Skip to main content
FlowShot
Legal

Cookie Policy

Last updated: August 12, 2026

FlowShot uses essential browser storage to operate the service and optional analytics only after you consent. We do not use advertising cookies.

What are cookies?

Cookies are small text files stored in your browser when you visit a website. They allow a site to remember information about your visit — such as whether you are logged in.

What cookies does FlowShot use?

FlowShot uses essential storage for authentication and app functionality. On the marketing site, we also offer optional analytics to measure visits and selected interactions. Google Analytics and PostHog are not loaded unless you select “Accept analytics.”

Essential cookies — first party

These cookies are set by FlowShot directly:

Cookie / storage key Purpose Duration
firebase:authUser:* Firebase Authentication — stores your encrypted session token so you stay logged in across page reloads and browser sessions. Until sign-out
firestore/[app-id]/* Firestore offline persistence — caches recent Firestore data in IndexedDB so the app loads faster and works briefly without a network connection. Until cleared by app or browser
flowshot-analytics-consent-v1 Remembers whether you accepted or declined optional marketing-site analytics so we can respect your choice on later visits. Until cleared by you

Both of these are stored in localStorage / IndexedDB (not traditional HTTP cookies), but they serve the same session-management purpose and are disclosed here for transparency.

Optional analytics — only after consent

If you accept analytics on the marketing site, the following services may store first-party identifiers on flowshot.space. We use the data to understand page visits, pricing interest, product-demo interaction, and the path from a marketing page to account setup. We do not send form messages, email addresses, project names, or uploaded media in these events.

Cookie / service Purpose Duration
_ga, _ga_*
Google Analytics 4
Distinguishes browser visits and measures page views and the specific conversion events described above. Up to 2 years
ph_*_posthog and related local storage
PostHog
Measures selected marketing-site interactions. Automatic click capture and session recording are disabled in our configuration. Up to 365 days

Browser settings, privacy features, or a later policy change by a provider may shorten these durations. Declining optional analytics prevents these providers from loading through the FlowShot marketing site.

Essential cookies — third party

The following cookies are set by third-party services that are integral to the FlowShot product:

Service Purpose Duration
Creem Subscription billing and fraud prevention. Checkout is hosted on Creem's own domain, where Creem sets session cookies to maintain state and detect fraudulent transactions. You meet these cookies only when you start a subscription payment. Session / up to 1 year (Creem-managed)
Video CDN CDN cookie used for video streaming and delivery. May be set to manage CDN routing and enforce signed-URL access control for protected media files. Session

No advertising cookies

FlowShot does not use:

  • Facebook Pixel or any social media tracking pixels.
  • Advertising retargeting cookies.
  • Third-party audience profiling tools.

How to control cookies

On your first marketing-site visit, you can accept or decline optional analytics. You can revisit that choice at any time using Cookie settings in the footer. A new choice applies from that point forward; you can also clear existing analytics cookies in your browser.

You can clear cookies at any time through your browser settings. Clearing the Firebase authentication storage will sign you out of FlowShot. Clearing Firestore persistence data will cause the app to re-download data on the next load.

Changes to this policy

If we introduce new cookies, we will update this page and notify account owners by email at least 14 days before the change takes effect.

Contact

Questions about cookies? Email us at privacy@flowshot.space.