Cookie Policy
Last updated: 16 June 2026
1. What is a cookie?
A cookie is a small text file placed on your device (computer, tablet, smartphone) by the website you visit. It stores certain information (session, preferences) for the duration of your visit or for later visits.
Beyond standard HTTP cookies, this policy also covers data stored via similar technologies: localStorage, sessionStorage, Web Storage.
2. Categories of cookies used
AdCoach AI distinguishes two families of cookies:
- strictly necessary cookies, essential to the operation of the service, set without prior consent (exemption under Article 82 of the French Data Protection Act);
- optional cookies (analytics and marketing), set only after obtaining your consent via the banner shown on your first visit.
You can accept or decline optional cookies category by category, and change your choice at any time (see §5).
2.1 Strictly necessary cookies (exempt from consent)
Essential to the operation of the Platform. Disabling them would make the service unusable. They are exempt from consent under Article 82 of the French Data Protection Act and CNIL recommendation no. 2020-091 of 17 September 2020.
| Cookie name | Purpose | Type | Duration |
|---|---|---|---|
sb-[id]-auth-token | Supabase authentication session. Keeps the User signed in. | HTTP cookie - first party | 7 days - expires on logout |
sb-[id]-auth-token-code-verifier | PKCE verification for secure OAuth authentication. | HTTP cookie - first party | Session (deleted after auth) |
adcoach_chat_minimized | Remembers the AI coach panel state (open/minimized). | localStorage - first party | Until manually cleared |
adcoach_last_accounts | Remembers the last ad accounts selected in the dashboard. | localStorage - first party | 1 year |
adcoach.cookie.consent | Stores your cookie consent preferences (per category). | localStorage - first party | 13 months |
2.2 Support cookies (Intercom)
Within the signed-in area, AdCoach AI provides a support messenger powered by Intercom, Inc. Intercom cookies (intercom-id-*, intercom-session-*, intercom-device-id-*) are required for this support chat to work and are set only inside the application, after login. They are not used for advertising.
2.3 Payment cookies (Stripe)
During the payment process (subscription), Stripe sets technical cookies required to secure the transaction.
| Cookie name | Purpose | Type | Duration |
|---|---|---|---|
__stripe_mid | Fraud prevention and payment security (Stripe session fingerprint). | HTTP cookie - Stripe | 1 year |
__stripe_sid | Securing the ongoing payment session. | HTTP cookie - Stripe | 30 minutes |
These cookies are set by Stripe Payments Europe Limited (Dublin, Ireland), governed by a DPA and PCI-DSS Level 1 certification. More information: https://stripe.com/cookie-settings.
2.4 Analytics cookies (subject to consent)
Set only if you consent in the cookie banner, under the "Analytics" category.
| Cookie name | Provider | Purpose | Type | Duration |
|---|---|---|---|---|
_clck | Microsoft Clarity | Persistent Clarity identifier linking sessions from the same browser. | HTTP cookie - third party | 1 year |
_clsk | Microsoft Clarity | Links page views within a single session (heatmaps, anonymized recording). | HTTP cookie - third party | 1 day |
Microsoft Clarity is provided by Microsoft Corporation (One Microsoft Way, Redmond, USA), governed by Standard Contractual Clauses and the EU-US Data Privacy Framework. Clarity produces heatmaps and anonymized session recordings to understand site usage and improve the experience. Documentation: https://learn.microsoft.com/clarity/.
Clarity only loads on the public pages of the site (home, guides, legal pages). It never loads inside your customer area: the pages showing your leads, your campaigns and your figures are never session-recorded.
2.5 Marketing cookies (subject to consent)
Set only if you consent in the cookie banner, under the "Marketing" category.
| Cookie name | Provider | Purpose | Type | Duration |
|---|---|---|---|---|
_fbp | Meta Pixel | Browser identifier used to measure campaign performance and build retargeting audiences. | HTTP cookie - first party | 90 days |
_fbc | Meta Pixel | Stores the ad click identifier (fbclid) when you arrive from one of our ads. | HTTP cookie - first party | 90 days |
The Meta Pixel is provided by Meta Platforms Ireland Limited (Dublin, Ireland). It measures the performance of our own ad campaigns (Facebook, Instagram) and enables retargeting. Advanced matching is enabled: when you enter your email in a form, it is sent to Meta in hashed form (never in clear text) to improve conversion attribution. The Pixel never fires before your consent. Meta's policy: https://www.facebook.com/privacy/policy.
3. Cookieless audience measurement (Vercel)
Our primary traffic statistics rely on Vercel Web Analytics, configured in cookieless mode: no cookie is set, session identification relies on an anonymized fingerprint (hash) that allows neither cross-site tracking nor the creation of an advertising profile. This tool is exempt from consent (CNIL recommendation).
4. Tracking pixels in emails
Our transactional emails (magic link, alerts, reports) contain no tracking pixel or open-rate measurement. No information is collected about email opens. The only sending provider is Resend Inc. (USA, EU-US Data Privacy Framework), configured without recipient behavior tracking.
5. Consent and managing your preferences
On your first visit, a banner lets you:
- Accept all (analytics and marketing cookies);
- Decline all (only strictly necessary cookies remain active);
- Customize your choice category by category.
In line with CNIL recommendations, declining is as easy as accepting (buttons of equal weight, no pre-selected choice). Until you express a choice, no analytics or marketing cookie is set.
You can change or withdraw your consent at any time by clicking the "Cookie preferences" link at the bottom of every page.
6. How to manage cookies via your browser?
- Chrome: Settings - Privacy and security - Cookies and other site data
- Firefox: Settings - Privacy & Security - Cookies and Site Data
- Safari: Preferences - Privacy - Cookies and website data
- Edge: Settings - Cookies and site permissions
Warning: disabling Supabase technical cookies (sb-*-auth-token) will automatically log you out and prevent reconnection to the Platform.
7. Validity period of consent
Your consent to optional cookies is valid for a maximum of 13 months from when it is first given, in line with CNIL recommendations. After this period, your consent is requested again.
8. Changes to this policy
This cookie policy may be amended at any time to reflect changes to the service or applicable regulations. The last update date is shown at the top of this page. In the event of a substantial change, you will be informed via the cookie banner or by email.
9. Contact
For any question about cookies: contact@fitness-vendor.com
See also: Privacy Policy