Every named item below is set by this site, its infrastructure or its payment processor. Category follows the standard classification: strictly necessary, functional, analytics or advertising.
- fp_audit_draft — local storage — strictly necessary
- Saves your progress through the multi-step audit so a refresh or a dropped connection does not lose your answers. Stays on your device, is not transmitted until you submit, and is cleared on submission or by clearing site data.
- fp_signup_draft — local storage — strictly necessary
- The same autosave behaviour for the subscription signup flow. Cleared on submission.
- fp_ref — local storage — strictly necessary
- Stores the 10 digit reference issued to your submission so your status page loads without you retyping it. Duration: until cleared.
- sb-* auth token — local storage — strictly necessary
- Set by our managed authentication infrastructure to keep a signed-in session valid and to enforce record-level access controls. Duration: session lifetime plus refresh window.
- fp_theme — local storage — functional
- Remembers a light or dark interface preference. Optional; absence simply falls back to the system setting.
- fp_consent — local storage — strictly necessary
- Records your consent choice so we do not ask again on every visit. Duration: 12 months, after which we ask again.
- __stripe_mid, __stripe_sid — cookies set by Stripe — strictly necessary
- Set only on checkout pages, for fraud prevention and payment session integrity. Durations: 12 months and 30 minutes respectively. Governed by Stripe's own privacy notice as an independent controller.
- Edge and security logs — server-side, not on your device
- Truncated IP, user agent and request path retained for a maximum of 14 months for security, abuse prevention and uptime diagnostics. Not linked to marketing profiles.