Cookie Policy

Small files, clear purpose.

This Cookie Policy explains what cookies and similar technologies MeetWho uses, why we use them, how long they last, and how you can accept, reject or change your preferences at any time.

GDPR · ePrivacyKVKK
Last updated · July 23, 2026
Strictly necessary cookies are always on — the service cannot run without them. Analytics cookies (Google Analytics 4) and product-research cookies (Hotjar) are optional and are only set if you accept them in the cookie banner. You can withdraw consent at any time from the “Cookie preferences” link in the footer.
01

What is a cookie?

A cookie is a small text file that a website places on your device to remember information about you, your device or your session. Similar technologies include localStorage, sessionStorage, IndexedDB, service workers, and pixels — this Policy covers all of them.

02

Categories we use

  • Strictly necessary. Required to authenticate you, keep you signed in, remember your language and theme, protect against CSRF and abuse, and route requests. Legal basis: contract / legitimate interests. Consent is not required under GDPR Art. 5(3) ePrivacy exemption.
  • Functional. Remember preferences you actively set (notification opt-in, sidebar collapsed state, filters). Legal basis: consent where the preference is not required to deliver the service you asked for.
  • Analytics. Google Analytics 4 with IP anonymisation and no advertising signals — aggregated page views, feature usage, retention. Legal basis: consent.
  • Product research. Hotjar heatmaps and anonymised session recordings with keystroke suppression and PII masking. Legal basis: consent.
  • Advertising. None. We do not run ad-tech cookies.
03

Cookie table

NameProviderPurposeTypeDuration
sb-*-auth-tokenmeetwho.appAuthentication sessionStrictly necessary1 year
sb-*-refresh-tokenmeetwho.appRefresh access tokensStrictly necessary1 year
mw_localemeetwho.appSelected language (en / tr)Strictly necessary1 year
mw_thememeetwho.appLight/dark preferenceFunctional1 year
mw_cookie_consentmeetwho.appYour cookie choicesStrictly necessary12 months
_ga, _ga_*Google AnalyticsDistinguish users, sessionsAnalytics2 years
_hjSessionUser_*HotjarPersistent Hotjar IDProduct research1 year
_hjSession_*HotjarCurrent session dataProduct research30 minutes
__cf_bm, cf_clearanceCloudflareBot management, DDoS protectionStrictly necessary30 minutes – 1 year

Names beginning with an asterisk are set by the provider with a random suffix per project or session.

04

How to manage cookies

  • Use the cookie banner shown the first time you visit — Accept, Reject non-essential, or open Preferences.
  • Change your mind at any time via the “Cookie preferences” link in the footer.
  • Browser settings let you block or delete cookies for meetwho.app entirely. Note: blocking strictly necessary cookies will sign you out and disable the service.
  • Google Analytics opt-out: install the Google Analytics Opt-out Browser Add-on.
  • Hotjar opt-out: visit hotjar.com/legal/compliance/opt-out.
05

Do Not Track & Global Privacy Control

We honour the Global Privacy Control (GPC) signal for California users under the CPRA — receiving a GPC signal is treated as a request to opt out of the sale/sharing of personal information. We do not currently respond to DNT headers because there is no consistent industry standard.

06

Changes

We update this Policy when we add, remove or change cookies. Material changes are announced in-product. See also our Privacy Policy.

07

Contact

Cookie questions: privacy@meetwho.app.