The tables below provide information regarding the cookies and similar technologies used on Cinobo, including their provider, category, purpose and duration.
You can change or withdraw your choice at any time under Your cookie preferences
Last updated September 11, 2026
These cookies are necessary to operate and secure Cinobo's website. They are always active and cannot be disabled through the cookie preference centre.
| COOKIE NAME | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|
cinobo-consent | Cinobo | First-party | Records which categories of non-essential cookies the visitor has accepted or refused, so the choice is honoured on later visits and can be withdrawn. Set only once a choice is made. | 182 days |
geo-country | Cinobo | First-party | Stores the country detected for the visitor, used to apply content licensing restrictions and to show the correct prices and payment options. | 1 day |
nuxt-session | Cinobo | First-party | Holds the signed-in user's session, issued once a user logs in. Encrypted and readable only by our server. | Session |
promo_code | Cinobo | First-party | Holds a promotional code the visitor entered or arrived with, so the discount still applies once they reach checkout, including after signing up or logging in. | 1 month |
__cf_bm | Adyen | Third-party | Cloudflare bot management on Adyen's own domain, telling automated traffic from real visitors while a payment is in progress. More information | 30 minutes |
_cfuvid | Adyen | Third-party | Cloudflare rate-limiting identifier on Adyen's own domain, kept only for the length of the browser session. More information | Session |
_rp_uid | Adyen | Third-party | Device identifier used by Adyen's risk engine to spot suspicious payment patterns and prevent card fraud. Adyen does not publish a lifetime for it; the duration shown is the longest we have measured. More information | 400 days |
__cf_bm | Cloudflare | First-party (third-party provider) | Set by our network security provider while bot protection is active, to tell automated traffic apart from real visitors so that bots can be blocked before they reach the service. Holds no information that identifies a person and is not used for advertising. More information | 30 minutes |
_cfuvid | Cloudflare | First-party (third-party provider) | Set by our network security provider while request rate limiting is active, so that a limit applies per visitor rather than to everyone sharing a network connection. Deleted when the browser is closed. More information | Session |
intercom-id-<app id>, intercom-device-id-<app id> | Intercom | First-party (third-party provider) | Assigns an anonymous visitor and device identifier, so someone returning to the support chat keeps their conversation history and the Messenger can limit abuse. More information | 9 months |
intercom-session-<app id> | Intercom | First-party (third-party provider) | Keeps a support chat session open so an ongoing conversation can be continued, and identifies the signed-in user to the Messenger so the support agent can answer about their account. More information | 7 days |
| NAME | TYPE | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|---|
adyen_transaction_id | Session storage | Cinobo | First-party | Carries the payment transaction reference across the bank's 3-D Secure redirect, so the payment can be completed on return. Removed as soon as the payment finishes. | Session |
cinobo_device_id | Local storage | Cinobo | First-party | A randomly generated device identifier sent with playback and licence requests, used to enforce the concurrent-stream and registered-device limits that apply to a subscription. | Persistent (until deleted) |
_rp_uid | Local storage | Adyen | Third-party | The same fraud-prevention identifier as the cookie of this name, mirrored into local storage by Adyen's payment page so the risk check still works when cookies have been cleared. More information | Persistent (until deleted) |
adyen-checkout__checkout-attempt-id | Session storage | Adyen | First-party (third-party provider) | Identifies one payment attempt, so the steps of a single checkout can be tied together while it is in progress. Cleared when the browser tab is closed. More information | Session |
visitedPages | Local storage | Adyen | Third-party | Written by Adyen's hosted payment page inside its own frame during checkout. Adyen does not document its contents; from the name it records which steps of the payment flow have already been shown, so a payment can resume at the right point. More information | Persistent (until deleted) |
__ph_opt_in_out_<project key> | Local storage | PostHog | First-party | Records whether the analytics library may run, so the visitor's choice survives to later visits. Deliberately kept when the analytics data is deleted, because removing it would restart collection. More information | Persistent (until deleted) |
i18nextLng | Local storage | YouCanBookMe | Third-party | Remembers which language the booking widget was last displayed in. Set only once you open the widget to book a call. More information | Persistent (until deleted) |
These cookies collect information about how visitors use the Website and help us improve its performance and functionality.
