Skip to main content

Cookies and Analytics

Dralvia runs three public surfaces and they behave the same way: nothing non-essential is written to your browser before you answer the banner, refusing takes the same single click as accepting, and your answer is remembered so you are not asked again on every page.

What each surface does​

SurfaceNeeded to workOptional, consent first
Marketing site (marketing.dralvia.tech, blog.dralvia.tech)Nothing. You can read every page with browser storage switched off.Google Analytics 4 (_ga, _ga_<measurement id>)
Docs site (dralvia.tech/docs)Nothing.Google Analytics 4 (_ga, _ga_<measurement id>)
Platform (dralvia.tech)Sign-in session cookies from the identity provider, plus local storage for guest scans, the page to return to after sign-in, and settings you choose (theme, layout, filters).Google Analytics 4 and the platform's own usage events

Anti-abuse cookies such as cf_clearance can be set by the network layer when a browser is challenged. Those are a security control, not tracking, and they are not covered by the analytics choice.

What is stored when you answer​

Your answer is the only thing the banner writes, and it is written after you click, never before.

KeyWhereContents
dralvia_consentCookie on dralvia.tech, read by every Dralvia site, kept 180 daysv1.a1 (analytics accepted) or v1.a0 (refused)
dralvia_marketing_cookie_prefs_v1Marketing site, local storage{"analytics": true} or {"analytics": false}
dralvia_docs_cookie_prefs_v1Docs site, local storage{"analytics": true} or {"analytics": false}
dralvia_cookie_prefs_v1Platform, local storageYour analytics answer on the platform

All Dralvia sites (the platform, these docs, the website and the blog) use the same Google Analytics 4 property for the same purpose, so one answer applies to every Dralvia site: answer once on any of them and the others will not ask again. On the platform the same answer also covers its own usage events (see below). After 180 days we ask again.

If you never answer, nothing is stored and no tracker is loaded. Closing the banner is not treated as consent.

How to refuse​

Reject sits next to Accept in the banner, as the same kind of button, in the same row. Refusing is one click and is remembered, so the banner does not come back on the next page.

How to change your mind​

A Cookie preferences button stays in the bottom-left corner of every page once you have answered. Selecting it brings the banner back so you can switch your answer either way. Withdrawing consent is exactly as easy as giving it, and a new answer on any Dralvia site replaces the old one on all of them.

Clearing your browser's site data for the domain also clears the stored answer, which puts you back to the unanswered state: no tracker, and the banner on your next visit.

Analytics detail​

When and only when you accept, Google Analytics 4 loads with IP anonymisation switched on. Dralvia uses it to see which pages are read, not to identify you, and it is never loaded on a page where you have refused or not yet answered.

Settings you choose on the platform​

The platform keeps a few settings in local storage because you chose them: the light or dark theme, whether the sidebar is hidden, your dashboard layout, a queue filter, the chain you last picked, which getting-started steps you finished. Each is written only when you change it, stays in your browser, and is never sent to us. Settings you ask for need no consent, so there is no switch for them; the full list is in the platform's Legal Center.

The first sign-in tour remembers that you finished it under your workspace and an opaque account id, never your email address. An entry named with an email by an older version is renamed the next time you sign in.

To see whether the product works for people, the platform can send its own usage events to Dralvia's servers. They are part of the analytics answer: nothing is sent until you accept, and if you refuse, nothing is sent at all.

  • a page of the platform was opened;
  • a scan was started, and which page of our website it started from (for example the home page or a tool page);
  • a signup attempt and its outcome only, for example "created", "the bot challenge failed", or "the password was too short". The email address and the password are never part of it.

While the banner is still open, events wait in the open page only; nothing is written to your browser or sent for them. Accepting sends them; refusing throws them away. Without an account, sent events carry the random browser id dralvia_guest_id, which the platform also uses so the scans and reports you run as a guest stay yours. When you are signed in, the events are linked to your account instead. They are kept for 180 days.

Server logs​

Our web server logs page requests (address, browser, page) and keeps those logs for 14 days, to run and protect the service. Weekly visitor numbers are computed from them as counts; no address is kept longer.