Cookie Policy
Last Updated: January 30, 2025
1. Introduction
This Cookie Policy explains how SageWiz ("we," "us," or "our") uses cookies and similar tracking technologies when you visit our website and use our services (collectively, the "Service"). This policy should be read in conjunction with our Privacy Policy.
What Are Cookies?
Cookies are small text files that are placed on your device (computer, smartphone, or tablet) when you visit a website. They help the website recognize your device and remember information about your visit, such as your preferences and login status.
2. Types of Cookies We Use
We use different types of cookies for various purposes:
2.1 Essential Cookies (Strictly Necessary)
These cookies are necessary for the Service to function properly. They enable core functionality such as security, authentication, and access to secure areas. The Service cannot function properly without these cookies.
Essential Cookies We Use:
- Session Cookies (Supabase Auth):
Purpose: Maintains your logged-in state and manages authentication sessions
Duration: Session-based (deleted when browser closes) or 30 days if "Remember Me" is selected
Cookie Names: sb-*-auth-token (Supabase authentication token)
- Security Cookies:
Purpose: Protects against cross-site request forgery (CSRF) attacks and validates form submissions
Duration: Session-based
Cookie Names: csrf-token
- User Consent Cookies:
Purpose: Stores your cookie and legal consent preferences
Duration: 1 year
Cookie Names: user-consent, sagewiz_cookie_consent
- Load Balancing Cookies:
Purpose: Ensures your requests are routed to the correct server for optimal performance
Duration: Session-based
Provider: Vercel (hosting infrastructure)
Note: Essential cookies cannot be disabled through our cookie consent tool, as they are required for the Service to operate. However, you can block them through your browser settings (see Section 6).
2.2 Functional Cookies
These cookies enable enhanced functionality and personalization, such as remembering your preferences and settings.
Functional Cookies We Use:
- User Preferences:
Purpose: Remembers your tier selection, dietary preferences, and UI settings
Duration: 1 year
- Cookie Consent:
Purpose: Remembers your cookie preferences to avoid showing the consent banner repeatedly
Duration: 1 year
Cookie Name: sagewiz_cookie_consent
2.3 Performance & Analytics Cookies
These cookies help us understand how visitors interact with the Service by collecting and reporting information anonymously. They help us improve the Service based on usage patterns.
✓ Privacy-First Approach: We currently do not use third-party analytics or tracking services. We rely on server-side application logs and error monitoring for product improvement.
Note: We do NOT use Google Analytics, Facebook Pixel, PostHog, Sentry, or any invasive ad-network tracking. We do not create cross-site user profiles or sell data to advertisers.
2.4 Marketing & Advertising Cookies
We Do NOT Use Advertising Cookies
SageWiz does not use marketing or advertising cookies. We do not track you across websites, build advertising profiles, or share your data with ad networks. Your health information is never used for advertising purposes.
3. Third-Party Cookies
Some third-party services we use may set their own cookies when you interact with their features on our Service:
3.1 Stripe (Payment Processing)
Purpose: Enables secure payment processing and fraud detection
Cookies Set: __stripe_mid, __stripe_sid
Duration: 1 year (persistent) and session-based
Privacy Policy: https://stripe.com/privacy
Data Collected: Payment method details, transaction data, device information for fraud prevention
3.2 Vercel (Hosting Infrastructure)
Purpose: Content delivery network (CDN) optimization and performance monitoring
Duration: Session-based
Privacy Policy: https://vercel.com/legal/privacy-policy
Note: We carefully vet all third-party services to ensure they comply with GDPR, CCPA, and our privacy standards. We do not allow third parties to use cookies for their own advertising or tracking purposes.
4. Similar Technologies
In addition to cookies, we use other tracking technologies:
4.1 Local Storage
We use browser local storage to store non-sensitive data on your device for improved performance and user experience:
- Assessment form draft data (auto-save functionality)
- UI state preferences (collapsed sections, view mode)
- Recently viewed assessments (client-side cache)
- Rate limiting counters (prevents API abuse)
Local storage data remains on your device and is not transmitted to our servers unless you explicitly save or submit information through the Service.
