Cookie Policy
Last updated on the system
Cookie Policy
Effective date: 5 August 2026
Frontend Forever uses browser cookies and browser storage to provide sign-in, security, preferences and optional analytics. The Service is operated from Tamil Nadu, India. Contact admin@frontendforever.com with questions.
1. Required authentication cookies
When you sign in, the server sets HttpOnly access_token and refresh_token cookies. They are used to authenticate API requests and refresh a session; JavaScript cannot read their values. In production they are configured as Secure cookies with SameSite=Lax. The access token is short-lived and the refresh token lasts for the configured session period (currently about 30 days). Clearing cookies or signing out ends the browser session, but server-side session or security records may remain for protection and audit purposes.
2. Required browser storage
The web application may use localStorage or sessionStorage for non-secret preferences and interface state, such as theme, onboarding state, cached UI choices and the cookie-consent record. Authentication tokens are not stored in localStorage by the web client. The consent record uses the key ff:cookie-consent and is reviewed after approximately one year.
3. Optional analytics
Firebase Analytics is optional on the web. It is initialised and allowed to collect page-view events only after you choose “Accept” for optional analytics cookies. If you choose “Required only”, dismiss the banner, withdraw consent, or have no recorded choice, optional analytics collection is disabled. Firebase may process analytics data under its own terms and privacy documentation.
4. Push and embedded services
If you request browser push notifications, the browser creates a push subscription and the Service stores the token or endpoint needed to deliver notifications. You can revoke permission in the browser and unregister the subscription from account settings where available. External login, payment, media, support or embedded services may set their own cookies or storage; their policies control those technologies.
5. Managing cookies
You can clear or block cookies in your browser, delete local/session storage, sign out, or change the consent choice through the cookie controls. Blocking required cookies can prevent sign-in, billing, downloads, security checks or other core features. Cookie controls do not erase account data; use the account export or deactivation flow, or contact admin@frontendforever.com, for data requests.
We may update this Policy when the Service changes. The current version is published with its effective date and forms part of the Privacy Policy.

