Legal
Cookie Policy
This policy explains what cookies Humalyzer uses, why we use them, and what your options are. The short version: we use only essential cookies and no tracking or advertising cookies whatsoever.
1. What Are Cookies?
Cookies are small text files that a website stores in your browser when you visit. They allow the site to remember certain information about your visit — for example, that you are logged in or that you have a preferred language setting.
Cookies are classified in several ways:
- Session cookies — exist only while your browser is open and are deleted when you close it.
- Persistent cookies — remain on your device for a set period or until you delete them.
- First-party cookies — set directly by the site you are visiting (Humalyzer.dk in our case).
- Third-party cookies — set by a different domain, typically by analytics or advertising services. Humalyzer does not use any third-party cookies.
2. Our Approach
No tracking. No advertising. No analytics.
Humalyzer does not use Google Analytics, Meta Pixel, Hotjar, Intercom, or any other analytics, advertising, or behavioural tracking service. Our Content Security Policy blocks all external scripts. The only cookies set on this site are strictly necessary for the platform to function.
Because we use only strictly necessary cookies, the ePrivacy Directive (implemented in Danish law via the Cookie Executive Order, Bekendtgørelse om krav til information og samtykke ved lagring af eller adgang til oplysninger i slutbrugeres terminaludstyr) does not require us to obtain your prior opt-in consent for cookies. We are, however, required to inform you clearly about the cookies we use — which is the purpose of this page.
3. Cookies We Use
The following table lists every cookie set by the Humalyzer platform. There are no others.
| Cookie name | Category | Purpose | Duration | Flags |
|---|---|---|---|---|
sessionid
|
Strictly necessary | Maintains your authenticated session with the Humalyzer dashboard or your in-progress personality assessment. Without this cookie, you would be logged out after every page load. | 8 hours (expires on inactivity; cleared on logout) | Secure HttpOnly SameSite=Lax |
csrftoken
|
Strictly necessary | Cross-Site Request Forgery (CSRF) protection token. Included in forms to verify that form submissions originate from this site and not from a third-party attacker. A security requirement on all modern web applications. | 1 year (standard Django CSRF lifetime) | Secure HttpOnly SameSite=Lax |
django_language
|
Functional | Remembers your language preference (e.g. English or Danish) so that the platform displays in the correct language across page navigations. No personal data is stored in this cookie; it contains only a language code (e.g. en or da). | 1 year | Secure SameSite=Lax |
4. Local Storage
In addition to cookies, the platform uses browser localStorage for one purpose: to remember that you have dismissed the cookie-notice banner. A single key (cookie_notice_dismissed) is stored with the value true. No personal data is stored in localStorage. This avoids creating an additional cookie solely to record the fact that you acknowledged the cookie notice.
You can clear localStorage at any time through your browser's developer tools or storage settings. Doing so will cause the cookie notice to reappear on your next visit.
5. No Third-Party Cookies
Humalyzer does not embed any content from third-party services that set cookies. Specifically, we do not use:
- Analytics services (e.g. Google Analytics, Mixpanel, Amplitude)
- Advertising or retargeting networks (e.g. Meta Pixel, Google Ads, LinkedIn Insight Tag)
- Behavioural tracking or session-recording tools (e.g. Hotjar, FullStory, Microsoft Clarity)
- Live chat widgets (e.g. Intercom, Zendesk, Drift)
- Social media embeds or share buttons
- Web fonts from third-party CDNs (all fonts are self-hosted)
- Scripts or assets loaded from external CDNs
Our Content Security Policy (CSP) actively blocks all external scripts and external resources at the browser level, providing a technical guarantee in addition to this policy statement.
6. Managing & Deleting Cookies
Since we use only strictly necessary and functional cookies, there is no opt-out mechanism for cookies on this site — opting out of the sessionid or csrftoken cookies would prevent you from logging in or submitting forms.
You can manage or delete cookies using your browser settings. Note that clearing the session cookie will log you out immediately:
Google Chrome
Settings → Privacy and security → Cookies and other site data → See all site data and permissions
Mozilla Firefox
Settings → Privacy & Security → Cookies and Site Data → Manage Data
Apple Safari
Preferences → Privacy → Manage Website Data
Microsoft Edge
Settings → Cookies and site permissions → Cookies and site data → See all cookies and site data
7. Future Changes
If we ever introduce analytics, advertising, or other non-essential cookies in the future, we will update this policy and implement a proper Consent Management Platform (CMP) before any such cookies are set. Under the ePrivacy Directive, non-essential cookies require prior opt-in consent, and we will not set them without it.
We are committed to maintaining a minimal cookie footprint and will not add third-party scripts or tracking to the platform without explicit review and disclosure.
Version history
8. Contact
If you have questions about this Cookie Policy or about how we use cookies, please contact us at: Privacy Policy.