Last updated: September 17, 2026
Cookies are small text files placed on your device by a website when you visit it. They are widely used to make websites function efficiently, store your preferences, and provide analytical information to operators.
We also use related technologies such as local storage and session storage where appropriate. This policy refers to all such technologies collectively as "cookies."
Culixur uses cookies strictly for operational necessity and basic analytics. We do not use advertising cookies, cross-site tracking, or third-party behavioural profiling. Our guiding principle is to use the minimum cookies required to deliver a secure, functional experience.
Essential for the Platform to function. They enable core features such as authentication, session management, and security. These cookies cannot be disabled; without them, the Platform cannot operate.
Remember your preferences and settings to improve your experience (e.g., saved view state, form auto-fill). Disabling these may affect the usability of certain features but will not prevent access.
Collect anonymised, aggregated information about how the Platform is used, including pages visited, session duration, error events. This data has no personally identifiable information and is used solely to improve platform performance and reliability. You may opt out below.
| Cookie | Purpose | Duration | Type |
|---|---|---|---|
| culixur_session | Maintains your authenticated session | Session | Necessary |
| __Secure-next-auth.session-token | Next.js authentication token | 30 days | Necessary |
| csrf_token | Prevents cross-site request forgery | Session | Necessary |
| culixur_prefs | Stores UI preferences (e.g. active tab) | 1 year | Functional |
| _analytics_id | Anonymous visitor identifier for aggregate analytics | 1 year | Analytics |
All authentication cookies are set with the Secure and HttpOnly flags, meaning they are transmitted only over HTTPS and are not accessible to JavaScript, providing strong protection against session hijacking and cross-site scripting attacks.
Our payment processor Stripe may set cookies on payment-related pages to prevent fraud and comply with PCI DSS requirements. These are strictly necessary for payment processing. Stripe's cookie practices are governed by their own Privacy Policy.
We do not permit any other third parties to set cookies through our Platform.
You can control and delete cookies through your browser settings. Note that disabling strictly necessary cookies will prevent you from logging in or using authenticated features of the Platform.
To opt out of analytics cookies, email privacy@culixur.com with the subject line "Analytics Opt-Out" and we will apply a suppression flag to your account.
We may update this Cookie Policy as our technology or legal obligations change. Material changes will be communicated with reasonable notice. Continued use of the Platform after any update indicates acceptance of the revised policy.
Questions about our use of cookies: privacy@culixur.com
© 2026 Culixur