Cookie Policy for Sid6.com
Effective Date: September 6, 2026
This Cookie Policy ("Policy") explains how the Sid6 platform (the "Service"), operated at sid6.com, uses cookies, local storage, session tokens, and similar browser storage technologies. It details what data elements are stored before and after your consent decisions, how core system functionality is delivered, and how you can manage or change your choices.
1. What This Policy Covers
This Policy applies to all users and visitors accessing or interacting with sid6.com.
The Service is provided and operated in PERPETUAL BETA. This continuous deployment and operational framework means platform features, system optimizations, interactive tools, and efficiency mechanisms are updated regularly. Consequently, this Policy is versioned alongside all other core legal documents governing the platform.
2. Strictly Necessary Storage
SID6 uses storage needed to provide functions you request, such as signing in, keeping a secure session, choosing a language, or remembering a privacy choice. A function is not strictly necessary merely because it improves efficiency, measures an audience, or is described as a security feature.
Authentication and session continuity for a requested account or business workspace.
Security state needed to protect a requested authentication or service function.
Language and interface preferences where intrinsic to the requested service.
The analytics consent or refusal preference, retained to respect your choice.
Where applicable law exempts storage or access needed solely to transmit a communication or strictly necessary to provide a service you expressly request, that limited operation may occur without analytics consent. This assessment depends on the actual purpose and use, not on whether a cookie is first-party or third-party. Other personal-data obligations continue to apply.
A third-party provider may use a strictly necessary cookie for a requested security or authentication function only where the applicable exemption is satisfied. Third-party status, a security label, or a general fraud-prevention objective does not create a blanket exemption. An exempt cookie must not be repurposed for optional analytics, advertising, or cross-site profiling without the required separate basis and consent. You can block storage through browser settings, but the affected requested function may then be unavailable.
3. Analytics and Optional Storage
Optional browser measurement uses SID6 first-party analytics to understand limited page and feature usage and improve the platform. Built-in Google Analytics and Google Tag Manager integrations are retired. This built-in measurement does not send its usage data to Google or other third-party analytics providers. It does not use a persistent analytics identifier in a cookie, local storage, or session storage; visit identifiers exist only in the current page runtime. The absence of a persistent identifier does not make browser behavior measurement automatically exempt from consent.
Prior choice: optional browser page and interaction measurement stays off until you explicitly accept analytics. Silence, scrolling, continued use, or acceptance of a legal document does not provide analytics consent.
Limited collection: built-in analytics excludes typed values, visible element text, URL queries and fragments, and authenticated account identifiers. Session replay and screen recording are disabled.
Independent service operations: server-side counters record business operations such as orders or bookings through the service that performs the operation, independently of the analytics preference. Necessary authentication, security, and service processing also continues after refusal; its lawful basis and retention remain subject to applicable data-protection law.
Access: refusing optional analytics does not prevent login or use of the requested service. The analytics choice does not authorize unrelated third-party integrations or administrator-provided custom content. Any such optional processing requires its own accurate disclosure and applicable consent.
For consented browser page views, SID6 may derive an approximate country from the connection IP address using a country database held locally on its server. Only the country code, or an unknown value when unavailable, is added to analytics; the IP address is not retained in analytics. The lookup does not send visitor IP addresses to the country-database provider. This is approximate country-level measurement, not precise location or an authenticated identity, and it follows the analytics retention policy.
4. If You Decline Optional Storage
Rejecting analytics stops optional browser measurement and remembers the refusal, just as acceptance is remembered.
Both decisions are stored for 180 days using the sid6_consent preference cookie and the s6_consent_v1 local-storage record. Neither record is an analytics identifier. The local record is ignored after the same 180-day maximum even if your browser retains its bytes longer.
Clearing or blocking preference storage, using another browser, or reaching expiry can require a new choice. Optional browser analytics stays off while no valid grant exists.
