Cookie Policy.
Every cookie, every local-storage key, every browser-side identifier we use. Listed by name, with the exact purpose and lifetime.
01What this policy covers
This Cookie Policy explains how Hey Gaargi uses cookies and similar technologies (web storage, IndexedDB, pixel tags, mobile-app local stores) when you visit heygaargi.com or use the Hey Gaargi mobile application. It supplements our Privacy Policy.
02What is a cookie?
A cookie is a small text file stored by your browser at the request of a website. Cookies allow the website to remember your actions or preferences across pages and visits. Local storage and session storage are similar mechanisms, but the data lives in your browser's storage area rather than as a file. The Hey Gaargi mobile app uses platform-native storage (iOS Keychain, Android EncryptedSharedPreferences) for the same purposes.
03Cookies we use
We classify our cookies into three categories: strictly necessary (no opt-out — without them the Service does not work), functional (no opt-out — they remember your preferences), and analytics (opt-out available from the cookie banner or Settings → Privacy → Cookies). We do not use advertising, retargeting, or social-tracking cookies.
3.1 Strictly necessary
| Name | Purpose & lifetime |
|---|---|
gaargi_session | Authenticates your logged-in session. HTTP-only, Secure, SameSite=Lax. Lifetime: 30 days, sliding renewal. |
gaargi_csrf | Cross-site request forgery protection token. HTTP-only. Lifetime: per session. |
cf_clearance | Set by Cloudflare to validate your client when challenged. Lifetime: 30 minutes. |
3.2 Functional
| Name | Purpose & lifetime |
|---|---|
gargi-theme (localStorage) | Remembers whether you chose light or dark mode. Lifetime: until you clear browser data. |
gaargi_lang | Remembers your preferred display language. Lifetime: 1 year. |
gaargi_ayanamsa (localStorage) | Remembers your chosen ayanāṁśa (default: Lahirī). Lifetime: until cleared. |
gaargi_cookie_consent | Remembers your cookie-banner choices. Lifetime: 12 months. |
3.3 Analytics (opt-in / opt-out)
| Name | Purpose & lifetime |
|---|---|
ph_* (self-hosted PostHog) | Pseudonymous usage analytics on a server we operate in AWS Mumbai. No data leaves our infrastructure. IP addresses are truncated at the source. Lifetime: 12 months. |
04Third-party cookies
In production, the only third-party cookies are those set by Cloudflare (network-edge security) and the payment-flow domain operated by Cashfree while you are actively completing a payment. Neither party tracks you across other websites on our behalf. We do not use Google Analytics, Facebook Pixel, or any advertising tracker.
05Your choices
- On first visit, we show a cookie banner. You can accept all, reject non-essential, or customise.
- You can change your choices at any time from Settings → Privacy → Cookies, or by clearing
gaargi_cookie_consentfrom your browser. - Your browser also lets you block or delete cookies entirely — see aboutcookies.org for instructions per browser. Blocking strictly-necessary cookies will break login.
06Do Not Track and GPC
We honour the Global Privacy Control (GPC) signal: if your browser sends GPC, we treat it as an opt-out of analytics cookies, equivalent to declining in our banner. We also respect the legacy Do Not Track header where supported.
07Changes to this policy
If we add a cookie or change an existing one's purpose, we will update this page and re-prompt you for consent at the cookie banner where required.
08Contact
Questions about cookies — write to privacy@heygaargi.com.