Legal

Cookie Policy

Version 1.0 · Last updated Oct 1, 2026

Configured technologies

Source of truth: Approvale CMP vendor inventory (active entries only).

Necessary

Required for authentication, security, sessions and storing your consent preferences.

Approvale session

Provider: Approvale

Keep you signed in and secure your session

First-party session cookie used by Laravel for authentication and CSRF protection.

Cookies: approvale-session, XSRF-TOKEN

Retention: Session lifetime (configurable; default up to several hours) / CSRF token session

Consent preferences

Provider: Approvale

Store your cookie and privacy choices

First-party cookies that remember your CMP choices and anonymous visitor ID so we do not ask on every page load.

Cookies: approvale_consent, approvale_vid

Retention: Up to 12 months

Typeform (product integration)

Provider: Typeform

Connect forms and receive submissions when a customer enables Typeform

Not a website marketing cookie. When a signed-in customer connects Typeform, Approvale stores an encrypted access token and processes form responses via API and webhooks. Processing is governed by the customer relationship and DPA.

Retention: RETENTION POLICY REQUIRES PRODUCT DECISION

Provider privacy information

Preferences

Remember non-essential choices such as interface preferences.

Google Fonts

Provider: Google

Load the Inter typeface for the marketing site and application UI

Stylesheets and font files loaded from Google Fonts. Your browser may contact Google servers when fonts load. SELF-HOSTING IS A PRODUCT/LEGAL FOLLOW-UP.

Retention: Controlled by Google / browser cache

Provider privacy information