Cookie Policy

Effective: May 28, 2026 · Last updated: July 27, 2026

This Cookie Policy explains what cookies and similar technologies Pilot Protocol ("we", "us") uses on pilotprotocol.network, why we use them, and how you can control them. It supplements our Privacy Policy.

What Are Cookies?

Cookies are small text files placed on your device by websites you visit. They are widely used to make websites work, improve efficiency, and provide information to the site owners. "Similar technologies" includes localStorage, session storage, and browser-level storage APIs that serve a similar purpose.

Cookie Inventory

Here is every cookie and browser-storage entry used on pilotprotocol.network, what it does, how long it lasts, and who sets it:

NameProviderPurposeDurationCategory
__cf_bmCloudflareBot management. Cloudflare may set this to distinguish human visitors from automated bots when bot protection is active on the zone. Does not track users across sites.30 minutesStrictly necessary
pilot_consentPilot Protocol (localStorage)Stores your cookie consent preference (accepted or rejected). No personal data, no tracking.Persistent (until cleared)Strictly necessary
pilot-themePilot Protocol (localStorage)Remembers your light/dark theme choice. No personal data, no tracking.Persistent (until cleared)Functional
pilot.publish.draft.v1Pilot Protocol (localStorage)Saves your in-progress app-submission draft on the Publish page so you don't lose it on reload. Set only if you use that form.Persistent (until cleared)Functional
pilot.publish.ui.v1Pilot Protocol (localStorage)Remembers UI state on the Publish page (e.g. which step you're on). Set only if you use that form.Persistent (until cleared)Functional
_gaGoogle AnalyticsDistinguishes unique users for analytics. Set only after you accept cookies. Contains a randomly generated client identifier.2 yearsAnalytics
_ga_EEWEKT0GW5Google AnalyticsSession-level analytics for our GA4 property. Set only after cookie consent. Tracks page views and session state.2 yearsAnalytics
ph_<project-key>_posthogPostHog (localStorage)Product analytics: page views, clicks, heatmaps, and session replay. Written only after you accept cookies. Holds a randomly generated device identifier and session state. We run PostHog with person profiles disabled, so events are not tied to an identified user account.Persistent (until cleared)Analytics
_twclidX Corp. (first-party, set by the X pixel)Stores the X click identifier (twclid) so a later action on our site can be attributed to the X ad you clicked. Set only after you accept cookies, and only if you arrived from an X ad carrying that parameter.Up to 30 daysAdvertising
personalization_id, muc_ads, guest_idX Corp. (third-party, on .x.com / .twitter.com / .t.co)Set by X itself when the pixel loads, to recognise your browser for ad measurement and ad personalisation — including across other sites that run X's tag. Set only after you accept cookies. Browsers that block third-party cookies may prevent some or all of these.Up to 2 yearsAdvertising

The X cookies above are set by X Corp., not by us, and the exact names and lifetimes are X's to change. We list what X currently documents; treat it as indicative rather than exhaustive.

Cookieless Analytics

In addition to the cookies above, we use Cloudflare Web Analytics, which is entirely cookieless. It sets no cookies or localStorage and does no client-side fingerprinting or persistent tracking; it reports only aggregated page-view and performance metrics. (As with any web request, the analytics beacon transmits your IP and user-agent to Cloudflare; see Cloudflare's privacy documentation for how they handle it.)

Consent Model

When you first visit pilotprotocol.network, a consent banner appears offering two options:

The banner does not use a "nag wall" — you can browse the site without interacting with it. If you do not make a choice, no analytics or advertising cookies are set (implied rejection).

How to Change Your Preference

You can change your consent at any time:

  1. Cookie preferences link — In the site footer (on the main marketing pages), click "Cookie Preferences" to reopen the consent banner. You can also clear the pilot_consent entry (below) to make the banner reappear.
  2. Clear localStorage — Removing pilot_consent from your browser's localStorage will reset your preference, and the banner will reappear on your next visit.
  3. Browser settings — Most browsers allow you to block or delete cookies globally. See your browser's help documentation for instructions.

Product Analytics (PostHog)

We use PostHog for product analytics — page views, click and scroll behaviour, heatmaps, and session replay — so we can see which parts of the site are and aren't working. PostHog is loaded only after you accept cookies; if you reject or never answer the banner, it is never initialised and writes nothing to your browser.

How we've configured it:

Advertising & Conversion Tracking (X / Twitter)

We advertise Pilot Protocol on X (formerly Twitter). To measure whether those ads work, we run X's universal website tag (pixel ID re3tv), a script loaded from static.ads-twitter.com/uwt.js and operated by X Corp., a third party. This is the first advertising technology on the site — the other tools listed above are analytics only, and this one is different in kind, so it is worth stating plainly.

What it does and what X receives:

Changes to This Policy

We will post changes to this page and update the "Last updated" date. If we add new cookies or substantially change how we use existing ones, we will re-prompt for consent where required by law.

Contact

Questions about cookies or our use of analytics?

Email: founders@pilotprotocol.network

This policy was drafted for transparency. If you are a legal professional reviewing this document, please direct feedback to founders@pilotprotocol.network.