Skip to main content
DataTether homeCookie policy
Cookie choices

Every cookie we set, named — and how to switch it off.

On public pages DataTether stores one necessary consent cookie and nothing else until you accept analytics. Signing in adds session and security cookies, which are listed here by name alongside their duration. No advertising cookies, on any page.

Request guided access

Consent model

Analytics starts only after acceptance.

opt-in
01

Banner shown

Optional analytics waits until you choose. Nothing analytics-related loads before that.

02

Reject

The site remains fully usable and only the rejection choice is stored.

03

Accept

DataTether can send public product-site analytics events such as page views and CTA clicks to configured analytics tools such as PostHog, Google Analytics, or Google Tag Manager.

04

Reset

Use the control at the bottom of this page, or clear `public_site_cookie_consent` in your browser and reload a DataTether page to choose again.

Cookie ledger

What can be stored in the browser.

This page covers cookies, local storage, and session storage for both the DataTether public pages and the authenticated console. The broader data handling policy — legal bases, retention, your rights, and international transfers — lives in the privacy policy.

Read the privacy policy
Effective date
May 27, 2026
Last updated
July 29, 2026
01

What cookies are

Cookies are small text files a site stores on your device. Related technologies — local storage and session storage — keep data in your browser in the same way without sending it back on every request. This page covers all three, because what matters is what is kept on your device, not the mechanism.

02

Strictly necessary storage

DataTether uses necessary cookies to remember your consent choice and to run authenticated sessions: sign-in, session renewal, CSRF protection, and the OAuth sign-in exchange. These are listed by name below. They are never used for advertising and cannot be switched off while you are using the console.

03

Optional analytics on public pages

On public pages, analytics tools such as PostHog, Google Analytics, or Google Tag Manager help us understand which pages are useful. They load only after you accept, and any page that is not part of the signed-in console is treated as a public page for this purpose.

04

Analytics inside the console

After sign-in, DataTether uses product analytics, exception capture, heatmaps, surveys, and session replay to improve the console and troubleshoot issues. Sign-in, sign-up, and OAuth authorization pages are excluded from capture. There is no per-account opt-out control today; if you want your account excluded, email [email protected] and we will exclude it.

05

No ad tracking

DataTether does not use advertising cookies, remarketing or retargeting pixels, cross-site tracking, or cookie-based resale of visitor data. If that ever changes, this page and the Privacy Policy will be updated before the tags are enabled.

06

Where the data goes

Analytics data is processed by PostHog and, where configured, Google, both in the United States. The safeguards that apply to international transfers are described in the Privacy Policy. Session cookies stay between your browser and DataTether.

Cookies set by DataTether

NameCategoryPurposeDurationConsentHow to opt out
public_site_cookie_consentStrictly necessaryStores whether you accepted or rejected optional analytics on DataTether public pages, so the banner is not shown again on every page.180 daysAlways on — written only once you make a choiceUse “Change cookie choice” below, or delete the cookie for this site in your browser settings.
datatether_cookie_consent, datatether_cookie_consentStrictly necessary (legacy)Earlier names for the same consent preference. They are no longer written, and are expired automatically the next time you record a choice.Expired on sightNot set for new visitorsCleared for you automatically; clearing site cookies also removes them.
dt_access_tokenStrictly necessaryHttpOnly session cookie that keeps you signed in to the DataTether console. It is not readable by scripts and is never used for analytics or advertising.Matches the session lifetime issued at sign-in, typically 1 hourRequired to use the consoleSign out, or clear cookies for this site. The console cannot function without it.
dt_refresh_tokenStrictly necessaryHttpOnly cookie used to renew your console session so you are not asked to sign in again on every visit.30 daysRequired to use the consoleSign out, or clear cookies for this site.
dt_csrf_tokenStrictly necessaryCross-site request forgery protection. Unlike the session cookies it is readable by our own scripts by design, so the token can be echoed back as a header on write requests.30 daysRequired to use the consoleSign out, or clear cookies for this site.
dt_pkce_stateStrictly necessaryShort-lived HttpOnly cookie that protects the OAuth and SSO sign-in exchange (PKCE state) against interception and replay.5 minutesRequired for SSO and OAuth sign-inExpires on its own and is cleared as soon as sign-in completes.

