Cookie and browser storage policy
Last updated October 7, 2026
Draft: this page still needs review by a lawyer and isn’t final legal advice.
This policy explains how Chaos uses cookies, local storage and session storage in your browser. You can use the service without allowing optional analytics.
Storage for the service you request
- Sign-in and security: Clerk, or Better Auth on deployments that choose it, uses cookies to maintain and verify your session. The sign-in provider controls their lifetime; they may expire on sign-out or when the session ends.
- Language:
chaos-langremembers your chosen language for up to one year. - Privacy choice:
chaos-consentstores your analytics choice, the time you chose and the settings version for 180 days. It contains no name or answers. After expiry, we ask again and analytics stays off. - Preferences and saved work: local storage holds appearance and sound preferences, answer drafts, device learning progress and cached workspace results. Session storage holds some form state. Some data remains until you reset it or clear browser storage; account workspace caches are cleared on sign-out.
Optional PostHog analytics
When analytics is configured and you allow it, PostHog measures page visits, selected usage events, errors and loading times. Page addresses are cleaned to remove private links, names and codes. We do not send form answers or question text in these analytics, and session replay and automatic capture of clicks and inputs are disabled.
PostHog uses local storage, including keys beginning ph_, for visitor, device and session identifiers. Signed-in account events are linked to your account ID, without your name or email. We do not load PostHog or send events before you allow it, and we do not replay events from before your choice. Rejecting or withdrawing consent stops analytics and removes this project’s browser identifiers. It does not delete events already sent.
On chaos.fail (hosted on Vercel), allowing analytics also turns on Vercel Speed Insights, which measures how fast pages load (Core Web Vitals). It records the page’s route pattern, such as “a form”, never the real address, and sets no cookies or browser storage. It does not load before you allow analytics, and self-hosted Chaos never loads it.
Control your choice
The privacy notice offers both Allow analytics and Reject analytics. Change your choice at any time using Cookie settings in the site footer, Cookies and analytics in dashboard Settings, or the button below. Do Not Track and Global Privacy Control signals keep analytics off. If your browser blocks saving the choice, we may ask again on your next visit.
The choice cookie may be shared across configured Chaos subdomains. Local storage belongs to each origin; open Cookie settings on the relevant origin to remove analytics identifiers there, or clear them in your browser. Clearing browser data can also remove answer drafts and device progress and sign you out.
Advertising and external services
We do not use advertising cookies or advertising tracking networks. If you open an external service or its embedded content, that service’s policy governs its storage. Your choice here does not grant analytics consent to an external site.
Read our privacy policy for other data practices. For questions or requests about previously sent data, contact khomod14@gmail.com.