Cookie policy

Version 1.0 · Last updated : 2026-08-12 · Permanent link to this version

1. Purpose and scope

This policy describes the cookies and other browser storage (local storage, session storage) used by the www.cowriepay.io website and by the CowriePay dashboard. It complements the Privacy policy.

We list everything rather than summarise by category: the two tables below are exhaustive as at the date of last update.

2. On the www.cowriepay.io website

ItemOriginPurposeLifetime and trigger
cpay_localecowriepay.io (us)Remember the language you chose12 months. Set only if you use the language switch.
Audience measurementanalytics.cowrie-x.com (our servers)Traffic statistics: pages viewed, referring page, device and browser type, language, approximate countryNo cookie and no storage in your browser. A technical visit identifier, renewed every day, is computed on our servers; your IP address is not retained.
Conversation identifiersupport.cowrie-x.com (our servers)Find your support conversation againSet only if you open the chat window. As long as you do not click, no support code is loaded at all.
Anti-bot checkchallenges.cloudflare.com (Cloudflare, Inc.)Protect the contact form against automated submissionsContact page only, short lifetime.

3. On the CowriePay dashboard

The first two items are strictly necessary: without them you cannot sign in or stay signed in.

ItemTypePurposeLifetime
cpay_rtCookie, not readable by page JavaScript, sent only to our own domainRenew your session without asking for your credentials again7 days.
cpay_atLocal storageAPI access token for your working sessionCleared on sign-out.
cpay_network_modeLocal storageRemember whether you are viewing the Sandbox or the production environmentUntil you clear site data.
Supportsupport.cowrie-x.com (our servers)Support inside the signed-in area, linked to your accountSigned-in area only.
Anti-bot checkchallenges.cloudflare.com (Cloudflare, Inc.)Protect sign-in and account creation against automated attemptsSign-in, sign-up and access-request pages, short lifetime.

4. What we do not use

  • No advertising cookies.
  • No targeting or retargeting cookies.
  • No tracking of your browsing on other websites.
  • No sharing or sale of browsing data for commercial purposes.
  • No session recording for behavioural analysis.

Our audience measurement and our support tool run on our own servers: they are not third-party services, and the corresponding data does not leave our infrastructure. The only genuine third party is the Cloudflare anti-bot check, limited to forms.

5. Why there is no consent banner

A consent banner exists to obtain your agreement before placing non-essential trackers in your browser, in practice advertising or cross-site tracking. We place none: our traffic measurement puts nothing in your browser and serves neither advertising nor tracking of your browsing elsewhere.

The only items stored are either strictly necessary for the service to work, or the direct consequence of an action you choose to take: picking a language, or opening the chat window. If you do neither, your browser keeps nothing on our account.

Should we ever introduce a non-essential tracker, we would obtain your prior consent and this page would be updated before it went live.

6. Your choices

  • Your browser lets you block or delete cookies and clear site data, including local storage. On the dashboard this ends your session and you will need to sign in again.
  • On the website, simply not opening the chat window leaves no support-related trace at all. In the signed-in area, support is loaded with the page. In both cases, clearing site data resets the conversation identifier.
  • No action is needed for audience measurement, since it stores nothing.

7. Changes

This policy is updated whenever anything listed above changes. The date of last update appears at the top of the page.

8. Contact

For any question about cookies and similar technologies: [email protected].