Draft · not yet in effect · v0.1
Cookie and Tracking Notice
In plain words: Closetbook sets no advertising cookies and uses no third-party analytics. Your browser keeps a few things so the site works: your sign-in, the design you picked, your temperature unit. Two things go beyond that: a short-lived first-party cookie that credits a creator when you shop through their page, and a random id that lets us count which of our designs people use. Shop links on shared pages may pass through an affiliate network that sets its own cookie when you click, on its own domain.
What closetbook.app stores in your browser
| Item | Type | Purpose | Lifetime |
|---|---|---|---|
| Sign-in session | localStorage (set by our authentication provider, Supabase) | Keeps you signed in; for guests, keeps your guest closet attached to this browser | Until you sign out or clear browser data |
design, style, designSource, designChosenAt | localStorage | The look you chose (Galaxy, Lookbook, Utility) and whether you chose it or were assigned it | Until cleared |
mode, unit | localStorage | Space or paper mode; °C or °F | Until cleared |
lastTrip, pvMode:*, cb-feed-mode, catchup-skip, planets | localStorage | Remember the trip you were on, the view you prefer, a card you dismissed | Until cleared |
| Anonymous id | localStorage | A random id so that usage events (section below) from one browser can be counted as one person before sign-in; it is not shared with anyone and is not used across sites | Until cleared |
| Model cache | Browser cache / IndexedDB | The in-browser cut-out and matching models, so they download once | Managed by your browser |
cb_ref | Cookie, first-party, SameSite=Lax, Secure | Set when you click a shop link on a shared page: holds the page and piece number so that, if you add a piece from the same shop within 7 days, the creator whose page you came from gets the credit. No identity, no cross-site use | 7 days |
__cf_bm and similar | Cookie (Cloudflare) | Bot and abuse protection by our host | About 30 minutes |
What happens when you click a shop link
A shop link on a shared page goes through our /go address, which counts the click (page, piece, kind of link, the referring page) and sends you on. If the link is wrapped by an affiliate network (Skimlinks, Sovrn Commerce or another we name in the Privacy Policy), the network's own domain sets a cookie in your browser under the network's cookie policy so the shop can credit a purchase. If the link is the creator's own affiliate link, that programme's tracking applies (LTK, ShopMy, Amazon Associates, a brand). If the link goes to Amazon, we send you straight there. You can decline third-party cookies in your browser; the links still work. Stripe's checkout page sets Stripe's cookies under Stripe's policy.
Usage events
We record a small first-party log of what people do in the Service (an event name, a few properties such as which design or which button, the time) tied to your account id or, before sign-in, to the anonymous id above. It exists to compare our designs and see which features are used. It is not advertising, is not shared, and is not joined with any third-party data. You can object under Me › Your data or by email.
What we don't use
No advertising cookies, no third-party analytics or measurement scripts, no social-media pixels, no fingerprinting, no cross-site tracking.
Consent
Everything in the first table except the anonymous id and cb_ref is strictly necessary for the Service you asked for. The anonymous id and cb_ref are first-party, carry no identity and are not used across sites; in places where the law requires consent for them we ask before setting them.
Contact: [email protected]