Cookies
Cookie Policy
Last updated: 2026-06-06. We use a small, deliberate set of cookies and similar storage to keep you signed in and to remember preferences you set. We don't run third-party advertising cookies or analytics that follow you around the web.
What cookies are
A cookie is a small piece of data a site stores on your device.
Related technologies include browser localStorage,
session storage, IndexedDB (offline content), and the storage
that the native mobile and desktop apps use to keep you signed
in. Throughout this page "cookie" covers all of them.
What we use, and why
| Name | Purpose | Lifetime |
|---|---|---|
bhq_session | Strictly necessary — keeps you signed in. HTTP-only, Secure, SameSite=Lax. | Up to 14 days; refreshed on activity. |
bhq_csrf | Strictly necessary — protects against cross-site request forgery on form submissions. | Session. |
| Auth0 session |
Strictly necessary — used during sign-in if you authenticate
through Auth0. Lives on *.auth0.com, not on
our domain.
| Per Auth0's defaults. |
localStorage:bhq_theme | Preference — remembers your theme (light / dark / cool). | Until cleared. |
| IndexedDB: offline queue | Strictly necessary — stores log entries you create while offline so they can sync when connectivity returns. | Until synced or cleared. |
| Service worker cache | Performance — caches assets and the app shell so the web app loads quickly on revisit. | Until the next major release. |
What we don't use
- Advertising cookies. We don't sell ads and don't allow third-party ad networks on our properties.
- Cross-site tracking. Nothing on our site reports back to a tracker.
- Third-party analytics. We rely on server logs and aggregate, anonymous product metrics. We don't load Google Analytics, Facebook Pixel, or similar.
How to control cookies
Your browser lets you delete or block cookies in its settings. Blocking the strictly-necessary cookies above will sign you out and prevent the product from working. The preference cookies are safe to clear; you'll just lose the preference.
On the desktop app, signing out clears the session cookie. On iOS and Android (when those builds ship) you can clear app data from your device settings.
Changes
If we add or remove a cookie, we'll update this page and the "Last updated" date at the top. For material changes (e.g. introducing a new category), we'll surface a notice inside the product.
Contact
Questions: support@buildinghq.app.