Cookie Policy
Last updated: 17 August 2026 · Draft — pending legal review
This site sets one cookie, and it exists so that signing in works. There are no advertising cookies, no analytics tags and no third-party scripts of any kind — so there is no consent banner, because there is nothing here to consent to.
What a cookie is
A small piece of text a site asks your browser to keep and send back on your next visit. It is how a site can tell that two requests came from the same person — which is what makes staying signed in possible. The same rules cover other storage in your browser, such as localStorage, so those are listed here too.
What we store, in full
| Name | Type | Purpose | Duration | Category |
|---|---|---|---|---|
| db_session | Cookie (first-party) | Keeps you signed in after you use a sign-in code or an emailed link. It holds a random token, not your identity; the server stores only a hash of it. Marked httpOnly, so no script can read it, and Secure, so it never travels unencrypted. | 90 days | Strictly necessary |
| dailybrief:sid | Browser storage | Remembers that somebody is signed in on this browser, so a returning reader sees their brief instead of the signup page while the real check completes. It holds a subscriber number and nothing else, and it is never trusted for access — the cookie above is the only authority. | Until you sign out or clear your browser | Strictly necessary |
| dailybrief:admin | Browser storage | Holds the operator’s administration token on the site owner’s own device. Never set for readers. | Until cleared | Strictly necessary |
What we do not use
No advertising or profiling cookies. No Google Analytics, tag manager or any comparable tool. No social-network buttons or embedded players. No third-party scripts at all — the fonts are served from this site, not from an external provider, so loading a page contacts nobody but us.
Email measurement
This one is not a cookie, but it belongs in the same conversation. If you agreed to it, the daily brief contains a small invisible image that tells us the message was opened, and its links tell us which stories you read. We use that to rank tomorrow’s edition for you. It is off unless you turned it on, you can turn it off at any time from your account page or from the link in the footer of any brief, and turning it off does not stop the brief.
Staying in control
Signing out removes the session cookie and ends the session on our side as well. You can also delete cookies and site data for this site in your browser settings at any time — nothing will break, you will simply be signed out.
Your rights
The strictly necessary items above do not require your consent, but you are entitled to know about them, which is what this page is for. For access, deletion or any other request, and for the legal basis behind each purpose, see the Privacy Policy. You also have the right to complain to the Italian Data Protection Authority (Garante per la protezione dei dati personali).