Legal

Cookie Policy

Last updated: 1 June 2026

This policy explains what cookies are, which ones HyPair uses, and what your options are. Short version: we use very few cookies, none of them are for advertising, and most are strictly necessary for the site and app to work.

1. What are cookies

Cookies are small text files stored on your device when you visit a website or use an app. They help the site remember things like whether you're logged in, your preferences, and how you interact with pages.

Similar technologies — like local storage and session tokens — work in a similar way and are covered by this policy.

2. What we use

HyPair's website (hypair.app) sets no browser cookies at all. We do not use advertising cookies, tracking pixels, third-party analytics cookies, or any strictly-necessary cookies from a CDN/security layer — the site is served directly by Vercel with no such layer in front of it. We do use Vercel Web Analytics on the website — it's cookieless (see below), so it doesn't appear in the table.

The HyPair mobile app stores session tokens on your device (not a browser cookie) to keep you logged in — listed below for transparency even though they're technically device storage, not a cookie.

Cookie / token Type Purpose Set by Expires
sb-access-token Functional Supabase authentication session token — keeps you logged in to the HyPair app. Stored in secure device storage, not a browser cookie. HyPair / Supabase 1 hour (refreshed automatically)
sb-refresh-token Functional Supabase session refresh — allows your login session to renew without re-entering your password. HyPair / Supabase 60 days
No advertising or tracking cookies. HyPair does not use Google Analytics, Facebook Pixel, or any other third-party tracking or advertising technology, and we do not track you across other websites. We do use Vercel Web Analytics — a cookieless, privacy-friendly tool that counts aggregate page views without setting a cookie, fingerprinting your device, or collecting any personal data.

3. Strictly necessary cookies

HyPair's website does not currently set any strictly necessary cookies.

4. Functional cookies

The Supabase session tokens are functional — they are essential for keeping you logged in to your HyPair account. Without them, you would need to log in every time you open the app. These are stored in your device's secure storage (not accessible to other apps or websites) rather than as browser cookies.

5. What we don't use

The one exception is Vercel Web Analytics (see section 2) — it's cookieless and collects no personal data, so it isn't a cookie by any definition, but we're calling it out here for full transparency.

6. Managing cookies

You can control cookies through your browser settings. Most browsers allow you to block, delete, or get notified about cookies. HyPair's website sets none, so there's nothing to manage there.

For the HyPair mobile app, session tokens are managed through your device's secure storage. You can clear them by signing out of your account in Settings.

7. Changes to this policy

If we introduce new cookies or technologies — for example if we add analytics in the future — we will update this policy and notify users via the app or email before making any changes. We will never introduce advertising or tracking cookies without clearly informing you first.

8. Contact

Questions about cookies or this policy: hello@hypair.app
HyPair Ltd · Ireland