When Global Privacy Control (GPC) is enabled and detected, optional browser analytics is denied even if an earlier grant was stored.
5. Withdrawing or Modifying Your Consent
You maintain complete control over your optional storage choices and may alter or revoke your permissions at any time.
Use the cookie icon labelled Cookie settings in the website or dashboard footer, or the Cookie settings control on a standalone service, to reopen the choice. Choose Reject analytics to withdraw. Future optional browser collection stops and the refusal is retained.
A prior account-level legal acceptance does not restore a withdrawn analytics grant. The preference applies to the browser and site where it is recorded, not automatically to every device or separate service domain.
Withdrawal does not undo processing already lawfully performed. You can remove browser storage in browser settings; this can also sign you out or remove preferences. For rights concerning retained personal data, use the Privacy Policy contact route.
6. Service Provided "AS IS" and Limitation of Liability
THE SERVICE AND ALL ASSOCIATED STORAGE TECHNOLOGIES ARE PROVIDED ON AN "AS IS" AND "AS AVAILABLE" BASIS. TO THE MAXIMUM EXTENT PERMITTED BY APPLICABLE LAW, SID6 DISCLAIMS ALL WARRANTIES, EXPRESS, IMPLIED, STATUTORY, OR OTHERWISE, INCLUDING BUT NOT LIMITED TO IMPLIED WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, AND NON-INFRINGEMENT.
Any exclusion or limitation of liability applies only to the extent permitted by applicable law and the governing contractual terms. Nothing in this Policy limits non-waivable privacy rights, remedies, compensation rights, supervisory-authority powers, or obligations imposed by applicable law. This Policy does not guarantee immunity from a claim, investigation, or liability.
7. Policy Versioning
This Policy is published as an identifiable legal-document version. Earlier published versions and any acceptance records remain available in the legal history. A changed policy does not by itself grant or renew analytics consent. Where a material change requires new information or consent, that requirement must be met before the affected optional processing begins.
8. Governing Law and Dispute Resolution
This Policy is governed by and construed in accordance with the laws of the jurisdiction in which the platform operator of sid6.com is established, without regard to its conflict of law principles.
You may contact SID6 support to raise a concern about storage or analytics. Nothing in this Policy requires you to use informal resolution before exercising a statutory right or contacting a competent supervisory authority, or removes any jurisdiction or remedy protected by mandatory law.
9. Technical Storage Register
The following first-party register covers the principal preference, session, and analytics mechanisms used by SID6. The particular service, sign-in state, and browser determine which entries are present. It does not assert that a named third-party security cookie is deployed.
sid6_consent (cookie): remembers granted or denied analytics consent for 180 days; host-only, Path=/, SameSite=Lax, Secure on HTTPS.
s6_consent_v1 (local storage): stores the same preference and its timestamp; enforced maximum age 180 days.
sid6_locale, NEXT_LOCALE, locale (cookies): locale compatibility preferences, normally up to 365 days; Secure on HTTPS.
sid6_token (HttpOnly cookie): access credential; normally 3 hours, or 15 days with remember-me. sid6_refresh_token (HttpOnly cookie): rotating refresh credential, up to 30 days. Both are Secure; access uses SameSite=Lax and refresh uses SameSite=Strict.
sid6_session (cookie): session-presence marker rather than an access credential, aligned to refresh-session validity, normally up to 30 days.
Account, business, and administrator context cookies, where used: sid6_user_id, sid6_business_id, sid6_business_type, sid6_business_name, sid6_business_access, sid6_active_business, and sid6_admin_access. They support requested session routing and workspace access; lifetimes follow the applicable session or access ticket.
sid6_business_session and sid6_business_bat_* (session storage), where used: business-session context and business access tokens for the requested workspace; limited to the browser tab session and cleared on logout.
Built-in analytics: no persistent visitor-ID cookie or local/session-storage identifier. The preference records above remain necessary to remember your choice. Built-in Google analytics cookies are no longer created by the retired integration.