Legal
Cookie Policy
Last updated: September 20, 2026
Cloudy uses the minimum number of cookies needed to run a logged-in chat service. We do not use advertising cookies, analytics trackers, or fingerprinting — the ads that fund Cloudy are requested and matched on our servers, so no ad script runs in your browser and nothing is stored there on an advertiser's behalf.
Essential cookies
These are required for the Service to function — keeping you signed in and securing your requests. They can't be switched off in the app, but clearing your browser cookies signs you out.
| Cookie | Purpose | Duration |
|---|---|---|
authjs.session-token | Keeps you signed in. Set only after you log in or sign up. | 30 days |
authjs.csrf-token | Protects sign-in and sign-out requests against cross-site request forgery. | Session |
authjs.callback-url | Remembers where to send you after signing in (for example, back to the page you were on). | Session |
authjs.state | Temporary value used only during social sign-in, if enabled. | 10 minutes |
What we don't set
- No third-party ad or retargeting cookies — sponsor ads are matched server-side and their impression and click tracking is followed by our server, not by your browser.
- No analytics or telemetry cookies.
- No social media pixels.
Managing cookies
Your browser lets you view, block, and delete cookies at any time. Blocking the essential cookies above will prevent sign-in. Deleting them is equivalent to logging out.
Questions? Email privacy@cloudy.chat.