Legal

Cookie Policy

Last updated: 24 August 2026.

1. What this page covers

This page lists everything Dimax Pro places in your browser — cookies and similar device storage — with its name, who sets it, what it is for and how long it lasts. Everything listed here is strictly necessary to run the platform. We do not use advertising cookies, analytics cookies, session recording or cross-site tracking, and that is why we do not show a consent banner: there is no optional tracking to accept or decline.

2. Cookies we set

  • sb-<project>-auth-token (may be split into numbered parts) — set by our authentication provider (Supabase) when you sign in. It holds your session and keeps you logged in. It lasts up to 400 days and is renewed while you use the platform; signing out removes it.
  • dimax_oauth_intent — set by Dimax Pro when you start sign-up or sign-in with Google. It carries your chosen account type, your acceptance of the Terms and the page to return you to across the Google redirect. It lasts 15 minutes and is deleted as soon as you return.

3. Security check (Cloudflare Turnstile)

On the login, sign-up, password-reset and application pages we load Cloudflare Turnstile, a security check that tells humans from bots. The widget loads from challenges.cloudflare.com, and Cloudflare may use its own cookies within that widget for the sole purpose of running the check. This protects the platform against automated abuse and is strictly necessary on those pages.

4. Device storage that is not a cookie

  • dimax_request_draft (sessionStorage) — keeps the campaign request form you are filling in so it survives the login step. It never leaves your browser and is deleted when you close the tab.
  • dimax_welcomed_<id> (localStorage) — a one-time marker so we send your welcome email only once. It stays in your browser until you clear site data.

5. Error monitoring (no cookies)

We use Sentry to be told when something on the platform breaks. Sentry sets no cookies. If an error happens, your browser sends an error report — what failed, on which page, and the browser type — to Sentry, which processes it for us on servers in the United States. We have configured these reports to exclude your identity and the content of your requests. This is described in our Privacy Policy.

6. Managing cookies

You can delete or block cookies in your browser settings at any time. Because everything we set is needed for the platform to work, blocking it will break signing in and staying signed in.

7. Contact

For questions about our use of cookies, contact Dimax Pro support.