Cookies
This policy describes cookies and similar technologies on Ingenium. It should be read with the Privacy Policy.
We use cookies to keep you signed in. A preference centre lets you allow or refuse third-party call cookies. We do not use advertising or analytics cookies.
Last updated 2 September 2026.
Cookies are small text files a site stores on your device. Similar technologies include local storage, session storage, and pixels. Some cookies are first-party (set by Ingenium’s domain). Some are third-party (set by another domain, such as a video vendor).
Cookies can be:
Ingenium’s application sets first-party cookies through our authentication library (Supabase) so the server and browser share a login session. Video vendors set their own cookies when you join a call. Your browser may also store data that is not a cookie (see section 4).
These cookies are required to provide the service you asked for (signing in, staying signed in, and protecting the session). UK/EU ePrivacy rules generally allow strictly necessary cookies without a prior opt-in. They are not used to advertise to you.
| Name / pattern | Purpose | Duration (typical) |
|---|---|---|
| sb-<project>-auth-token (sometimes split as .0, .1, …) | Holds the Supabase session so we know who you are on the next request. Set via @supabase/ssr on this site. | Until you sign out, or until the auth provider’s refresh lifetime ends (commonly days to a few months). |
| sb-<project>-auth-token-code-verifier | PKCE verifier used during email confirmation or OAuth-style redirects, if that flow runs. | Short-lived; usually minutes, then removed. |
| ingenium_cookie_consent | Stores whether you allowed third-party cookies (video calls). Essential cookies stay on either choice. Also mirrored in local storage under the same name. | Up to 12 months, or until you clear site data. |
| ingenium_under13_lock | Set only if signup is refused because the date of birth is under 13. Stops the same browser from immediately retrying. HttpOnly, not used for advertising. | 24 hours, or until you clear site data. |
Exact cookie names include a Supabase project reference. You can see the live names in your browser’s developer tools on this domain after you sign in. We do not list a project reference here because it can change when the project is recreated.
Without these cookies, sign-in, onboarding, home, workspace, and other logged-in routes will not work.
The browser client may also keep session-related values in local storage, depending on library defaults. The whiteboard (Excalidraw) may keep drawing state or preferences on your device so a refresh does not always wipe the canvas before our server save runs.
This storage stays on your device. Clearing site data in the browser removes it. It is not a third-party advertising identifier.
When a workspace or interview call is embedded, Daily.co may set cookies on daily.co (or related) domains to run the room, remember devices, or measure their own service. Those cookies are Daily’s, not ours. See Daily’s published cookie and privacy documentation. We only load that frame when you open a call.
If Daily is not used, the product may open meet.jit.si in a new tab. That site can set its own cookies and is not under our control. Do not join that room if you do not accept 8x8 / Jitsi’s terms.
We load Nunito and Fraunces through Next.js Google font helpers. In the usual setup those files are downloaded at build time and served from this site, so your browser does not contact Google Fonts when you read a page. If that pipeline changes, a request to Google could include your IP address. We do not use Google Analytics.
Strictly necessary sign-in cookies are used to provide the account you requested. The first time you visit, a preference centre asks whether to allow third-party cookies used only for video calls (Daily.co or Jitsi). You can choose Essential only, Accept all, or save a custom choice. We do not set optional analytics or marketing cookies.
If we later add optional cookies (for example error tracking or product analytics), we will update this policy and, where the law requires it, ask before setting them — with a way to refuse.
Third-party call cookies are set only after you accept them in the banner and start a call. Starting the call is your choice to use that vendor.
Use the preference centre to change or withdraw a third-party choice at any time:
If your browser sends Global Privacy Control or Do Not Track, we treat that as a third-party opt-out and keep call cookies off. Essential sign-in cookies still run. You can also use the preference centre below. The whiteboard may keep drawing state in local storage on your device; that is not a third-party cookie and is not a separate opt-in category.
We will update this page when we add, remove, or change cookies. The “Last updated” date at the top is the current version.
Questions: support@project-ingenium.com or Contact. Personal data: privacy@project-ingenium.com and the Privacy Policy. Rules of use: Terms of Use.