§ Legal - Cookies
This explains the cookies and similar technologies we use, grouped by category, with their purpose and how long they last. You can change your choices anytime.
Last updated · 25 June 2026
Required for the site to work, login sessions for the admin and client dashboards, security/CSRF protection, and the consent cookie itself. These cannot be disabled.
We use our own first-party, cookieless analytics (no third-party scripts). After you opt in, we record the page path, referrer, and approximate region (derived from IP, the IP itself is never stored). A daily-rotating, salted visitor hash gives rough visit counts without tracking you across days.
Retargeting pixels (e.g. Meta Pixel, LinkedIn Insight Tag). These only load if you explicitly opt in.
Remembers non-essential UI choices, such as dismissed prompts.
| Name | Category | Purpose | Duration |
|---|---|---|---|
| wyrelane_consent | Necessary | Stores your cookie choices + version | 180 days |
| wyrelane_attribution | Necessary | First-touch source/UTM for enquiries | 90 days |
| sb-*-auth-token | Necessary | Supabase login session (dashboards) | Session / refresh |
| First-party analytics | Analytics | Page path + region recorded server-side (no cookie) | No cookie set |
| _ga, _ga_* | Analytics | Google Analytics (only if enabled) | Up to 2 years |
| _fbp | Marketing | Meta retargeting (only if enabled) | 90 days |
| li_* / lms | Marketing | LinkedIn Insight (only if enabled) | Up to 2 years |
We respect the Global Privacy Control (GPC) browser signal, if your browser sends it, non-essential cookies are automatically declined. See our privacy policy for how we handle data, including IP hashing and retention.