Legal
Cookie Policy
Last updated: 2 July 2026
1. What cookies are
Cookies are small text files that a website stores on your device to make it work or to remember information about your visit. This policy explains which cookies PivotPath uses and why. It should be read alongside our Privacy policy.
2. Our approach
We keep cookies to the absolute minimum. PivotPath uses one strictly necessary cookie to keep you signed in. We do not use advertising cookies, and we do not use third-party analytics or tracking cookies. Because the only cookie we set is strictly necessary to provide the service you asked for, no consent banner is required for it under UK PECR and GDPR.
3. The cookie we use
| Cookie | Purpose | Type | Retention |
|---|---|---|---|
next-auth.session-token / __Secure-next-auth.session-token | Keeps you signed in to your account (authentication session). | Strictly necessary, first-party | Up to 30 days, or until you sign out |
This is a first-party session cookie set by our authentication layer (NextAuth). It contains a signed token, not your personal details, and it is never used for advertising or cross-site tracking.
4. Third-party services
When you make a payment, checkout is handled by our payment provider, and when you sign in with Google, authentication is handled by Google. These providers may set their own cookies on their own pages under their own policies. We do not control those cookies. See the provider's policy for details.
5. Managing cookies
You can block or delete cookies through your browser settings at any time. Because our only cookie is strictly necessary, blocking it will sign you out and prevent you from using account features, but you can still browse our public pages.
6. Changes and contact
If we ever introduce new cookies, we will update this policy and, where the law requires it, ask for your consent first. Questions about cookies? Email pivotpath01@gmail.com.