Cookie Policy
You can Accept all, Reject non-essential, or Manage preferences. Reject is always available. Optional categories are not pre-ticked. Consent is not inferred from scrolling or waiting. Open Cookie Settings anytime from the footer.
Storage we actually use
statlyzer_cookie_prefs_v1
Provider: STATLYZER (first party) · Category: essential · Purpose: remember your cookie choice · Expiry: until cleared · Required: yes (after you decide)
Supabase auth token(s) in localStorage (names assigned by @supabase/supabase-js, typically project-scoped sb-*-auth-token)
Provider: STATLYZER / Supabase · Category: essential · Purpose: keep you signed in · Expiry: session / refresh lifecycle · Required: yes for signed-in use · First party
statlyzer_ui_lang
Provider: STATLYZER (first party) · Category: strictly functional · Purpose: remember EN/RO legal-page language after you choose it · Expiry: until cleared · Not used for advertising · No IP-based language redirect
statlyzer_terms_ack / statlyzer_withdrawal_ack
Provider: STATLYZER · Category: essential · Purpose: local complement to server-side Terms / immediate-access acknowledgement · Expiry: until cleared · Required: no until you sign in or start web checkout
statlyzer_onboarding_v1
Provider: STATLYZER · Category: functional/essential UI · Purpose: hide the one-time product tip · Expiry: until cleared
Cloudflare cookies (for example __cf_bm / similar edge cookies if present on the hostname)
Provider: Cloudflare · Category: essential security · Purpose: bot/edge protection · Expiry: short-lived per Cloudflare · Third party on the STATLYZER domain · Required: typically yes for delivery
Self-hosted Montserrat webfonts
Provider: STATLYZER (first party, SIL Open Font License files) · Category: essential presentation · Purpose: page typeface · No request to fonts.googleapis.com or fonts.gstatic.com
Google Translate (translate.google.com widget and any googtrans cookie it sets)
Provider: Google · Category: functional · Purpose: optional page translation · Loaded only after Functional consent · Third party · Required: no
Google tag / Google Ads (gtag.js, destination AW-18327818485)
Provider: Google · Category: marketing / advertising measurement · Purpose: measure advertising visits and consented funnel events, including a confirmed PRO subscription after a user returns to the app. Loaded only after Marketing / advertising measurement consent. Events are scrubbed before sending: no email, phone number, login token, payment token or card data is sent by STATLYZER. Google may process browser and device information and set its own measurement cookies under its policies. Required: no.
First-party product events (StatlyzerAnalytics)
Provider: STATLYZER · Category: analytics · Purpose: local console debug of UI events. Separate Google Ads measurement is described above and is controlled by the Marketing category; optional analytics consent is not treated as marketing consent.
How to withdraw
Use Cookie Settings and choose Reject non-essential, or clear site data in your browser. After withdrawal, optional tools (Translate, Google tag, any future analytics sink) stay off for new loads; if the Google tag was already loaded in the current page, Consent Mode is updated to deny optional advertising storage.
See also Privacy Policy.