nirva|deploy

🍪 Cookies

Cookie policy

Every cookie we set, and every cookie we don't.

Last updated: · Currently active: 3 cookies · Tracking cookies: 0

The honest summary: we use 3 cookies. One signs you in. One remembers your language. One credits affiliates when you arrived via their link. Zero tracking cookies. Zero third-party advertising. No cookie banner because nothing requires consent today.

The day that changes (Plausible analytics — see below), this page updates and a banner appears before the cookie is ever set. Per Rule 6.

Active cookies

Set by NirvaDeploy on your device today.

next-auth.session-token

Strictly necessary
Set byNextAuth (web/lib/auth.ts)
PurposeAuthenticates your logged-in session. Without this cookie, you would have to re-enter your password on every page load.
Lifetime30 days (rolling — refreshed on activity)
Opt-outCannot be disabled if you want to use the dashboard. Sign out to clear it.

NEXT_LOCALE

Functional
Set byLanguage switcher (web/components/locale-switcher.tsx)
PurposeRemembers which of the 12 supported languages you picked, so we don't fall back to Accept-Language on the next visit.
Lifetime1 year
Opt-outDisable in your browser — the site will then re-detect from Accept-Language each visit.

_nd_ref

Functional
Set byReferral cookie (set when arriving via an affiliate link)
PurposeTracks which affiliate referred you so the affiliate gets credit if you sign up + pay. Without this, affiliates can't earn commissions.
Lifetime90 days
Opt-outOnly set if you arrived via /r/<slug>. If you sign up without it, no affiliate is credited.

Not enabled

Listed for transparency — if any of these change, the row above updates AND a notice goes on the homepage.

(Plausible analytics — none today)

Analytics (planned)
Set byPlausible.io (planned, NOT YET ENABLED)
PurposeWhen/if we add page-view analytics, we'll use Plausible — which is cookie-free by design. The row exists here as a Rule-6 promise: the day a tracking cookie is added, this row will be updated and a banner will appear before the cookie is set.
Lifetimen/a — Plausible does not use cookies
Opt-outPlausible is cookieless by default — there will be nothing to opt out of when this lands.

(Marketing cookies — none, ever)

Marketing (never)
Set byWe do not use marketing cookies and have no plans to.
PurposeStage 0-1 marketing strategy is word-of-mouth + referrals + honest pricing comparisons. No retargeting, no ad networks, no Facebook/Meta/Google pixels.
Lifetime
Opt-outNothing to opt out of.

How to control cookies

All modern browsers let you delete cookies for a specific site:

  • Chrome / Edge: Settings → Privacy → Cookies → See all cookies → search "nirvadeploy" → Delete
  • Safari: Settings → Privacy → Manage Website Data → search → Remove
  • Firefox: Settings → Privacy & Security → Cookies and Site Data → Manage Data → search → Remove

You can block our cookies entirely — the dashboard will then keep signing you out and forgetting your language. The public marketing pages still work.

Change log

Every cookie added or removed lands here. By signing up you agree to be notified via the same channel as sub-processor changes (in-app + email at least 7 days before).

  • 2026-05-24 — Initial publication. Promoted from /privacy § 9 to its own page.

Questions

Privacy + cookie questions: [email protected]

See also: /privacy · /sub-processors · /security