Cookie policy
Last updated 2026-10-07 · Operated by Final Touch Websites, Calgary, Alberta, Canada
We use a small number of cookies, all of them needed to run the service. We don't use analytics, advertising or tracking cookies, and no third party sets cookies on our pages. Because none of our cookies is optional, there's no consent banner to click through: the law doesn't require one for strictly necessary cookies, and we'd rather not put a pointless pop-up in your way.
The cookies we set
- Session cookie (
better-auth.session_token): keeps you signed in after you use a sign-in link or Google. Lasts up to 14 days of use; deleted when you sign out. - Session cache (
better-auth.session_data): a short-lived copy of your session so pages load without a database check every time. Expires in 5 minutes. - Sign-in state: while you sign in with Google, a short-lived cookie makes sure the response comes back to the same browser that started. Gone within minutes.
- Instagram connection state (
ft_ig_oauth): while you connect Instagram, a 10-minute cookie ties Instagram's reply to your session so nobody else's account can be attached to yours.
All of these are HttpOnly (scripts in the page can't read them), sent only over HTTPS, and restricted to this site.
Other sites you'll visit from here
- Stripe hosts the checkout and billing pages and sets its own cookies there for fraud prevention. See Stripe's cookie policy.
- Instagram hosts its own login screen when you connect your account.
- Google hosts its sign-in screen if you choose Continue with Google.
None of them is loaded inside our pages; you go to them and come back.
Browser storage
We don't use local storage or similar to track you. Your browser may remember a form you half filled in; that stays on your device.
Changes
If we ever add a cookie that isn't strictly necessary, this page will say so first and you'll be asked before it's set.