Skip to main content

Cookie Policy

Revision: 1.1

Sophosic Inc. uses cookies, local storage, pixels, and similar technologies to operate our services, remember choices, protect payments, and—only with the required visitor choice—measure analytics or marketing events. This policy explains those technologies and how to control them.

1. Technologies We Use

Cookies are small files a website or third party stores in a browser. Local storage saves preferences in the browser. Pixels and scripts can send limited event and device information to a service provider. We use both first-party technologies and third-party services described below.

2. Categories

2.1 Essential

Essential technologies support authentication, security, load balancing, fraud prevention, checkout, and other functions needed to provide the service. They cannot be disabled through our optional category controls, although browser settings may block them and cause features to stop working.

2.2 Preferences

First-party browser storage remembers choices such as theme, language, layout, and each site's cookie categories. A key such as cookie-consent-<site> records the categories selected and the time of the choice.

2.3 Analytics

A workspace may enable an analytics provider. On Sophosic-hosted sites, optional analytics runs only after the visitor accepts the Analytics category and does not send Global Privacy Control. Available providers and behavior can vary by workspace.

2.4 Marketing

A workspace may connect Meta Pixel or another marketing-measurement provider. Optional marketing technology runs only after the visitor accepts the Marketing category and does not send Global Privacy Control. Ignoring or declining the banner means no Meta Pixel event is sent.

3. Third Parties

3.1 Supabase — Authentication and Data

Supabase supports secure authentication and session management. Its session cookies are essential when you sign in. See the Supabase Privacy Policy.

3.2 Stripe — Payments and Fraud Prevention

Stripe may use identifiers such as __stripe_mid and __stripe_sid to process payments and prevent fraud. These are essential on payment surfaces. See the Stripe Privacy Policy.

3.3 Meta Pixel — Optional Marketing Measurement

When a workspace connects Facebook and Instagram Book Now, selects a Meta Pixel, and the visitor grants Marketing consent, Meta's script may use identifiers such as _fbp and _fbcto measure the standard PageView and Schedule events and support advertising measurement or personalization under Meta's terms. Meta may receive the visitor's IP address, browser information, the business/site identity, Meta's click identifier when present, and a generic Sophosic relay URL. Sophosic does not send the visitor's actual booking, intake, checkout, payment, or customer URL to Meta.

Meta determines the duration and use of its cookies and identifiers. Learn more in the Meta Cookies Policy and Meta Privacy Policy.

4. Managing Your Choices

On a Sophosic-hosted site with optional categories, use the cookie banner to accept, decline, or select categories. After saving a choice, the persistent Cookie preferences control reopens the settings so you can revoke consent at any time. Revocation prevents new optional events; it does not erase data a provider lawfully received before revocation.

We honor Global Privacy Control as an opt-out from Analytics and Marketing on Sophosic-hosted sites. You can also block or delete cookies in browser settings. Blocking essential storage may prevent login, checkout, or other core functions.

5. Policy Updates

We may update this policy when our practices, providers, or legal requirements change. The page's Last Updated date identifies the current version.

6. Contact Us

Questions about cookies or privacy can be sent to privacy@sophosic.ai.