DRAFT — pending legal review. Do not rely on this page as a signed policy.

Cookies

Last updated 24 September 2026

mado is three different surfaces with three different storage footprints.

The embedded player — zero

No cookies. No localStorage, sessionStorage, or IndexedDB. Session identity is a random id held in memory for the duration of a page load only. This is why embedding a mado demo does not require adding it to your own site's consent banner or cookie notice — there is nothing to disclose.

The public share page and gallery (this site) — functional only

A light/dark theme preference, stored in localStorage if you use the toggle in the header. Nothing else. No analytics or advertising cookies.

Studio (the editor, studio.mado.show)

A session cookie for sign-in, set by our authentication provider when you use a magic link or Google sign-in. Strictly necessary — the product does not function without it, and there's nothing to opt out of.

Password-protected share links

Entering the correct password for a visibility: password demo sets a short-lived, signed unlock cookie scoped to that one demo, so you aren't asked again on every step. It carries no tracking value and expires automatically.