third-party advertising cookies.
- No retargeting pixels.
- No cross-site tracking.
- No analytics that identify individuals or build behavioural profiles.
We do use a privacy-respecting page-view counter to know which marketing pages get visited. It does not store cookies on your device, does not track across sites, and is opted out of fingerprinting.
Changes
If we ever add an optional cookie (for example, a usage analytics cookie that helps us understand how the dashboard is used), we will update this page and ask for your consent before setting it.
Contact
Questions about cookies or anything we set in your browser: email lenin@crestio.ai.