SageWiz

Cookie Policy

Last Updated: January 30, 2025

1. Introduction

This Cookie Policy explains how SageWiz ("we," "us," or "our") uses cookies and similar tracking technologies when you visit our website and use our services (collectively, the "Service"). This policy should be read in conjunction with our Privacy Policy.

What Are Cookies?

Cookies are small text files that are placed on your device (computer, smartphone, or tablet) when you visit a website. They help the website recognize your device and remember information about your visit, such as your preferences and login status.

2. Types of Cookies We Use

We use different types of cookies for various purposes:

2.1 Essential Cookies (Strictly Necessary)

These cookies are necessary for the Service to function properly. They enable core functionality such as security, authentication, and access to secure areas. The Service cannot function properly without these cookies.

Essential Cookies We Use:

  • Session Cookies (Supabase Auth):

    Purpose: Maintains your logged-in state and manages authentication sessions

    Duration: Session-based (deleted when browser closes) or 30 days if "Remember Me" is selected

    Cookie Names: sb-*-auth-token (Supabase authentication token)

  • Security Cookies:

    Purpose: Protects against cross-site request forgery (CSRF) attacks and validates form submissions

    Duration: Session-based

    Cookie Names: csrf-token

  • User Consent Cookies:

    Purpose: Stores your cookie and legal consent preferences

    Duration: 1 year

    Cookie Names: user-consent, sagewiz_cookie_consent

  • Load Balancing Cookies:

    Purpose: Ensures your requests are routed to the correct server for optimal performance

    Duration: Session-based

    Provider: Vercel (hosting infrastructure)

Note: Essential cookies cannot be disabled through our cookie consent tool, as they are required for the Service to operate. However, you can block them through your browser settings (see Section 6).

2.2 Functional Cookies

These cookies enable enhanced functionality and personalization, such as remembering your preferences and settings.

Functional Cookies We Use:

  • User Preferences:

    Purpose: Remembers your tier selection, dietary preferences, and UI settings

    Duration: 1 year

  • Cookie Consent:

    Purpose: Remembers your cookie preferences to avoid showing the consent banner repeatedly

    Duration: 1 year

    Cookie Name: sagewiz_cookie_consent

2.3 Performance & Analytics Cookies

These cookies help us understand how visitors interact with the Service by collecting and reporting information anonymously. They help us improve the Service based on usage patterns.

✓ Privacy-First Approach: We currently do not use third-party analytics or tracking services. We rely on server-side application logs and error monitoring for product improvement.

Note: We do NOT use Google Analytics, Facebook Pixel, PostHog, Sentry, or any invasive ad-network tracking. We do not create cross-site user profiles or sell data to advertisers.

2.4 Marketing & Advertising Cookies

We Do NOT Use Advertising Cookies

SageWiz does not use marketing or advertising cookies. We do not track you across websites, build advertising profiles, or share your data with ad networks. Your health information is never used for advertising purposes.

3. Third-Party Cookies

Some third-party services we use may set their own cookies when you interact with their features on our Service:

3.1 Stripe (Payment Processing)

Purpose: Enables secure payment processing and fraud detection

Cookies Set: __stripe_mid, __stripe_sid

Duration: 1 year (persistent) and session-based

Privacy Policy: https://stripe.com/privacy

Data Collected: Payment method details, transaction data, device information for fraud prevention

3.2 Vercel (Hosting Infrastructure)

Purpose: Content delivery network (CDN) optimization and performance monitoring

Duration: Session-based

Privacy Policy: https://vercel.com/legal/privacy-policy

Note: We carefully vet all third-party services to ensure they comply with GDPR, CCPA, and our privacy standards. We do not allow third parties to use cookies for their own advertising or tracking purposes.

