Cookie Policy
Effective date: 24 August 2026 Last updated: 25 August 2026
This policy explains how VaultGuard uses cookies and similar browser storage on vaultguard.cloud and the signup surface at admin.vaultguard.cloud. It should be read with the Privacy Policy.
1. Your choice
Necessary storage and Cloudflare Turnstile security checks support requested features and abuse prevention. Optional analytics and advertising tools load only after Accept all.
Choose Only necessary to refuse optional tools. Use Cookie settings at any time to change the choice. A recognised Global Privacy Control signal is treated as an opt-out on that browser. Withdrawing consent stops future optional loading and clears the known first-party marketing identifiers that VaultGuard can remove; a reload completes removal of already loaded scripts.
The preference applies across vaultguard.cloud subdomains for 180 days. Clearing browser data or using another browser or device can require a new choice.
2. Necessary storage and services
| Name or service | Provider | Purpose | Typical duration |
|---|---|---|---|
vg_marketing_consent |
VaultGuard | Remembers Accept all or Only necessary; it does not identify an account | 180 days |
| Cognito browser storage | Amazon Web Services | Maintains authentication state and cached identity information in the hosted admin application | Until sign-out, expiry, or browser-data removal |
| Cloudflare Turnstile | Cloudflare | Processes browser, device, network, and challenge signals on verification screens to prevent automated abuse | For the challenge and Cloudflare’s security retention period |
Necessary technology is not used by VaultGuard for advertising. Blocking it can prevent signup, sign-in, or administration features from working.
3. Optional analytics and advertising
These tools are disabled until affirmative consent:
| Tool or identifier | Provider | Purpose | Typical duration |
|---|---|---|---|
| Google Tag Manager | Loads only the tags configured by VaultGuard after consent | The container itself does not need a first-party identifier | |
_ga and _ga_* |
Google Analytics | Distinguish browsers and measure public-page use | Up to 2 years |
_gcl_* and related conversion storage |
Google Ads | Attribute a signup or purchase to an ad interaction | Commonly up to 90 days |
_fbp |
Meta | Distinguish browsers for ad measurement | Up to 90 days |
_fbc |
Meta | Retain a Facebook click identifier when the visit came from an ad | Up to 90 days |
apolloAnonId in local storage |
Apollo | Maintain a website-visitor identifier and measure public-page visits | Until browser data is cleared or consent is withdrawn on this site |
Providers can receive page URL, referrer, IP-derived location, browser and device information, identifiers, and interaction or conversion data. Their own policies govern information they process in their independent roles:
No analytics or advertising tool is embedded in the Obsidian plugin. The Meta Pixel is limited to public and signup acquisition surfaces and is not loaded across authenticated administration screens.
4. Server-side conversion measurement
After affirmative signup marketing consent, VaultGuard can send Meta registration, trial, and purchase events. Matching fields can include hashed email, hashed opaque organisation ID, IP address, user agent, source URL, and Meta attribution identifiers. These events never include vault contents, filenames, paths, or encryption keys.
Rejecting optional tools prevents this information from being collected during signup. To withdraw a choice connected to an existing account and stop later account-linked conversion events, use Cookie settings while signed out and email support@vaultguard.cloud with the organisation name. We will apply the opt-out to the account record after verifying the request.
5. Browser controls
Browser settings can block or delete cookies and local storage. Browser privacy modes, content blockers, and Global Privacy Control can add protection, but they can also affect required authentication or verification features. Vendor opt-out tools are an additional option; VaultGuard’s own Only necessary choice remains the direct control for this site.
6. Updates and contact
We update this list when tools, purposes, or retention change. Questions or opt-out requests can be sent to support@vaultguard.cloud.