Cookies set by analytics providers

NameCategoryPurposeDurationConsentHow to opt out
ph_<project key>_posthogAnalyticsPostHog visitor identifier and session state, used to measure page views, navigation, and feature usage. It is served through datatether.com/ingest, a first-party reverse proxy to PostHog, so browser blocking of third-party cookies will not remove it.Up to 12 monthsPublic pages: only after you accept analytics. Console: active while signed in.Public pages: use “Change cookie choice” below and reject. Console: email [email protected] to be excluded, and clear site data to remove the identifier.
_gaAnalyticsGoogle Analytics 4 identifier used to distinguish visitors in aggregate reporting. Set only when a Google Analytics measurement ID is configured for the site.2 yearsOnly after you accept analytics on public pagesReject analytics below, install the Google Analytics opt-out add-on, or block third-party cookies.
_ga_<measurement id>AnalyticsPersists Google Analytics 4 session state and is used together with _ga for session-level metrics.2 yearsOnly after you accept analytics on public pagesSame as _ga.
Google Tag Manager container cookies, for example _gcl_auAnalyticsWhen a Google Tag Manager container is configured, tags inside it may set their own cookies, such as Google’s conversion linker. No advertising, remarketing, or retargeting tags are configured today.Up to 90 daysOnly after you accept analytics on public pagesReject or withdraw analytics consent below, or block third-party cookies in your browser.

Local and session storage (not cookies)

NameCategoryPurposeDurationConsentHow to opt out
datatether_app_theme, datatether_app_theme_modeFunctional (local storage)Remembers your light or dark display preference for the console.Until you clear site dataSet only when you change the preferenceClear site data for datatether.com in your browser settings.
auto_collapse, appZoom, appFontSizeFunctional (local storage)Remembers your sidebar collapse behaviour, zoom level, and font size inside the console.Until you clear site dataSet only when you change the preferenceClear site data for datatether.com in your browser settings.
logs-density, logs-zoomFunctional (local storage)Remembers the display density and zoom you chose in the log viewer.Until you clear site dataSet only when you change the preferenceClear site data for datatether.com in your browser settings.
datatether_first_step_requestFunctional (session storage)Holds what you typed on the first step of the guided-access request form so it is not lost as you move through the remaining steps.Until the browser tab is closedSet only when you start the formClose the tab, or clear site data.

Third parties

Who else can see this data.

These providers process analytics or authentication data on our behalf. Each one runs under its own privacy policy as well as our agreement with them.

PostHog Inc.

Product and site analytics, heatmaps, and — inside the signed-in console only — session replay and error capture.

posthog.com/privacy

Google LLC

Google Analytics 4 and Google Tag Manager, where a measurement ID or container ID is configured for the site.

policies.google.com/privacy

Supabase

Authentication backend behind the dt_ session cookies. Supabase does not set cookies of its own in your browser; session tokens are issued by DataTether servers.

supabase.com/privacy

Manage cookies in your browser

You can block or delete cookies for this site at any time in your browser settings. Blocking strictly necessary cookies will sign you out of the console and prevent sign-in; public pages will still work.

To opt out of Google Analytics across all sites, install the Google Analytics opt-out browser add-on.

Do Not Track and Global Privacy Control

DataTether does not currently read Do Not Track (DNT) or Global Privacy Control (GPC) signals automatically, because optional analytics on public pages are already off by default until you accept them — the outcome a DNT or GPC signal is asking for.

Analytics inside the signed-in console is the exception: it is not consent-gated today. If you send a GPC signal, or simply prefer not to be included, email [email protected] and we will exclude your account.

Change your choice any time.

Use the control below to clear the public-site consent preference and bring the banner back. You can also clear the `public_site_cookie_consent` cookie for this site in your browser settings. Withdrawing consent stops future analytics collection; it does not erase events already recorded, which you can ask us to delete under the privacy policy.

Rejecting analytics does not block the site.

If you reject optional public-site analytics, DataTether public pages still work in full. We only keep the preference needed to avoid asking again on every page. Console analytics and the necessary session cookies are handled separately because they support product operation, reliability, security, and account access.

Questions about this policy? Email [email protected].