Skip to main content

Cookie Policy

Last Updated: August 8, 2026 · Effective: August 8, 2026

1. What Cookies Are

Small text files stored on your device when you visit our site, readable later by us or our service providers.

  • Session cookies are deleted when you close your browser
  • Persistent cookies last a set period or until you delete them
  • First-party cookies are set by us
  • Third-party cookies are set by our service providers

2. What We Use

2.1 Essential — required, cannot be disabled

Disabling these prevents login.

CookiePurposeRetentionProvider
sb-access-tokenAuthentication tokenSessionSupabase
sb-refresh-tokenToken refresh1 yearSupabase
session_idSession identifierSessionPathion
user_preferencesYour settings (theme, language)1 yearPathion
csrf_tokenCross-site request forgery protectionSessionPathion

2.2 Analytics — opt-out available

CookiePurposeRetentionProvider
mp_<id>_mixpanelUser identification1 yearMixpanel
mixpanel_distinct_idUnique analytics ID1 yearMixpanel
mp_session_idSession trackingSessionMixpanel
mp_referrerReferral sourceSessionMixpanel

2.3 Session recording — opt-out available

We record 100% of browsing sessions. Password fields are masked and never captured.

We record sessions so we can see where the interface confuses people, reproduce bugs you report without making you describe them, and understand how students actually work through problems. You can turn this off — see Section 4.

CookiePurposeRetentionProvider
__mpsSession recording flagSessionMixpanel
__mpsoSession recording optionsSessionMixpanel

Recordings are retained up to 24 months. See our Data Retention Policy.

2.4 Marketing

None. We do not use advertising or marketing cookies and do not participate in ad networks.

3. Third-Party Cookies

ServiceCookiesPurpose
Supabasesb-*-auth-token, sb-*-sessionAuthentication, JWT management
Mixpanelmp_*, __mps, __mpsoAnalytics, session recording
Google_gid, _gaOAuth authentication

4. Your Choices

4.1 Turn off session recording — recommended, and it works

Account settings → Privacy Settings → "Disable Session Recording."

Takes effect immediately. Other analytics continue. This is the most effective control we offer.

4.2 Turn off analytics

Block Mixpanel cookies in your browser settings, or use a content blocker. Core functionality is unaffected.

4.3 Clear cookies

Any time, from your browser settings. Clearing cookies logs you out and resets saved preferences.

5. Do Not Track

We do not currently respond to DNT browser signals.

Our previous Cookie Policy stated that Mixpanel respects DNT and disables session recording. That was inaccurate and we have corrected it. There is no uniform standard for honoring DNT, and enabling it in your browser does not stop session recording on our platform.

Use the session-recording toggle in Section 4.1 instead. That one actually works.

If a DNT standard is adopted that we are required to follow, we will implement it and update this policy.

6. Clearing Cookies by Browser

Chrome

Settings → Privacy and security → Delete browsing data → "Cookies and other site data" → Delete

Safari

Safari → Settings → Privacy → Manage Website Data → Remove All

Firefox

Settings → Privacy & Security → Cookies and Site Data → Clear Data

Edge

Settings → Privacy, search, and services → Choose what to clear → "Cookies and other site data" → Clear now

7. Summary

TypeOpt-out
EssentialNo, required for login
AnalyticsYes, via browser settings
Session recordingYes, in account settings
MarketingNot used
Do Not TrackNot honored — use the toggle instead

8. Questions