Skip to content
← All legal documents

Cookie Policy

Everything this product can store on your device, what sets it and how long it lasts, the analytics the site runs, and how to switch it off.

Version 1.1Effective 2026-09-14Previous versions (1)
Analytics can be switched off from the footer of any page. This policy sits alongside the Privacy Policy, whose section 11 covers the same ground in summary.
Contents

01·The short version#

Vinfirm sets one analytics cookie when you open any page, signed in or not. It holds a random identifier and nothing else, and you can switch it off: the control sits in the footer of every public page, including the records page for a car, and in Settings once you are signed in. Everything else this site stores exists to do something you asked for: staying signed in, and not having a payment rejected as unverifiable.

There is no advertising, no advertising pixel, no session recording, and nothing that follows you to other websites. Nothing about you is sold or shared with anyone.

02·Analytics#

Analytics runs through PostHog, which processes it for us under contract and may not use it for anything else. It counts page views and records which steps of the product were used, so we can see which parts work and which lose people. While you are signed in, those steps are linked to your account.

What it never receives: the contents of a document you uploaded, anything read off one, or the VIN. Addresses are cleaned before they are sent, so a transfer invite link or a VIN typed into the lookup page does not travel with the page view.

Analytics requests are carried over a Vinfirm subdomain rather than sent to PostHog's own address. That is so the measurement is not silently broken by ad blockers; it is the same data either way, and Cloudflare carries it.

Public profile view counts are a separate and simpler thing: a single number incremented on our own server, holding no viewer identity. No visitor list, IP address, location, device fingerprint or cookie is stored to produce them, and known crawlers are excluded so the number means something to the seller reading it.

03·Everything this product can store on your device#

Each row below is something this application, or a service embedded in it, may store, and the circumstances under which it appears. Two of the rows are browser storage rather than cookies, and they are in the table anyway: the distinction matters to a machine and not to someone asking what this site keeps. Nothing outside this table is set by Vinfirm.

The bot check on the sign-in and signup forms is run by Cloudflare Turnstile, which loads a script from Cloudflare on those two pages. It sets nothing on this site.

NameSet byWhyHow long
ph_…_posthogVinfirm (via PostHog)Analytics. Holds a random identifier so repeat visits are counted as one person rather than several. Set on your first page, signed in or not. Switch it off from the footer of any page.1 year
ph_…_posthog (browser storage)Vinfirm (via PostHog)The same analytics identifier, plus the current session's window and page state. Stored alongside the cookie rather than in it. Removed when you turn analytics off.Until you turn analytics off or clear site data
__ph_opt_in_out_…Vinfirm (via PostHog)Records that you turned analytics off, which is the only way not to ask again on the next page. Set only if you refuse.Until you turn analytics back on or clear site data
sb-…-auth-tokenVinfirm (via Supabase)Keeps you signed in and tells the app which account is making a request. Set only after you sign in.Until you sign out or it expires
__stripe_midStripeFraud prevention on card payments. Set only on a page where a payment form is loaded.1 year
__stripe_sidStripeFraud prevention within a single checkout session.30 minutes

04·Why there is a switch and not a banner#

A banner asks every visitor to decide something before they can read the page. That is the right trade when a site is loading advertising trackers, because the visitor is being asked to accept something that follows them elsewhere. Nothing here does: the analytics is first-party, it is used to improve this product and nothing else, it is not sold or shared, and it runs no advertising.

So the choice is offered as a control rather than a gate. The switch is in the footer of every public page, on the records page a seller shares, and in Settings once you are signed in. Turning it off stops the collection and clears what was stored, keeping only the record that you refused, so we do not start again on the next page.

A browser sending a Global Privacy Control signal is switched automatically, with nothing to click: those visits are counted by a method that writes nothing to the device at all and cannot be joined to an account.

Analytics for this browser

This is a change from the first version of this policy, which said that a signed-out visitor was served no cookies at all. That was true of the product as it was then. It stopped being true on 14 September 2026, which is why this version exists and the previous one is kept.

05·Controlling cookies yourself#

Every browser can block or delete cookies for a site, and you can do that to Vinfirm at any time, on top of the analytics switch described above. Clearing the session cookie signs you out; blocking it means you cannot sign in, because the app has no other way to recognise you between requests. Blocking Stripe's means checkout may refuse the payment as unverifiable.

None of that affects reading a public sale profile or a seller's profile, neither of which requires a cookie.

Vinfirm is operated by Vinfirm LLC, an Indiana limited liability company, which is the company responsible for what this page describes. Questions about any of it can go to help@vinfirm.com.