Coruve

Legal

Cookie Policy

The tracker sets zero cookies. Our own site uses only what's needed to sign you in. Here's the full picture.

Last updated · 5 August 2026

Clause 1. The short version

  • The Coruve tracker sets no cookies at all — not on our customers' websites, not ever. That is a design decision, not a configuration.
  • coruve.com and the Coruve dashboard use only strictly necessary cookies: keeping you logged in and protecting sign-in pages from bots.
  • We use no advertising cookies, no third-party analytics cookies, and no cross-site tracking of any kind.
  • That is why you don't see a cookie banner here — under UK law, strictly necessary cookies don't require consent, and we simply don't use the kinds that do.

Clause 2. What cookies are

Cookies are small text files a website stores in your browser to remember things between page loads — like the fact that you're logged in. UK law (the Privacy and Electronic Communications Regulations 2003, as amended by the Data (Use and Access) Act 2025) regulates cookies and similar technologies, requiring consent for most uses except those that are strictly necessary for a service you've asked for, and certain low-risk statistical and functionality purposes.

Clause 3. Cookies on coruve.com and the dashboard

CookiePurposeCategoryLifetime
Authentication sessionKeeps you signed in to your Coruve account. Signed and encrypted; contains no password.Strictly necessaryYour login session
Cloudflare TurnstileSet by Cloudflare on our sign-in and registration pages to distinguish humans from bots without a puzzle.Strictly necessary (security)Short-lived

Coruve's own visitor analytics on coruve.com run on our own product — which is cookieless — so browsing this website sets nothing beyond the table above, and nothing at all until you sign in or reach an authentication page.

Clause 4. The Coruve tracker on customers' sites

If you're on a website that uses Coruve for analytics, our snippet stores no cookies in your browser. It keeps a session identifier in localStorage for that one site, so a visit reads as a single session even when you open several of its tabs. It expires after 30 minutes without activity and is never shared across sites. Visitors themselves are counted with a salted hash that rotates daily — there is no identifier that follows you between days, devices or sites.

Two further things can be written to localStorage on the site you are visiting, and neither identifies you. If a measurement cannot be sent — you went offline, or the request failed — the events waiting to be sent are held there until your next visit, for at most a day, then discarded; they contain the same page and click detail described in our Privacy Policy and no identifier beyond the daily rotating hash. Separately, if the site's own owner has excluded their own visits from their statistics, a flag recording that choice is stored so their browser keeps being excluded. Both are readable only by the site that stored them and are never shared across sites.

This is stronger than the consent exemptions UK law added for analytics cookies in 2026: those permit certain low-risk statistical cookies without consent, but Coruve doesn't need the exemption — there are no cookies to exempt.

Clause 5. Managing cookies

You can block or delete cookies in your browser settings at any time. Blocking our strictly necessary cookies will prevent signing in to the dashboard, but browsing the public website works fine without any cookies. The tracker also honours Do Not Track and Global Privacy Control — with either enabled, it disables itself entirely on sites that use Coruve.

Clause 6. Changes and contact

If our cookie use ever changes, this page and its date will change with it — and if we ever introduced cookies requiring consent, we would ask for it first. Questions: [email protected].

Cookie Policy | Coruve