Policy

Cookie Policy

Last updated: 17 August 2026 · Applies to TrueSmush (GDPR, ePrivacy, UK GDPR, CCPA)

In short: we only use browser storage for things that make the site work — your login, your preferences, and your consent choice. No third-party tracking cookies, no ads, no analytics. You stay in control.

1. What are cookies and browser storage?

Cookies are small text files placed on your device by websites you visit. Browser storage (like localStorage) is a similar mechanism that lets a site keep small amounts of data in your browser. Both help websites remember you and your preferences between visits. This policy explains what we store, why, and how you can control it.

2. How we use cookies and storage

TrueSmush keeps things simple: we do not use third-party tracking, advertising, or social cookies, and we have no analytics cookies. Everything we store is either essential (to make the site work, like keeping you logged in) or a preference you chose yourself (like the “email sent” message or the consent choice itself). All data lives in your browser — we never read it server-side beyond what you explicitly send.

3. Cookies and storage we use

The table below lists everything the site stores in your browser. None of it is shared with third parties.

4. Your consent (GDPR & ePrivacy)

When you first visit, our consent banner asks you to Accept all or choose Essential only. Your choice is stored as tp_cookie_consent and you can change it at any time via the “Cookies” link in the footer — the banner will reopen so you can update your decision. Essential storage (session, security) is required for the service to function and is not optional.

5. Your rights (GDPR, UK GDPR & CCPA)

Depending on where you are, you may have rights over the data we hold: the right to access, correct, or delete your personal data (GDPR / UK GDPR), to data portability, and — for California residents under the CCPA — the right to know what we collect, to request deletion, and to opt out of any “sale” or “sharing” of personal information. We do not sell or share personal information. To exercise any of these rights, contact us at [email protected] and we will respond within the timeframes required by law.

6. Third-party cookies

We do not use third-party cookies, advertising networks, or social media pixels. Because we are hosted on Vercel and served through Cloudflare, those providers may process technical data (such as IP addresses) to deliver and protect the service, but they do not set cookies for tracking purposes on our site.

7. Managing cookies and storage in your browser

You can clear or block browser storage at any time: in most browsers, use Settings → Privacy (or Cookies) → Clear browsing data, or block sites from storing data. Note that clearing essential storage will log you out and reset your consent choice (the banner will ask again).

8. Changes to this policy

We may update this Cookie Policy as our services evolve. When we do, the “Last updated” date below changes, and material changes will be noted on the status page or blog. Continued use of the site after changes means you accept the updated policy.

9. Contact us

Questions about cookies or your data? Email [email protected], or open an issue on GitHub (gadookteam/tinypixel). We usually reply within one business day — faster if the kettle is already on.

Cookies and storage we use

NameTypePurposeStorageExpiry
tp_cookie_consentEssentialRemembers your cookie consent choice so the banner only asks once.localStorageUntil cleared
tp_sessionEssentialSession token that keeps you logged in to your account and dashboard.localStorage30 days (token TTL)
tp_userPreferencesCached account display info (email/name) for the UI.localStorageUntil cleared
tp_keyreq_emailPreferencesRemembers the email you requested an API key for, so the “email sent” message survives a page reload.localStorageUntil cleared

Need more detail? Read the privacy policy, refund policy, or contact us.