Legal
Cookie policy
Every cookie LogosVox sets, what it is for, and how long it lasts.
Last updated September 18, 2026
The short version
LogosVox sets no advertising cookies and runs no third-party tracking or analytics scripts. Every cookie below exists because a specific feature needs it; remove them and the feature stops working, but nothing is watching you across the web.
What is set
| Cookie | What it is for |
|---|---|
| __Secure-logosvox.session | Keeps you signed in across the platform's surfaces. Cannot be read by page scripts. Expires after 30 days. |
| __Host-logosvox.csrf-token | Protects sign-in from cross-site request forgery. Tied to the single origin that set it. |
| __Secure-logosvox.callback-url | Remembers which surface you started from, so signing in returns you there. |
| logosvox.admin-stepup | Set only on the admin surface, after a second verification step. Admin access needs it in addition to the session. |
| lv_keys | Holds your model provider keys, encrypted. Cannot be read by page scripts. Set only if you add a key. Lasts up to a year. |
| logosvox.locale | Remembers whether you read the site in English or Turkish. The only one that is not httpOnly, because the language is not a secret. Lasts a year. |
Turning them off
Your browser can block or delete any of these. Blocking the session cookie means you cannot stay signed in; blocking the CSRF cookie means you cannot sign in at all. The language cookie is safe to remove — the site falls back to the language your browser asks for.