Cookie Policy
The marketing site stores no cookies. The dashboard uses one first-party cookie that is necessary to keep an authenticated session.
Read the Privacy NoticeCookie in use
- postline_session — created only after successful passwordless login; authenticates dashboard requests for up to 30 days. It is HttpOnly and SameSite=Lax, and is Secure in production. The raw token stays in the cookie; the API stores only its hash.
Marketing site
The marketing site does not persist country, currency, language, analytics identifiers, or a cookie-notice flag in cookies or local storage. Currency changes last only for the current page lifecycle.
Consent and tracking
There are no advertising, analytics, third-party, or cross-site tracking cookies. Because the only cookie is required for a login explicitly requested by the user, Postline does not show an optional-cookie consent banner. If optional storage is introduced, it must remain disabled until valid consent is obtained.
Your controls
You can block or delete the session cookie in browser settings. Doing so signs you out or prevents dashboard login; the public marketing site continues to work.