Cookies Policy

What changed: Added the product attribution cookie and removed a stale authentication-vendor reference.

This Cookies Policy explains how Kosuke, Inc. uses cookies and similar technologies on kosuke.ai and app.kosuke.ai.

Because the public website and the authenticated product do not use exactly the same scripts, this policy explains the differences between the two properties.

1. Consent Manager

Cookiebot is the consent manager currently used on Kosuke properties where cookie consent is enabled.

  • On first visit, Cookiebot presents a banner that lets visitors accept, reject, or customize non-essential categories.
  • Your consent choice is stored so the site can remember it on later visits.
  • If you are signed in to app.kosuke.ai, you can manage, change, or withdraw consent through Cookiebot in the product, including from Settings > Security.
  • On kosuke.ai, visitors can reopen the banner at any time using the Cookie settings link in the site footer, which is available on every page.

2. Essential Cookies and Similar Technologies

These technologies are used to operate the service, remember consent state, or keep authenticated sessions working.

These typically include:

  • consent-state cookies used by Cookiebot to remember your choices;
  • authentication and session cookies on app.kosuke.ai; and
  • strictly necessary site-state items used to support routing, security, and reliable operation of the public site and product.

Examples of essential items currently used on kosuke.ai include Cookiebot consent storage and related site-state cookies. The authenticated product also uses essential session technologies needed to sign users in and keep workspace access working.

3. Optional Analytics, Diagnostics, and Marketing Technologies

Except for the short-lived first-party attribution cookie described below, optional technologies do not run until the matching consent category is granted. The public website and the authenticated product do not load the same set.

When the sign-in page on app.kosuke.ai is opened with a utm_source, the product sets the first-party, host-only attribution cookie listed below. It is HttpOnly and Secure, uses SameSite=Lax and Path=/, expires after 30 minutes, and is cleared once used. The __Host- prefix forbids a Domain attribute, so kosuke.ai cannot read the product's attribution cookie. No client-side code can read its value.

The public website at kosuke.ai does not run its own site analytics. The only optional technologies it loads are marketing pixels, and they stay blocked until you grant marketing consent.

Tool Category Where used How it is managed
__Host-kosuke_utm_source Marketing app.kosuke.ai Set for up to 30 minutes when sign-in opens with a utm_source, then cleared once used
Reddit Marketing kosuke.ai Blocked by Cookiebot until marketing consent is granted
X Marketing kosuke.ai Blocked by Cookiebot until marketing consent is granted
Meta Marketing kosuke.ai Blocked by Cookiebot until marketing consent is granted
PostHog Statistics app.kosuke.ai Initialized only after Cookiebot statistics consent is available
Sentry Statistics app.kosuke.ai Initialized only after Cookiebot statistics consent is available

Langfuse and BetterStack are server-side observability tools used by Kosuke to monitor AI and sandbox workflows. They do not set cookies or read storage on your device.

Some of these technologies rely on browser cookies, while others use local storage, pixels, or similar tracking mechanisms. Because vendors can change the exact names, domains, and storage periods of these technologies over time, the live Cookiebot declaration for kosuke.ai is the most current source for the detailed list.

4. How to Change or Withdraw Consent

You can manage cookies in the following ways:

  • On app.kosuke.ai: signed-in users can manage, change, or withdraw consent through Cookiebot in the product, including from Settings > Security.
  • On kosuke.ai: use the Cookie settings link in the site footer to reopen the banner and change or withdraw consent at any time.
  • In your browser: you can also block or delete cookies through browser settings, though some essential product functionality may stop working if you block required cookies.

Browser help pages:

5. Retention

Cookie and local-storage retention periods vary by tool and by category. Some items last only for the active session, while others remain for a longer fixed period set by the provider or consent tool. Authenticated product session technologies typically last for the active session or for the duration needed to keep you signed in, depending on the provider configuration.

6. More Information

For more detail about how Kosuke processes personal data and uses service providers, see our Privacy Policy and Terms and Conditions.

7. Updates to This Policy

We may update this Cookies Policy when our consent flow, site scripts, or legal obligations change. When we do, we will update the date associated with this policy.

8. Contact

If you have questions about cookies or consent on Kosuke, contact privacy@kosuke.ai.