In plain English: PixelProof uses a small number of cookies to keep you signed in, protect forms from cross-site attacks, and, only if you say yes on the cookie banner, to understand which pages people find useful and to catch errors before they become support tickets. We do not run third-party advertising cookies, and we do not sell or share cookie data with data brokers or ad networks.
1. How your choice works
The first time you visit, a banner asks you to Accept all, Decline non-essential, or Manage preferences. Essential cookies always run (the site cannot function without them, see the table below). Analytics and error-tracking cookies only run if you accept. If our system detects you're visiting from the EU/EEA/UK/Switzerland (via a coarse, server-side country signal, no precise location is stored), analytics defaults to off until you explicitly accept, per GDPR. Everyone else gets the CalOPPA default: analytics runs unless you decline. Your choice is saved in your browser's local storage and a first-party cookie for one year; you can change it any time by clearing your browser's site data for this domain and reloading.
2. Cookie categories
| Cookie | Category | What it does | Duration | Runs before consent? |
|---|---|---|---|---|
de_session | Essential | Keeps you signed in to your account / the Andy admin dashboard. | Session | Yes, required for login to function. |
de_cookie_consent | Essential | Remembers your Accept/Decline choice from the cookie banner so we don't ask again every page. | 1 year | Yes, this is the choice itself. |
de_geo_eu | Essential | Coarse EU/non-EU flag (no city/precise location) used only to pick the right consent default. | 24 hours | Yes. |
| CSP nonce header (not a cookie, listed for transparency) | Essential | Per-request Content-Security-Policy nonce that lets our own scripts run and blocks injected ones. Never stored client-side. | Single request | Yes. |
__stripe_mid, __stripe_sid | Essential (payments) | Set by Stripe.js on the checkout page only, fraud prevention required to process a card. | Up to 1 year | Yes, checkout-page only, necessary for payment processing (GDPR Art. 6(1)(b)). |
ph_* (PostHog) | Analytics | Anonymous/pseudonymous device ID for pageview and product-usage analytics, plus masked session replay (all typed text and inputs are masked, never recorded in plaintext). | Up to 1 year | No, only after you Accept. |
sentry-* (local storage, not a cookie) | Analytics / error tracking | Client-side JS error reports so we can find and fix bugs. No page content or form values are captured. | Session | No, only after you Accept. |
3. Rewardful (affiliate tracking)
Our affiliate program uses Rewardful on the backend to attribute signups to affiliate links. As of August 13, 2026, Rewardful does not run a client-side tracking script on this domain, attribution happens via a referral parameter captured server-side at signup, not a browser cookie. If we add a client-side Rewardful snippet in the future, it will be gated behind this same consent choice and this page will be updated to list its cookie.
4. Third-party cookie policies
5. Your choices
Change your decision any time via your browser's site-settings (clear cookies/site data for this domain and reload to see the banner again), or block cookies entirely in your browser settings, essential cookies are required for login and checkout to function, so blocking them browser-wide will break those flows here and on most other sites.
8. Do Not Track and Global Privacy Control
We honor the browser-level Global Privacy Control (GPC) signal for California visitors: if your browser sends a GPC opt-out signal, we treat it as equivalent to clicking "Decline non-essential" and skip analytics/error-tracking init entirely, without needing you to also interact with the banner. Legacy "Do Not Track" (DNT) headers are not a legally binding signal under CCPA/CPRA the way GPC is, but if your browser sends DNT: 1, we treat that the same way, as a decline, out of caution rather than technicality-hunting.
9. Legal basis for each category
Essential cookies run under GDPR Art. 6(1)(b) (necessary to perform the contract, you can't stay logged in or check out without them) and are outside the scope of ePrivacy consent requirements for exactly that reason. Analytics and error-tracking cookies run under GDPR Art. 6(1)(a), your freely-given, specific, informed consent via the banner, which is why they default off for EU visitors until you actively accept, and why declining costs you nothing: every core feature works identically either way.
10. Browser-level controls
You can also block or clear cookies at the browser level instead of (or in addition to) using our banner: Chrome, Settings → Privacy and security → Cookies; Safari, Settings → Privacy → Manage Website Data; Firefox, Settings → Privacy & Security → Cookies and Site Data. Blocking essential cookies browser-wide will log you out and may break checkout, on this site and most others, that's a browser-level tradeoff, not something our banner controls.
11. Related pages
12. Contact
Questions about this policy: hello@citationsafe.com.
Digital Empire Holdings LLC, 30 N Gould St Ste N, Sheridan WY 82801