Cookie Policy

Last updated: 6 April 2026

This Cookie Policy explains what cookies are, which ones Kittd uses, and why. We've kept this as short and clear as possible โ€” because nobody should need a law degree to understand how a website handles cookies.

๐Ÿฉณ The short version: Kittd uses only essential cookies โ€” the ones needed to keep you logged in and keep the platform secure. We do not use advertising cookies, tracking cookies, or any third-party analytics cookies. We never sell or share cookie data.

1. What Are Cookies?

Cookies are small text files that a website stores on your device (computer, phone or tablet) when you visit. They are widely used to make websites work, remember your preferences, and provide information to the site owner.

Cookies are not programs and cannot carry viruses or malware. They are simply data files โ€” think of them as a short-term memory for a website.

As well as traditional cookies, websites can use similar technologies such as local storage and session storage. Where this policy refers to "cookies", it includes these technologies too.

2. How We Use Cookies

Kittd uses cookies exclusively to make the platform function. Specifically:

  • Authentication โ€” to keep you logged in securely as you navigate between pages
  • Session management โ€” to maintain your session state so you don't lose your work
  • Security โ€” to protect against cross-site request forgery (CSRF) attacks
  • Navigation โ€” to remember where you were trying to go before logging in

We do not use cookies for:

  • Advertising or retargeting
  • Cross-site tracking
  • Analytics or behavioural profiling
  • Social media tracking pixels
  • Any purpose unrelated to making Kittd work

3. Cookies We Use

Below is a complete list of every cookie Kittd sets. There are no hidden cookies โ€” this is the full picture.

NameProviderPurposeTypeDuration
sb-access-tokenSupabase / KittdStores your authentication session so you stay logged in between page visits.EssentialSession / 1 hour
sb-refresh-tokenSupabase / KittdUsed to silently refresh your access token so you are not logged out while actively using the platform.Essential60 days
__Host-next-auth.csrf-tokenKittdCross-site request forgery (CSRF) protection token. Ensures that form submissions originate from Kittd and not a malicious third party.EssentialSession
__Secure-next-auth.callback-urlKittdRemembers the page you were trying to visit before being redirected to log in, so you can be sent there after authentication.EssentialSession

* Session cookies are deleted automatically when you close your browser. Persistent cookies remain on your device until their expiry date or until you delete them.

4. Cookie Categories Explained

All cookies used by Kittd fall into the Essential category:

Essential (Strictly Necessary)

These cookies are required for the platform to function. Without them, you cannot log in, stay logged in, or use any authenticated features. Because they are strictly necessary, they do not require your consent under UK PECR (Privacy and Electronic Communications Regulations).

We have deliberately chosen not to implement the following cookie categories, which are common on other platforms:

  • Performance / Analytics cookies โ€” e.g. Google Analytics. We don't use them.
  • Functional cookies โ€” e.g. chat widgets, video players. We don't use them.
  • Targeting / Advertising cookies โ€” e.g. Facebook Pixel, Google Ads. We don't use them. Ever.

5. Third-Party Cookies

Kittd does not load any third-party scripts that set cookies on your device. We do not embed social media buttons, advertising networks, or external analytics platforms that would result in third-party cookies being placed.

The only third-party service we integrate with that touches your browser is Supabase, which provides our authentication layer. The cookies listed in Section 3 are set by Supabase on our behalf and are entirely under our control.

6. Managing and Deleting Cookies

Because Kittd only uses essential cookies, blocking or deleting them will prevent the platform from working correctly โ€” you will not be able to log in.

That said, you are always in control of your browser. You can manage cookies through your browser settings:

You can also use your browser's private or incognito mode to browse without storing cookies between sessions.

7. Cookie Consent

Under the UK Privacy and Electronic Communications Regulations (PECR) and UK GDPR, strictly necessary cookies do not require consent. Because Kittd uses only strictly necessary cookies, we do not display a cookie consent banner โ€” there is nothing to consent to.

Should we ever introduce non-essential cookies in the future, we will update this policy and implement a proper consent mechanism before doing so.

8. Changes to This Policy

We may update this Cookie Policy if we change how we use cookies โ€” for example, if we introduce new platform features that require additional cookies. We will update the "Last updated" date at the top of this page when we do. We will not introduce non-essential cookies without notifying you in advance.

9. More Information

For more detail on how we handle your personal data, see our Privacy Policy.

If you have any questions about cookies or this policy, please contact us:

Cookie Policy โ€” Kittd | Kittd