Cookie policy

Draft — not yet reviewed by a lawyer

This page was drafted as a starting point for Mike Sader and has not been reviewed by a qualified lawyer. It should be reviewed against Lebanese law and any other law that applies to visitors before the site is promoted publicly. Until then, treat it as a working draft.

This site sets no advertising cookies, no tracking cookies and no third-party profiling cookies. There is no consent banner because there is nothing non-essential to consent to. Here is the complete list.

Cookies this site sets

NamePurposeLasts
ibm_sessionKeeps you signed in. Set only after you verify your email. HttpOnly, Secure, SameSite=Lax. Holds a random token, not your details.30 days, refreshed while in use
ibm_csrfProtects forms against cross-site request forgery. HttpOnly, Secure, SameSite=Lax.8 hours
ibm_pendingCarries your half-finished registration across the email-verification step, so you don't retype it. Signed and HttpOnly.20 minutes

Local storage

One item, ibm-theme, remembers whether you chose the light or dark theme. It stays in your browser, is never sent to the server, and holds nothing but the word light ordark.

Third parties

  • Cloudflare Turnstile — the bot check on the sign-up, login, newsletter and contact forms. It may set a short-lived cookie on challenges.cloudflare.com while it runs. Turnstile is designed as a privacy-preserving alternative to a CAPTCHA and does not track you across sites.
  • Cloudflare Web Analytics — counts page views. It is cookieless and does not fingerprint your browser or follow you between sites.
  • Cloudflare network — as the host, Cloudflare may set security cookies to protect the site from attack.

Turning cookies off

Your browser can block cookies for this site. If you block the ones above, reading the site works fine, but signing in and downloading resources will not — those cookies are what make an account work.

Questions about this page? Get in touch.