Privacy

Cookie Policy

We use a small number of cookies and similar storage to make YSA work. This page lists what we use and why, in plain language.

Last reviewed: 2026-04-30

Draft / in reviewYSA is being developed as an independent platform and proposed foundation model. This page is a working draft published for transparency. Legal, charity, tax and trustee structures must be confirmed before fundraising or grant-making, and final policies will be reviewed by qualified advisers before public launch.

Section 1

Essential cookies

These are required for the site to function, including authentication, session management and security. Disabling them will break sign-in and reply flows.

  • payload-token — keeps you signed in across pages.
  • CSRF / session protection — protects sign-in and form submissions.

Section 2

Analytics and performance

We use lightweight, privacy-respecting analytics to understand which pages help and to detect outages. Where required by law we ask for consent before non-essential analytics fires.

Section 3

Auth and session

When you sign in we set an auth cookie linked to your YSA account. This cookie is HttpOnly, scoped to YSA and used only for sign-in. It is removed when you sign out.