Cookie Policy
Last updated: May 2026
Overview
CostShare uses a small number of strictly necessary cookies to operate the service. These cookies are required for authentication, session management, and basic security. We do not use analytics, advertising, tracking, profiling, or third-party marketing cookies.
No tracking cookies
We do not place cookies for analytics, advertising, social media, or cross-site tracking. Your activity in CostShare is not sold or shared for marketing purposes.
Cookies we use
| Cookie name | Purpose | Type | Retention |
|---|---|---|---|
costshare_session |
Maintains your signed-in session and protects forms with CSRF tokens. | Session | Deleted when you close your browser |
costshare_remember |
Keeps you signed in on a trusted device when you choose “Remember this device”. | Persistent | Up to 30 days (extended on use) |
costshare_cookie_info |
Stores that you dismissed the informational cookie notice. | Persistent | 1 year |
Remember this device
When you select “Remember this device” at login, we store a secure authentication token in a persistent cookie. Only a hashed token is stored in our database. Tokens rotate when used and expire automatically. You can revoke remembered devices at any time in account settings.
Your controls
You can sign out, sign out from all devices, review remembered devices, and revoke individual devices from Account Settings. You can also avoid remember-me cookies by not selecting “Remember this device” at login.
Consent
Strictly necessary authentication cookies do not require opt-in consent under GDPR/ePrivacy rules. We show an informational notice once to explain how cookies are used. Authentication continues to work without an “Accept” banner.