Skip to main content
← Back to app

Cookie Policy

Last updated: June 2026

1. What are cookies?

Cookies are small text files that a website stores on your device when you visit. They allow the site to remember information about your visit — like whether you are signed in — so you do not have to re-enter it on every page. Cookies are widely used and are essential for many features modern web apps rely on.

2. Cookies we use

Wishing Well uses a small number of cookies, all first-party (set by us, not third parties). We do not use advertising cookies or cross-site tracking cookies of any kind.

Necessary

Always active

These cookies are required for the service to function. You cannot opt out of them while using the app.

  • next-auth.session-token — HTTP-only JWT session cookie set by NextAuth.js. Keeps you signed in. Expires with the session or after 30 days of inactivity.
  • next-auth.csrf-token — CSRF protection token. Required to prevent cross-site request forgery on sign-in and sign-out actions.

Preferences

Can be disabled

These items are stored in your browser's localStorage (not sent to our servers as part of requests). Disabling them will affect your experience — for example, you may see the onboarding flow again or lose your theme preference.

  • ww-theme — stores your preferred colour theme (light / dark / system).
  • ww-onboarding-complete — remembers that you have dismissed the welcome walkthrough.
  • ww-cookie-consent — records that you have acknowledged this cookie notice, with a timestamp. Stored locally; not transmitted to us.

Analytics

None currently

We do not currently use any analytics cookies or services. If we add analytics in the future, we will update this policy and prompt you for consent at that time.

Marketing

None

We do not use marketing or advertising cookies. We do not sell your data or run ad campaigns.

3. Why single-category consent?

Because Wishing Well only uses strictly-necessary session cookies and lightweight browser-local preference keys, there is no practical benefit to per-category toggles. Necessary cookies cannot be turned off without breaking the service; preference keys are all local and never leave your device. We therefore use a single acknowledgement banner rather than a granular consent manager. If we ever add analytics or third-party cookies, we will add category-level controls at that time.

4. How to control cookies

You have several options:

  • Browser settings: All major browsers let you view, block, or delete cookies. Blocking necessary cookies will prevent you from staying signed in.
  • Clear localStorage: Open your browser's developer tools (Application > Storage > Local Storage) and delete the ww-* keys to reset all preference cookies.
  • Our consent banner: If you clear your localStorage, the consent banner will re-appear on your next visit and you can choose again.

5. Contact us

If you have questions about this Cookie Policy, contact us at support@wishingwell.app. For broader privacy questions, see our Privacy Policy.