Version 2026-08-16
Cookie & Storage Notice
Effective 16 August 2026
Flowmap City uses browser storage only where it is necessary to deliver, secure and remember the service you request. The marketing website does not set analytics, advertising, Gravatar, Mapbox, or consent-manager cookies. Optional third-party analytics and error tracking are disabled.
Marketing website (www.flowmap.city)
The current static marketing site does not intentionally write cookies or local storage. Cloudflare processes ordinary request and security metadata to deliver and protect the site. Its essential security mechanisms may use short-lived cookies when necessary to distinguish legitimate traffic from abuse.
Application (app.flowmap.city)
| Name/category | Provider | Purpose | Lifetime |
|---|---|---|---|
Supabase authentication cookies (names may include sb-…-auth-token) | Flowmap City / Supabase | Keep you signed in, refresh the session, and protect authenticated requests. | Session and refresh-token lifetime; refreshed or removed on sign-out. |
| OAuth PKCE verifier | Flowmap City / Supabase | Complete the sign-in flow securely. | Short-lived; removed after callback or expiry. |
| Project workspace preferences and cached state | Flowmap City | Restore the project editor state and user-requested interface settings. | Until the user clears site data or the application replaces it. |
| Browser database/cache used for project files | Flowmap City / DuckDB-Wasm | Process uploaded mapping data locally in the browser. | For the working session or until browser/site data is cleared, depending on browser behavior. |
Your choices
You can remove stored data through your browser settings, but blocking necessary authentication or application storage may prevent sign-in or project features from working. No consent banner is shown because the current service does not enable non-essential browser tracking. If that changes, optional technology will remain blocked until any legally required choice is obtained and this notice is updated.