Cookie Policy
Last updated: August 25, 2026
1. What we use
Rakho uses a small number of essential cookies so you can sign in with Google and keep your listing session working. We do not use advertising or third-party tracking cookies.
2. Cookies we set
- Session cookie — identifies your logged-in workspace on our servers (httpOnly).
- OAuth state — short-lived cookie used only during Google sign-in to prevent CSRF, then cleared.
Google tokens themselves are stored encrypted on the server and tied to your session — not as readable client cookies.
3. Why they are needed
Without these cookies, login and the listing flow cannot work securely. They are strictly necessary for the service you request.
4. How long they last
Session cookies last for the configured session lifetime or until you log out. OAuth state cookies expire quickly after the login attempt.
5. Your controls
You can clear cookies in your browser or log out of Rakho. Blocking essential cookies will prevent sign-in from working.
6. More information
See our Privacy Policy and Data deletion page.