Cookie Policy
Last Updated: March 2026
1. What Are Cookies
Cookies are small text files that are placed on your device when you visit a website. They are widely used to make websites work more efficiently, provide a better user experience, and supply information to the site owners. Cookies can be "persistent" (stored until they expire or are deleted) or "session" (deleted when you close your browser).
RecruitSecure AI uses cookies and similar technologies such as localStorage to operate, secure, and improve the Service. This policy explains what cookies we use, why we use them, and how you can manage your preferences.
2. Cookie Categories
Necessary Cookies (Always Active)
These cookies are essential for the Service to function and cannot be disabled. They are set in response to actions you take, such as logging in or setting your privacy preferences.
- Session management: Maintains your authenticated session so you remain logged in as you navigate between pages.
- Security tokens: Protects your account by validating requests and preventing unauthorized access.
- CSRF protection: Cross-Site Request Forgery tokens ensure that form submissions originate from our application and not from malicious third parties.
Analytics Cookies (Optional)
These cookies help us understand how visitors interact with the Service by collecting aggregated, anonymized information. They allow us to measure and improve performance.
- Usage patterns: Tracks which pages and features are visited most frequently to help us prioritize improvements.
- Feature adoption: Measures how new features are used so we can refine the user experience.
Marketing Cookies (Optional)
These cookies are used to deliver relevant content and measure the effectiveness of our marketing efforts. They may be set by us or by advertising partners.
- Campaign tracking: Identifies the marketing campaigns and channels that bring users to our Service, helping us allocate resources to the most effective outreach.
3. How We Use Cookies
The following describes the specific cookies and storage mechanisms set by RecruitSecure AI:
- cookie-consent (localStorage): Stores your cookie consent preferences so we remember your choices across visits and do not ask again until they expire or are cleared.
- next-auth.session-token (HTTP cookie): A secure, HTTP-only session cookie set by NextAuth.js to maintain your authenticated session. It is encrypted and cannot be read by client-side JavaScript.
- ph_* (HTTP cookie): Set by PostHog for session identification and analytics when analytics consent is given. These cookies are proxied through our domain (/ingest) and stored on EU servers.
4. Managing Your Cookies
You have full control over which optional cookies are active. There are two ways to manage your preferences:
- Cookie consent banner: When you first visit the Service, a consent banner allows you to accept or decline optional cookie categories. You can revisit and change these preferences at any time through the cookie settings link in the site footer.
- Browser settings: Most browsers allow you to block or delete cookies through their settings. Please note that blocking necessary cookies may prevent the Service from functioning correctly, and you may be unable to log in or use core features.
5. Third-Party Cookies
In addition to our own cookies, third-party services integrated with the platform may set cookies on your device:
- Stripe: Our payment processor uses cookies to support payment security, detect fraud, and comply with financial regulations. Stripe's cookie usage is governed by their own Privacy Policy.
- PostHog: Product analytics cookies for measuring feature usage. PostHog is configured to use EU servers and proxied through our domain (/ingest). See PostHog's privacy policy.
- Sentry: Error monitoring may set cookies for session replay and error tracking. See Sentry's privacy policy.
6. Data Retention
Different cookies are retained for different periods depending on their purpose:
- Session cookies: Expire automatically when you close your browser. These include authentication session tokens used to keep you logged in during a browsing session.
- Consent cookie: Your cookie consent preference is stored in localStorage for 12 months. After this period, you will be prompted to confirm your preferences again.