Legal
Cookie Policy
Last updated: 2026-06-03
This page lists every cookie Fotofolio sets. We keep it short because we don't run third-party advertising or behavioural-tracking cookies.
1. Cookies we set
Essential — required for the service to function
- auth-token — HttpOnly signed cookie that keeps you logged in. Expires 30 days from your last activity.
- cs_<token> / sp_<token> /album_<token> — short-lived cookies that remember you've unlocked a code-gated shared gallery / portfolio. Expires after 7 days.
Preferences — to keep your UI choices
- theme — your light/dark choice for the dashboard.
- fotofolio.nav.pinned — your collapsed / expanded sidebar choice.
- Other fotofolio.* localStorage entries — UI state like last-used filters; technically not cookies but listed for honesty.
2. Cookies we don't use
- No Google Analytics
- No Facebook Pixel
- No third-party advertising trackers
- No cross-site tracking
If we ever add an analytics tool, we'll choose a privacy-respecting one (Plausible, PostHog self-hosted, or similar), update this page first, and notify account-holders.
3. Your choices
You can block or delete cookies in your browser settings. Blocking the auth-token cookie means you can't stay logged in.
4. Contact
Questions: privacy@nanoappstudio.com