Skip to main content

Cookie Policy

Last updated: August 8, 2026

Overview

We keep our use of cookies to a minimum. CoolHIPAA sets only the cookies needed to sign you in and run the platform, plus a couple of optional cookies that credit the partner who referred you. We do not use cookies for advertising, and our website analytics are cookieless. This page lists every cookie we set on coolhipaa.com, and it is intended to be exhaustive as of the date above.

Cookies We Set

Strictly Necessary

These are required for authentication and cannot be turned off without breaking sign-in. They are set by our authentication provider, Supabase.

CookieSet byPurpose
sb-<project>-auth-tokenSupabaseStores your authenticated session (login token), so you stay signed in as you move between pages. Refreshed automatically. May be split across numbered chunks (e.g. .0, .1).
sb-<project>-auth-token-code-verifierSupabaseA short-lived cookie used only during the email confirmation / sign-in exchange to complete the secure login flow. Removed once sign-in finishes.

Functional

These are set only if you arrive through a partner or referral link (a ?ref= link). They let us credit the right partner when you sign up. They are not used for advertising or cross-site tracking, and they expire after 30 days.

CookieSet byPurpose
cohi_refCoolHIPAARemembers which organization referred you so your signup is attributed correctly. Signed and readable only by our server.
cohi_ref_handleCoolHIPAARemembers which affiliate or pilot partner referred you, for the same attribution purpose.

Analytics

We use Vercel Web Analytics to understand how the platform is used. It is cookieless — it sets no cookies and does not track you across other websites. It collects only anonymized, aggregated usage data, such as page views and general device or browser type, which helps us improve the product. It does not build a profile of you or identify you individually.

Payments (Stripe)

We do not load Stripe's scripts on our own pages, so no Stripe cookies are set on coolhipaa.com. When you proceed to payment, we redirect you to Stripe's secure, hosted checkout (on Stripe's own domain), where Stripe may set its own cookies for fraud prevention and to run the checkout. Those cookies are governed by Stripe's privacy policy, not this one.

No Advertising Trackers

CoolHIPAA does not use Google Analytics, the Meta (Facebook) pixel, or any other third-party advertising or social-media tracking cookies. We do not sell or share your data with advertisers.

Managing Cookies

The strictly necessary cookies above are required to sign in and use the platform — if you block them in your browser, login and training will not work. You can clear or block cookies at any time through your browser's settings, and you can avoid the functional referral cookies simply by visiting the site without a referral link. Because our analytics are cookieless, there is no analytics cookie to opt out of.

Contact Us

If you have questions about this Cookie Policy, contact us at support@coolhipaa.com. For more on how we handle your information generally, see our Privacy Policy.

CoolHIPAA LLC
4601 E. Douglas Ave. STE 150, Wichita, KS 67218