Legal

Cookie Policy

Last updated: August 11, 2026

1. Overview

This policy explains the cookies and similar device-storage technologies used by Orbit. Orbit does not use analytics, advertising, behavioral-tracking or third-party marketing cookies.

2. Essential technologies

The technologies below are necessary for the service you request or store a user-selected interface preference. They are not used to create an advertising profile or sell personal information.

  • Auth.js session cookie (usually authjs.session-token or its secure-prefixed equivalent): keeps an authenticated user signed in. It is set by the authentication service and is protected with the security attributes configured for the environment.
  • orbit_oauth_state_{provider} and orbit_oauth_pkce_{provider}: short-lived, HTTP-only OAuth security cookies. They prevent request forgery and support PKCE during a connection to a platform. Duration: up to 10 minutes.
  • sidebar_state: remembers whether the dashboard sidebar is expanded or collapsed. Duration: 7 days.
  • theme local storage: remembers the selected light or dark interface theme. It is local browser storage, not a cookie.

3. Controls

You can remove cookies and local storage through your browser settings. Removing essential technologies can prevent sign-in, secure OAuth connections, or saved interface preferences from working. Orbit does not provide an optional-cookie banner because it does not set optional tracking technologies.

4. Future changes

If Orbit introduces analytics, advertising, heatmaps, or another non-essential technology, we will update this policy and obtain any required prior opt-in consent before setting it.

5. Contact

For privacy or cookie questions, contact privacy@fluxcore.website. Read the wider data notice in our Privacy Policy.