Cookie Policy
Last updated: March 2026
1. What Are Cookies
Cookies are small text files that are stored on your device (computer, tablet, or mobile) when you visit a website. They are widely used to make websites work efficiently and to provide information to the website operator.
ThinQr uses a minimal set of cookies, primarily for authentication and essential functionality. We do not use advertising cookies and we do not sell your data.
We measure how people use ThinQr so we can see what works and fix what is confusing. For visitors who have not given consent, this measurement is anonymous and stores nothing on your device. If you accept, we also set an analytics cookie and keep a pseudonymous ID. While you are signed in, that ID is linked to your account and your company. Inside your account we count which pages you open and a few product milestones. We never record what is on those pages, and session recording never runs there.
2. Cookies We Use
Strictly Necessary Cookies
These cookies are essential for the Service to function. They cannot be disabled without breaking core functionality. No consent is required for these cookies under GDPR/ePrivacy.
| Cookie | Purpose | Duration | Type |
|---|---|---|---|
sb-*-auth-token | Supabase authentication session. Maintains your login state across page loads and browser sessions. | Session / 1 year | Strictly necessary |
thinqr_session_id | Session identifier for anonymous users during the Business Map questionnaire. Links your session to your responses before you create an account. httpOnly, server-set. | 7 days | Strictly necessary |
Marketing Cookies
These cookies require your explicit consent before being set. You can accept or reject them at any time.
| Cookie | Purpose | Duration | Type |
|---|---|---|---|
thinqr_lead_id | Marketing attribution. Used to identify returning visitors and track which marketing channel led to conversion. Only set if you consent to marketing cookies. | 90 days | Marketing (consent required) |
ph_* (PostHog) | Product analytics. Gives a returning visitor a pseudonymous ID so we can tell one visit from two. Once you sign in, that ID is linked to your account and your company. Also enables session recording on our public marketing and Business Map pages only. Only set if you accept. PostHog stores this data in the EU. | 12 months | Analytics (consent required) |
Session recording applies only to our public pages. It never runs on signed-in areas such as your dashboard, your team records, contracts or the employee portal.
3. How to Control Cookies
Browser Settings
Most web browsers allow you to control cookies through their settings. You can typically:
- View what cookies are stored on your device
- Delete individual or all cookies
- Block cookies from specific or all websites
- Block third-party cookies
- Accept all cookies
- Receive a notification when a cookie is set
Note that blocking strictly necessary cookies will prevent ThinQr from functioning correctly (you will not be able to log in or maintain a session).
Managing Marketing and Analytics Cookies
You can change or withdraw your consent at any time using the Cookie Preferences link in the footer. Withdrawing takes effect immediately. It stops session recording, clears the pseudonymous visitor ID, and removes the cookies that were set. We do not set the thinqr_lead_id or PostHog cookies without prior consent.
4. Similar Technologies
ThinQr also uses localStorage for client-side preferences such as sidebar expanded/collapsed state (thinqr-sidebar-expanded). This data stays on your device and is never transmitted to our servers.
5. Changes to This Policy
We may update this Cookie Policy to reflect changes in our cookie usage. Any updates will be posted on this page with a revised date.
6. Contact
For questions about our use of cookies, contact us at privacy@thinqr.com.