Overview

CostShare uses a small number of strictly necessary cookies to operate the service. These cookies are required for authentication, session management, and basic security. We do not use analytics, advertising, tracking, profiling, or third-party marketing cookies.

No tracking cookies

We do not place cookies for analytics, advertising, social media, or cross-site tracking. Your activity in CostShare is not sold or shared for marketing purposes.

Cookies we use

Cookie name Purpose Type Retention
costshare_session Maintains your signed-in session and protects forms with CSRF tokens. Session Deleted when you close your browser
costshare_remember Keeps you signed in on a trusted device when you choose “Remember this device”. Persistent Up to 30 days (extended on use)
costshare_cookie_info Stores that you dismissed the informational cookie notice. Persistent 1 year

Remember this device

When you select “Remember this device” at login, we store a secure authentication token in a persistent cookie. Only a hashed token is stored in our database. Tokens rotate when used and expire automatically. You can revoke remembered devices at any time in account settings.

Your controls

You can sign out, sign out from all devices, review remembered devices, and revoke individual devices from Account Settings. You can also avoid remember-me cookies by not selecting “Remember this device” at login.

Consent

Strictly necessary authentication cookies do not require opt-in consent under GDPR/ePrivacy rules. We show an informational notice once to explain how cookies are used. Authentication continues to work without an “Accept” banner.