Your choice
On your first visit, optional analytics is off. Choosing “Use necessary only” is as easy as allowing analytics. Withdrawing later is equally easy and does not affect the lawfulness of earlier consent-based processing.
Cookies
| Name | Category | Purpose | Lifetime |
|---|---|---|---|
nexpot_privacy_choices | Necessary | Stores consent version and analytics choice. | 180 days |
nexpot_privacy_cleanup_pending | Necessary | Non-identifying retry flag used only when a consent-withdrawal deletion could not finish immediately. It keeps analytics off while cleanup is retried. | Until cleanup succeeds, at most 180 days |
nexpot_session | Necessary | HttpOnly sign-in session; the server stores only a token hash. | Up to 30 days |
nexpot_download_device | Analytics | Pseudonymous identifier used to cap the download counter at three counted downloads per consenting device. | 180 days |
| Google / Stripe provider storage | Requested third-party service | May be set by Google only after you choose Google sign-in, or by Stripe after you choose checkout. Controlled by the provider on its own domain. | Under the provider's policy and your provider/browser settings. |
Analytics
When allowed, Vercel Web Analytics receives limited page-view information such as page path, referrer, approximate region and device/browser characteristics. It also receives events when a visitor selects a public Download, Platform, Chrome or pricing call-to-action, including only the placement and public plan/platform label. We do not deliberately add form values, email addresses, account actions, checkout status or payment details to these events.
Vercel Analytics does not use third-party cookies; Vercel states that its visitor session hash is discarded within 24 hours. We use aggregated reports, not advertising profiles. Query strings and URL fragments are removed before events are sent, and password-reset pages are excluded.
The download counter records a pseudonymous device ID, the downloaded platform and time. It counts at most three downloads for that identifier. Turning analytics off stops future measurement immediately. Nexpot then deletes that device record and its linked events; a non-identifying retry flag keeps the deletion pending if the database is temporarily unavailable. To prevent a download write already in flight from recreating deleted analytics, the server keeps the withdrawn random identifier on a suppression list for up to seven days and uses it only to reject such writes.
Local storage
| Key | Purpose | Category |
|---|---|---|
nexpot-theme | Remembers interface appearance. | Necessary preference. |
| Desktop/extension settings and recent context | Settings, permission state and continuity stored locally by the installed product. | Product storage controlled through the app/extension and removable by signing out, clearing app data or uninstalling. |
Browser controls can also clear storage, but blocking necessary storage may prevent sign-in or checkout continuity. See the Privacy Notice for legal bases, recipients and rights.