Cookie Policy
1. What Are Cookies?
Cookies are small text files placed on your device (computer, tablet, or phone) when you visit a website. They are widely used to make websites work properly, remember your preferences, and provide information to site owners.
Similar technologies include local storage and session storage — browser-based data stores that work like cookies but are never sent to the server automatically. We use these technologies in addition to cookies in the Bross dashboard.
2. How We Use Cookies
We use cookies and similar technologies to:
- Keep you authenticated while using the Bross dashboard.
- Remember your preferences (e.g., selected server, UI settings).
- Maintain security tokens and prevent cross-site request forgery (CSRF).
- Understand how visitors interact with our website (aggregated, privacy-friendly analytics).
We do not use cookies for advertising, retargeting, or tracking you across other websites.
3. Types of Cookies We Use
3.1 Strictly Necessary Cookies
These cookies are essential for the website to function. The site cannot operate correctly without them. They do not require your consent.
| Cookie Name | Purpose | Duration | Type |
|---|---|---|---|
| bross_session | Stores your authenticated session after Discord OAuth login | 7 days | HTTP Cookie (Secure, HttpOnly) |
| bross_csrf | CSRF protection token for form submissions | Session | HTTP Cookie (Secure) |
| bross_state | Temporary OAuth state parameter during Discord login flow | 5 minutes | HTTP Cookie (Secure, HttpOnly) |
3.2 Preference Cookies
These cookies remember your choices and personalise your experience. They are stored in browser local storage and are not transmitted to our servers.
| Key | Purpose | Duration | Type |
|---|---|---|---|
| bross_selected_bot | Remembers which bot tab you last viewed in the dashboard | Persistent | Local Storage |
| bross_sidebar_collapsed | Remembers whether the dashboard sidebar is collapsed | Persistent | Local Storage |
| bross_theme | Stores your UI theme preference (reserved for future use) | Persistent | Local Storage |
3.3 Analytics Cookies
We use privacy-friendly, aggregated analytics to understand how visitors use our website. These analytics do not track you personally and do not share data with advertising networks.
| Provider | Purpose | Duration | Data Shared |
|---|---|---|---|
| Self-hosted analytics | Aggregate page views, referrer sources, and basic browser stats | Session | None — processed server-side only |
Analytics data is aggregated and anonymized. We do not use Google Analytics, Meta Pixel, or any other advertising-linked analytics platform.
4. Third-Party Cookies
Our website does not embed third-party advertising widgets or social media trackers. The only third-party service with potential cookie access is:
- Discord OAuth2:When you click "Sign in with Discord", you are redirected to Discord's servers. Discord may set their own cookies on discord.com during this flow. These are governed by Discord's Privacy Policy.
- Stripe:If you visit the billing section of the dashboard, Stripe's payment widget may set cookies on their domain (stripe.com) for fraud prevention. These are governed by Stripe's Privacy Policy.
5. Cookie Duration
Cookies can be either session cookies or persistent cookies:
- Session Cookies: Temporary cookies that expire when you close your browser. Used for CSRF protection and OAuth state.
- Persistent Cookies: Remain on your device for a defined period (or until deleted). Used for authentication sessions (7 days) and local storage preferences (until manually cleared).
6. Your Cookie Choices
You have the right to accept or refuse cookies. Since we only use strictly necessary cookies for core functionality (authentication), refusing them will prevent you from using the logged-in dashboard.
6.1 Browser Controls
You can manage cookies through your browser settings. Here is how to access cookie settings in the most common browsers:
- Google Chrome: Settings → Privacy and Security → Cookies and other site data
- Mozilla Firefox: Settings → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Manage Website Data
- Microsoft Edge: Settings → Cookies and site permissions → Cookies and site data
- Opera: Settings → Advanced → Privacy & Security → Cookies
Note that restricting cookies may impact the functionality of the Bross dashboard. The main website (landing page) functions without any cookies.
6.2 Clearing Local Storage
Preference data stored in local storage can be cleared through your browser's developer tools: press F12 → Application tab → Storage → Local Storage → select brossbot.com → delete relevant keys. This will reset your dashboard preferences but will not affect your account data.
7. Do Not Track
Some browsers include a "Do Not Track" (DNT) feature that signals websites that you do not wish to be tracked. Since we do not engage in cross-site tracking, DNT signals do not change our behavior. Our analytics are already privacy-friendly by default.
8. Updates to This Policy
We may update this Cookie Policy from time to time to reflect changes in our use of cookies or for legal, technical, or business reasons. When we make material changes, we will update the "Last Updated" date above. We encourage you to review this policy periodically.
9. Contact Us
If you have any questions about our use of cookies or this policy, please contact us:
- Email: [email protected]
- Discord: discord.gg/nKRcHWJ9WX