Current application storage
| Item | Why it is used | Duration |
|---|---|---|
enderbase-account in local storage and related PKCE verifier | Supabase session and secure email/provider sign-in, only after a sign-in action. | Session refreshes while signed in. Local sign-out clears the session. Temporary verifiers are consumed during sign-in. |
enderbase-pending-terms and enderbase-pending-community in session storage | Carry your explicit account agreement or community-role choice across a requested sign-in redirect. | Cleared when processed, cancelled through sign-out, or the browser tab session ends. |
| Stripe checkout and billing portal storage | Stripe controls its own security and payment session when you follow a checkout or billing portal link. | Set by Stripe on its own site; see Stripe’s privacy and cookie notices. Our store does not embed Stripe frames or optional analytics. |
Analytics and embeds
The application does not load advertising pixels, analytics scripts, remote web fonts, video embeds or social widgets. Images and fonts in the website are served locally or supplied by your operating system. External policy and setup links are ordinary links; their sites load only when you follow them.
Is a consent banner needed?
No optional tracking or personalization storage is currently configured in the application. Storage strictly needed for a sign-in you request is generally treated differently from optional tracking, so the application does not show a meaningless “accept cookies” banner. This does not certify cookies set by the hosting platform. The final hosting behavior and intended sales regions must be checked before public launch.
If optional tracking, analytics or third-party embeds are added, they must first be assessed against the applicable rules. Where consent is required, block them until a freely given choice, offer an equally clear rejection and provide an easy way to change the choice. Policy acknowledgment and agreeing to terms do not authorize advertising tracking.
Controls
Use “Sign out on this browser” in your account, or clear this site’s browser data. Clearing data may interrupt sign-in or password-reset links. To remove a linked community-role lookup, use the separate Discord disconnect control. Contact the operator through the privacy request form.