Set only after you accept this category in the cookie banner. Withdrawing your consent stops these services and removes the cookies and storage they set on cinobo.com; a cookie set on another company's domain can only be removed through your browser settings.
| COOKIE NAME | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|
_ga | Google Analytics | First-party (third-party provider) | Distinguishes users and collects statistical information regarding website usage and performance. More information | 2 years |
_ga_<property> | Google Analytics | First-party (third-party provider) | Maintains analytics session state. More information | 2 years |
ph_<project key>_posthog | PostHog | First-party (third-party provider) | Identifies the browser for our product analytics — an anonymous visitor and session identifier before sign-in, and the account identifier afterwards — so we can see which pages are viewed and how visitors move between them, and improve the service on that basis. Set on Cinobo's own domain because analytics requests are routed through it. More information | 1 year |
| NAME | TYPE | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|---|
ph_<project key>_posthog | Local storage | PostHog | First-party (third-party provider) | Mirror of the PostHog analytics cookie, holding the same identifier — anonymous before sign-in, the account identifier afterwards — along with the session identifier and feature-flag state. More information | Persistent (until deleted) |
ph_<project key>_window_id, ph_<project key>_primary_window_exists | Session storage | PostHog | First-party (third-party provider) | Lets PostHog tell browser tabs apart, so activity in one tab is not counted twice. More information | Session |
These cookies are used to deliver advertising and marketing content, measure the effectiveness of campaigns, and track user activity across websites.
Set only after you accept this category in the cookie banner. Withdrawing your consent stops these services and removes the cookies and storage they set on cinobo.com; a cookie set on another company's domain can only be removed through your browser settings.
| COOKIE NAME | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|
_gcl_au | Google Ads | First-party (third-party provider) | Stores an ad click identifier so that a later sign-up or purchase can be attributed to the advertisement that brought the visitor to the site. More information | 3 months |
_gcl_aw | Google Ads | First-party (third-party provider) | Stores the Google Ads click identifier from the advertisement the visitor arrived through, so a later sign-up or purchase can be reported back to that campaign. Set only on a visit that arrives from a Google advertisement. More information | 3 months |
GCL_AW_P | Google Ads | Third-party | Copy of the Google Ads click identifier kept on Google's own advertising domains, so a conversion can still be matched to the campaign when the identifier on our domain is unavailable. Google does not document this cookie by name; the duration shown is the longest we have measured. More information | 3 months |
IDE | Google DoubleClick | Third-party | Registers and reports what a visitor does after seeing or clicking an advertisement, so campaign effectiveness can be measured and further advertising targeted. More information | 13 months |
test_cookie | Google DoubleClick | Third-party | Written once to check whether the browser accepts cookies at all. Holds no identifier and expires within minutes. More information | 15 minutes |
_fbc | Meta | First-party (third-party provider) | Stores the Meta click identifier from the advertisement the visitor arrived through, so a later sign-up or purchase can be attributed to that advertisement. Set only on a visit that arrives from a Meta advertisement. More information | 3 months |
_fbp | Meta | First-party (third-party provider) | Used by Meta to deliver advertising products, measure advertising effectiveness, and support retargeting activities. More information | 3 months |
_tt_enable_cookie | TikTok | First-party (third-party provider) | Records that the TikTok pixel is permitted to use cookies on this browser. More information | 3 months |
_ttp | TikTok | First-party (third-party provider) | Identifies a browser across visits so TikTok can attribute advertising and measure campaign performance. Also set on tiktok.com as a third-party cookie. More information | 13 months |
ttclid | TikTok | First-party (third-party provider) | Stores the TikTok click identifier from the advertisement the visitor arrived through, so a later sign-up or purchase can be attributed to it. Set only on a visit that arrives from a TikTok advertisement. TikTok does not publish a lifetime for it; the duration shown is what we measured. More information | 1 day |
ttcsid, ttcsid_<pixel> | TikTok | First-party (third-party provider) | Session identifier used to attribute a visit, and any resulting sign-up or purchase, to a TikTok advertisement. More information | 13 months |
| NAME | TYPE | PROVIDER | PARTY | PURPOSE | DURATION |
|---|---|---|---|---|---|
_gcl_ls | Local storage | Google Ads | First-party (third-party provider) | Local storage counterpart of the conversion linker, holding the same ad click identifier. More information | Persistent (until deleted) |
lastExternalReferrer, lastExternalReferrerTime | Local storage | Meta | First-party (third-party provider) | Records where the visitor arrived from, so the pixel can attribute the visit to a Meta advertisement. More information | Persistent (until deleted) |
multiFbc | Local storage | Meta | First-party (third-party provider) | Keeps the recent Meta click identifiers a browser has arrived with, so the pixel can attribute a sign-up or purchase to the right advertisement when a visitor has clicked more than one. Meta does not document this key. More information | Persistent (until deleted) |
tt_ keys (tt_sessionId, tt_appInfo and similar) | Session storage | TikTok | First-party (third-party provider) | Holds the current TikTok pixel session and the browser details sent with it, so the events of one visit are grouped together. Cleared when the browser tab is closed. More information | Session |
ytidb::LAST_RESULT_ENTRY_KEY, yt-icons-last-purged | Local storage | YouTube (Google) | Third-party | Housekeeping for the embedded YouTube player: which player resources it has already cached, and when it last cleared them. Written on youtube-nocookie.com, not on Cinobo's own domain. More information | Persistent (until deleted) |