Legal

Cookie Policy

How Daobook uses cookies and similar technologies.

Last updated April 13, 2026

Daobook uses a small number of cookies — only what is needed to keep you signed in, keep the application secure, and let payments work. We do not run advertising trackers, analytics trackers, behavioural-profiling tools, or third-party marketing pixels on daobook.com.au.

What cookies are

Cookies are small text files a website stores on your device. They let a site remember things between page loads — most importantly, that you are signed in. Local storage is a similar browser feature that we use for the same purposes.

What we set

  • Session cookie (_daobook_session) — keeps you signed in between pages. It is HttpOnly, set with the Secure flag in production, and uses SameSite=Lax. It expires after two weeks of inactivity, or when you sign out.
  • CSRF token — a short cookie used to verify that form submissions came from the page they appear to. This protects you from cross-site request forgery attacks.
  • Local preferences — small bits of state stored in your browser (for example, whether a help panel is collapsed, or your last-used filter on a screen). These never leave your device.

Cookies set by third parties

Where parts of Daobook rely on a third-party service, that service may set its own cookies in your browser. The current list is short:

  • Stripe — the payment script (js.stripe.com/v3) runs on pages where you enter card details so Stripe can detect and prevent fraud. Stripe sets its own cookies (such as __stripe_mid and __stripe_sid) and the data goes to Stripe rather than to us. See Stripe's cookie information.

We do not load Google Analytics, Google Tag Manager, Meta Pixel, Hotjar, Mixpanel, advertising networks, or any similar tracking tool on our marketing or application pages.

Managing cookies

You can clear cookies, block them, or set your browser to warn you before accepting them through your browser's settings. If you block the session cookie or CSRF cookie, Daobook will not be able to keep you signed in or accept form submissions, so the application will not work.

Changes to this policy

If we add or change a cookie — for example, if we ever introduce a privacy-respecting analytics tool — we will update this page and the "last updated" date at the top.

Contact

Questions about cookies or other tracking technologies: admin@daobook.com.au.