Cookie and Storage Policy

Effective date: 28 July 2026

1. Scope

This policy explains cookies and similar browser storage used by Formak. DAIARK SL is responsible for first-party storage. Contact: privacy@formak.app.

2. Storage currently used

  • Authentication and security: `formak_token` and Supabase session storage maintain sign-in and protect authenticated requests. These are used only when the user signs in and are necessary to provide the requested account service. `formak_token` lasts up to one hour; Supabase may refresh its session until sign-out or expiry.
  • Language and functional preferences: localStorage remembers the selected language, viewer settings and analysis preferences so the requested interface works consistently. These values remain until changed or browser site data is cleared.
  • Capture and analysis data: sessionStorage, localStorage and IndexedDB can hold pending captures, locally saved analyses, derived motion records and uploaded-video copies on the user's own device. They remain until removed using Formak controls, automatically displaced by local cache limits, or cleared through browser settings.
  • Checkout: Paddle.js is loaded only after the user chooses to proceed to checkout. Paddle may then use cookies or similar storage needed for checkout, fraud prevention, payment and buyer support as explained in section J of Paddle's Privacy Notice.
  • Anti-abuse: Cloudflare may use strictly necessary security storage, including Turnstile data when a challenge is enabled, to distinguish legitimate requests from abuse.

3. Consent

Formak currently does not use advertising, cross-site behavioural tracking or optional audience analytics. The first-party storage described above is limited to authentication, security, user-requested functionality and local product data. On that basis, Formak does not display a consent banner merely for this necessary storage. This policy still provides the required transparency.

If optional analytics, advertising or another non-essential purpose is introduced, it will be blocked until an equal accept/reject consent choice is provided and this policy is updated. Checkout storage starts only when the user requests the Paddle payment flow.

4. Controls

You can sign out to end the active account session, use Formak's delete controls for local captures/analyses, or clear cookies and site data for `formak.app` in browser settings. Blocking necessary storage may prevent sign-in, checkout, saved captures or analysis preferences from working. Contact privacy@formak.app with questions.