Current cookie use
The current application uses only essential first-party cookies identified in the inspected source.
The provider account session cookie is named escortifys_internal_session. It is an HttpOnly, SameSite=Lax, first-party authentication cookie scoped to the site path and configured for a 12-hour maximum age.
The administrator session cookie is named escortifys_admin_session. It is an HttpOnly, SameSite=Strict, first-party administrator authentication cookie scoped to /admin and configured for a 12-hour maximum age.
These cookies support authentication, session security, administrator access control, logout, and protected-route authorization.
Inactive analytics and marketing cookies
The inspected source does not show active analytics cookies, advertising cookies, marketing cookies, or browser-storage preference tracking deployed for this release.
Preference records exist on the server for account privacy settings, including analyticsAllowed and marketingAllowed, but they are not a browser-storage or non-essential tracking cookie deployment.
Non-essential tracking must not be deployed before any required consent. Marketing consent must not be preselected or combined with Terms acceptance.
Controls
Browser controls can block or delete cookies, but disabling essential authentication cookies will prevent authenticated account and administrator functionality from working correctly.
Users should use the platform logout controls to end authenticated sessions when available.