4. Similar Technologies

In addition to cookies, we use other tracking technologies:

4.1 Local Storage

We use browser local storage to store non-sensitive data on your device for improved performance and user experience:

  • Assessment form draft data (auto-save functionality)
  • UI state preferences (collapsed sections, view mode)
  • Recently viewed assessments (client-side cache)
  • Rate limiting counters (prevents API abuse)

Local storage data remains on your device and is not transmitted to our servers unless you explicitly save or submit information through the Service.

4.2 Session Storage

We use session storage (cleared when browser tab closes) for:

  • Temporary form validation state
  • Multi-step assessment progress tracking
  • Error messages and notifications

4.3 Server Logs

Our web servers automatically collect certain information, including:

  • IP address (anonymized after 30 days)
  • Browser type and version
  • Operating system
  • Referring website URLs
  • Date and time of access
  • Pages visited and resources requested

Server logs are used for security monitoring, troubleshooting, and performance optimization. They are retained for 90 days and then permanently deleted.

5. Cookie Duration

Cookies can be categorized by how long they remain on your device:

5.1 Session Cookies

These temporary cookies are deleted automatically when you close your browser. They are used for essential functions like authentication and security.

5.2 Persistent Cookies

These cookies remain on your device for a specified period or until you manually delete them. They are used to remember your preferences and settings.

Our Persistent Cookie Durations:

  • Authentication cookies: 30 days (if "Remember Me" is selected)
  • User preferences: 1 year
  • Cookie consent: 1 year
  • Stripe fraud detection: 1 year

6. How to Control Cookies

You have several options to control or delete cookies:

6.1 Browser Settings

Most browsers allow you to manage cookie preferences through their settings. You can typically:

  • View cookies stored on your device
  • Delete all cookies or specific cookies
  • Block cookies from all websites or specific websites
  • Set preferences for third-party cookies
  • Clear cookies automatically when closing the browser

Browser-Specific Instructions:

6.2 Do Not Track (DNT)

Some browsers offer a "Do Not Track" (DNT) signal that requests websites not to track your browsing activity. However, there is no industry standard for how to respond to DNT signals.

Our DNT Policy: SageWiz respects DNT signals. When we detect a DNT signal, we will disable optional analytics and tracking cookies while maintaining essential cookies required for the Service to function.

6.3 Mobile Devices

Mobile browsers also offer cookie management options:

  • iOS (Safari): Settings → Safari → Block All Cookies or Prevent Cross-Site Tracking
  • Android (Chrome): Settings → Privacy → Clear browsing data → Cookies and site data

Impact of Blocking Cookies

If you block or delete cookies, some features of the Service may not function properly. Specifically, you may experience:

  • Inability to log in or stay logged in
  • Loss of saved preferences and settings
  • Repeated consent banners
  • Degraded performance or functionality

7. Cookie Consent

7.1 EU/EEA Users (GDPR)

If you are located in the European Union or European Economic Area, we will request your explicit consent before setting non-essential cookies. You can:

  • Accept all cookies
  • Reject non-essential cookies
  • Customize your cookie preferences by category
  • Change your preferences at any time via Cookie Preferences

7.2 Other Jurisdictions

For users outside the EU/EEA, we provide a cookie notice upon your first visit and offer the ability to manage cookie preferences through your account settings or browser controls.

8. Updates to This Cookie Policy

We may update this Cookie Policy from time to time to reflect changes in our cookie usage, technology, or legal requirements. We will notify you of material changes by:

  • Updating the "Last Updated" date at the top of this policy
  • Displaying a notice on the Service
  • Requesting renewed consent for new cookie types (if required by law)

Your continued use of the Service after changes to this Cookie Policy constitutes acceptance of the updated policy.

9. Contact Us

If you have questions about our use of cookies or this Cookie Policy, please contact us:

SageWiz Cookie Inquiries

Privacy Team: privacy@sagewiz.org

General Support: support@sagewiz.org

Data Protection Officer: dpo@sagewiz.org

By using SageWiz, you acknowledge that you have read and understood this Cookie Policy and consent to our use of cookies as described.

Last Updated: January 30, 2025 | Effective Date: January 30, 2025