4.2 Session Storage
We use session storage (cleared when browser tab closes) for:
- Temporary form validation state
- Multi-step assessment progress tracking
- Error messages and notifications
4.3 Server Logs
Our web servers automatically collect certain information, including:
- IP address (anonymized after 30 days)
- Browser type and version
- Operating system
- Referring website URLs
- Date and time of access
- Pages visited and resources requested
Server logs are used for security monitoring, troubleshooting, and performance optimization. They are retained for 90 days and then permanently deleted.
5. Cookie Duration
Cookies can be categorized by how long they remain on your device:
5.1 Session Cookies
These temporary cookies are deleted automatically when you close your browser. They are used for essential functions like authentication and security.
5.2 Persistent Cookies
These cookies remain on your device for a specified period or until you manually delete them. They are used to remember your preferences and settings.
Our Persistent Cookie Durations:
- Authentication cookies: 30 days (if "Remember Me" is selected)
- User preferences: 1 year
- Cookie consent: 1 year
- Stripe fraud detection: 1 year
6. How to Control Cookies
You have several options to control or delete cookies:
6.1 Browser Settings
Most browsers allow you to manage cookie preferences through their settings. You can typically:
- View cookies stored on your device
- Delete all cookies or specific cookies
- Block cookies from all websites or specific websites
- Set preferences for third-party cookies
- Clear cookies automatically when closing the browser
Browser-Specific Instructions:
- Google Chrome: Chrome Cookie Settings
- Mozilla Firefox: Firefox Cookie Settings
- Safari: Safari Cookie Settings
- Microsoft Edge: Edge Cookie Settings
6.2 Do Not Track (DNT)
Some browsers offer a "Do Not Track" (DNT) signal that requests websites not to track your browsing activity. However, there is no industry standard for how to respond to DNT signals.
Our DNT Policy: SageWiz respects DNT signals. When we detect a DNT signal, we will disable optional analytics and tracking cookies while maintaining essential cookies required for the Service to function.
6.3 Mobile Devices
Mobile browsers also offer cookie management options:
- iOS (Safari): Settings → Safari → Block All Cookies or Prevent Cross-Site Tracking
- Android (Chrome): Settings → Privacy → Clear browsing data → Cookies and site data
Impact of Blocking Cookies
If you block or delete cookies, some features of the Service may not function properly. Specifically, you may experience:
- Inability to log in or stay logged in
- Loss of saved preferences and settings
- Repeated consent banners
- Degraded performance or functionality
7. Cookie Consent
7.1 EU/EEA Users (GDPR)
If you are located in the European Union or European Economic Area, we will request your explicit consent before setting non-essential cookies. You can:
- Accept all cookies
- Reject non-essential cookies
- Customize your cookie preferences by category
- Change your preferences at any time via Cookie Preferences
7.2 Other Jurisdictions
For users outside the EU/EEA, we provide a cookie notice upon your first visit and offer the ability to manage cookie preferences through your account settings or browser controls.
8. Updates to This Cookie Policy
We may update this Cookie Policy from time to time to reflect changes in our cookie usage, technology, or legal requirements. We will notify you of material changes by:
- Updating the "Last Updated" date at the top of this policy
- Displaying a notice on the Service
- Requesting renewed consent for new cookie types (if required by law)
Your continued use of the Service after changes to this Cookie Policy constitutes acceptance of the updated policy.
9. Contact Us
If you have questions about our use of cookies or this Cookie Policy, please contact us:
SageWiz Cookie Inquiries
Privacy Team: privacy@sagewiz.org
General Support: support@sagewiz.org
Data Protection Officer: dpo@sagewiz.org
By using SageWiz, you acknowledge that you have read and understood this Cookie Policy and consent to our use of cookies as described.
Last Updated: January 30, 2025 | Effective Date: January 30, 2025