Cookies and similar technologies
Last updated: 30 July 2026
This notice covers cookies, browser storage, authentication tokens, scripts and similar technologies used by the ClauseCast application.
Technologies used
| Technology | Purpose | Typical duration | Consent |
|---|---|---|---|
| Kinde authentication and SSO technologies | Sign-in, registration, authentication security, OAuth redirects, session continuity and sign-out. | The Kinde-hosted SSO session is configured as persistent with a 24-hour timeout. Sign-out, revocation or security action can end it earlier. | Strictly necessary for the authenticated service. |
| In-memory access and identity tokens | The current Kinde JavaScript PKCE integration keeps tokens in browser memory. The supplied code does not enable Kinde’s local-storage refresh-token option. | Configured lifetimes are one hour for ID tokens, 24 hours for access tokens and 15 days for refresh tokens. The current frontend keeps access and identity tokens in memory and does not explicitly enable local-storage refresh-token persistence, so practical browser storage may be shorter. | Strictly necessary. |
| Active conversation and document context | Maintains the current evaluation and clarification flow in JavaScript memory. It is not deliberately written to localStorage or a client-side database by the supplied application. | Until reset, refresh or closure of the active page or browser process. | Strictly necessary to provide the requested evaluation. |
| Infrastructure and security technologies | Deliver the website and API, route traffic, enforce security and rate limits and protect the service. | Session or provider-configured duration. | Communication or strictly necessary exception, as applicable. |
No analytics or advertising tracking in the supplied site
The supplied frontend does not contain Google Analytics, advertising pixels, social-media tracking, session replay or comparable non-essential tracking code. ClauseCast therefore has not added a consent banner to this version of the site.
If analytics, advertising, embedded media, social plugins or another non-essential technology is introduced, ClauseCast must update this notice and implement consent or an applicable statutory exception before the technology operates.
Kinde-hosted pages
Users are redirected to a Kinde-hosted domain for passwordless email sign-in. Self-service sign-up is disabled. ClauseCast’s Kinde data region is UK—London, and social login, SMS authentication, multi-factor authentication and Kinde billing are disabled. Kinde may set technologies required for authentication and security on its domain. Exact cookie names can change with Kinde releases.
Passwordless sign-in emails are sent through ClauseCast’s own contracted email-delivery provider. Email delivery does not add a non-essential tracking technology to the ClauseCast website, although the provider processes the recipient address and delivery/security metadata needed to send the message.
Managing technologies
Browser controls can delete or block cookies and site data. Blocking authentication or other strictly necessary technologies may prevent sign-in or use of the secure service.
Contact
Questions about these technologies may be sent to admin@clausecast.com or by post to ClauseCast Ltd, 124 City Road, London, United Kingdom, EC1V 2NX.