Back to home

Cookie policy

The cookies ECSTI sets, what they do, and how to control them.

Last updated: September 19, 2026.

1. What cookies we use

Cookies are small data files stored on your device. We use them to keep you signed in and, where enabled, to understand how the platform is used. This page lists the cookies we set, grouped by purpose.

2. Strictly necessary cookies

These are required for the platform to work and cannot be turned off. They are set by ECSTI, not by third parties.

  • better-auth.session_token — keeps you signed in.
  • better-auth.session_data — a short-lived (about five minutes) signed copy of your session, so we can read it without a database round-trip on every request.
  • better-auth.state — a temporary cookie used only during Google sign-in to protect the login exchange; it is cleared once sign-in completes.

3. Analytics and performance

We use these to measure how the platform is used and how it performs.

  • PostHog (ph_*) — product analytics, session replay, heatmaps: which features are used and how flows perform. Set only when PostHog is configured for the deployment (the marketing site falls back to the same PostHog project as ecsti.io).
  • Google Analytics (_ga, _ga_*) — aggregate traffic and usage measurement. Set only when a Google Analytics measurement ID is configured.
  • X (Twitter) conversion — advertising conversion measurement on the marketing site only. Loaded only after analytics consent is granted.

4. Managing cookies

How analytics cookies are handled depends on where you are:

  • On the ECSTI website (ecsti.io), analytics cookies are not set unless you accept them in the cookie banner. You can change your choice at any time using the "Cookie preferences" link in the footer.
  • In the ECSTI product, analytics cookies are on by default and you can turn them off at any time under Settings → Legal → "Cookie preferences".

Strictly necessary cookies cannot be disabled without breaking sign-in. You can also control or delete cookies through your browser settings, and opt out of specific analytics services directly — for example, via PostHog and Google Analytics.

5. Changes to this policy

We may update this Cookie Policy as the services we use change. We will post the revised version on this page and update the "last updated" date above.

6. Contact us

If you have questions about our use of cookies, contact us at support@ecsti.io.

This policy is provided for general informational purposes and does not constitute legal advice.