Last updated 20 September 2026
Cookie Notice
Yapito uses only storage that is necessary to sign you in securely and complete actions you request. We do not use advertising or analytics cookies.
What Yapito stores
- yapito-session — a signed, HTTP-only authentication cookie. It lasts up to seven days and is removed when you sign out.
- yapito-google-state — prevents OAuth request forgery during Google sign-in. It lasts up to ten minutes.
- yapito-google-verifier — completes the PKCE security check for Google sign-in. It lasts up to ten minutes.
- yapito-auth-return-to — returns you to the page you requested after sign-in. It lasts up to ten minutes.
- yapito-pending-script — browser session storage that preserves the draft you entered before the sign-in redirect. It is removed after a successful generation or when the browser clears that session storage.
Why there is no cookie banner
These technologies are strictly necessary to deliver authentication, security, and the generation flow you request. Yapito currently sets no optional advertising, personalization, or analytics cookies, so there is nothing optional to accept or reject. We will add a prior consent control before introducing any non-essential storage where consent is required.
Your controls
You can remove cookies and session storage using your browser settings. Removing the session cookie signs you out, and removing the pending draft prevents the draft from resuming after authentication. For server-held data, use Privacy Controls.