Skip to main content
Sytance logo
Legal

Cookie Notice

What cookies and browser storage Sytance uses, why they are necessary, how long they remain, and what controls are available.

Last updated 13 September 2026

1. What this notice covers

Cookies are small values that a website stores and receives through a browser. Local storage and session storage are browser technologies that retain information for similar operational purposes but are not sent automatically with every web request.

This notice covers cookies and browser storage set by Sytance-operated websites and applications. It should be read with the Privacy Notice, which explains how we handle personal data associated with these technologies.

2. Current use

Sytance uses first-party cookies and browser storage for authentication, security, workspace context, billing handoff, navigation, and interface preferences.

We do not currently set cookies for advertising, cross-site tracking, or audience analytics on Sytance-operated pages.

We use cookie-free Umami Cloud analytics for public website traffic and selected registration and contact events. We do not enable advertising tracking, session replay, heatmaps, or cross-device account identification. Analytics is disabled for signed-in browsing, apart from the email-verification completion event, and is not used to record workspace pages or customer content. We honour browser Do Not Track and Global Privacy Control signals. Analytics records are retained for up to six months under our current service plan. Browser blocking may prevent a visit or conversion from being recorded.

We distinguish technologies necessary to deliver a requested function from optional preferences. A preference is not automatically exempt from consent merely because it is stored locally. Where law permits necessary storage without consent, we use that exemption only for the relevant purpose; consent is required before optional storage wherever applicable law requires it.

3. Strictly necessary cookies

Authentication-cookie duration follows the applicable sign-in or authorised support session. The duration may be shortened for security, account, or administrative reasons. Deleting or blocking these cookies ends the relevant session or prevents authenticated functions from operating.

  • access_token maintains an authenticated session and authorises application requests. It is server-set, HTTP-only, restricted to the relevant service path, uses SameSite=Lax, and is marked Secure in production.
  • tenant_impersonation is used only for an authorised administrative support session scoped to a customer tenant. It is HTTP-only and expires no later than the main authenticated session.

4. Local storage

Except for the billing handoff retained for up to 24 hours, local-storage values generally remain until replaced, cleared by the applicable sign-out flow or removed with browser data. The interface also stores list-display preferences and dismissed evaluation reminders.

The browser also uses the sytance-ai IndexedDB database to cache AI conversations, including messages and document associations that may contain Customer Content, for conversation restoration and refresh. The cache has no fixed automatic expiry; the application updates it and attempts to clear the current user’s cache during normal sign-out. Clearing this site’s browser data removes local copies, not server records.

  • auth_session_present indicates whether the browser has an authenticated session; it does not contain the authentication token.
  • active_tenant_id remembers the tenant selected in the browser.
  • app:text-size remembers the selected interface text size.
  • billing_purchase_intent remembers a selected plan and billing interval for up to 24 hours while registration or sign-in is completed.

5. Session storage

Session-storage values normally remain only for the life of the relevant browser tab or session, unless the browser restores a previous session.

  • post_login_redirect remembers the page to open after authentication. active_workspace and workbench navigation state retain the current tab’s workspace and record-navigation context.

6. Third-party pages

A third-party service opened from Sytance, such as a hosted payment page, may set its own cookies. The provider's privacy and cookie notices apply on that service.

We do not control a third party's cookie duration or settings. Returning to a Sytance-operated page brings you back within this notice.

7. Your controls

Most browsers allow you to inspect, block, or delete cookies and browser storage. Blocking strictly necessary technologies may prevent sign-in, workspace selection, security controls, billing handoff, or saved preferences from working.

Before enabling a non-essential technology, we will update this notice and introduce any consent controls required by applicable law.

Cookie and local-storage controls are separate from the marketing-email preference. Blocking cookies does not withdraw email consent, and unsubscribing from email does not end an authenticated session. Use account settings or privacy@sytance.com to change marketing preferences.

Clearing browser data does not cancel a subscription or instruct us to delete server-side workspace content. Browser sync, shared-device profiles and restoration of earlier sessions may preserve local copies outside the current tab. For a full data request, use the procedure in the Privacy Notice.

8. Changes and questions

We review this notice when browser-storage behaviour or relevant legal requirements change. The date above identifies the current published version.

Send questions about cookies, browser storage, or associated personal data to privacy@sytance.com.