Last Updated: October 25, 2025
1. Cookies We Use
Zetisis uses minimal cookies to ensure the platform functions properly. We do not use third-party advertising or tracking cookies.
Essential Cookies (Required)
| Cookie Name | Purpose | Duration | 
|---|---|---|
zetisis_session | 
    Maintains your login session and authentication state. Required for you to access your account and use platform features. | Until logout or browser close (session cookie) | 
zetisis_remember | 
    "Remember Me" functionality. Allows you to stay logged in across browser sessions if you check the "Remember Me" box at login. | 30 days (or until you log out) | 
zetisis_csrf | 
    CSRF (Cross-Site Request Forgery) protection token. Prevents malicious websites from performing unauthorized actions on your behalf. | Until logout or browser close (session cookie) | 
Why we need these: Essential cookies are strictly necessary for the platform to function. Without them, you cannot log in, stay authenticated, or use core features securely. These cookies are exempt from consent requirements under GDPR Article 6(1)(b) (contract necessity) and the ePrivacy Directive as they are technically necessary to provide the service you requested.
Cookie Attributes
All our cookies use the following security attributes for your protection:
- Secure: Transmitted only over HTTPS encrypted connections
 - HttpOnly: Not accessible to JavaScript, preventing XSS (Cross-Site Scripting) attacks
 - SameSite=Lax: Restricted to same-site requests, preventing CSRF attacks
 - Path=/: Available across the entire Zetisis domain
 
2. Analytics & Tracking
First-Party Analytics
We use our own analytics system (not Google Analytics or other third-party services) to understand how users interact with the platform.
What we collect:
- Page views and navigation paths
 - Button clicks and feature usage
 - Session duration and timestamps
 - IP addresses (for geographic analysis and security)
 - Browser type and device information (user agent)
 - Referrer URLs (where you came from)
 
How we store it: All analytics data is stored in our own database (analytics_events table) on EU servers. No data is sent to third parties.
Legal basis: Legitimate interest (GDPR Article 6(1)(f)) - improving the platform benefits all users.
Analytics Data Retention
| Data Type | Retention Period | 
|---|---|
| Identifiable analytics data (with user_id, IP address) | 12 months | 
| Anonymized/aggregated analytics | Indefinitely (no personal data) | 
Opt-Out of Analytics
If you do not want your activity tracked in our analytics:
- Email us at hello@zetisis.com with subject "Opt-Out of Analytics"
 - We will exclude your user ID from all analytics reports
 - This will not affect your ability to use the platform
 
3. What We Don't Use
Zetisis does not use any of the following:
- ❌ Google Analytics or similar third-party analytics tools
 - ❌ Advertising cookies or retargeting pixels
 - ❌ Social media tracking cookies (Facebook Pixel, Twitter, LinkedIn Insight, etc.)
 - ❌ Cross-site tracking or behavioral profiling
 - ❌ Third-party cookies for marketing purposes
 - ❌ Affiliate tracking cookies
 
4. IP Address Processing
We collect and store IP addresses as part of our analytics and security measures. IP addresses are considered Personal Data under GDPR.
Why we collect IP addresses:
- Security monitoring: Detect fraud, abuse, and unauthorized access attempts
 - Geographic analytics: Understand where our users are located (country/region level)
 - Technical diagnostics: Troubleshoot connection issues and bugs
 - Rate limiting: Prevent spam and brute-force attacks
 
Legal basis: Legitimate interest (GDPR Article 6(1)(f)) - platform security and improvement.
How we store IP addresses:
- Stored as binary data in our database on EU servers
 - Retained for 12 months, then deleted or anonymized
 - Never shared with third parties (except our hosting provider DigitalOcean for technical necessity)
 
5. Managing Cookies
Browser Settings
You can control and delete cookies through your browser settings:
- Google Chrome: Settings → Privacy and Security → Cookies and other site data
 - Mozilla Firefox: Preferences → Privacy & Security → Cookies and Site Data
 - Safari: Preferences → Privacy → Cookies and website data
 - Microsoft Edge: Settings → Privacy, search, and services → Cookies
 
zetisis_session, zetisis_csrf) will prevent you from logging into Zetisis and using the platform.
Clearing Cookies
To delete cookies already stored on your device:
- Open your browser settings
 - Navigate to Privacy or Security settings
 - Find "Clear browsing data" or "Manage cookies"
 - Select cookies and click Delete/Clear
 - You can choose to delete all cookies or only cookies from specific websites (zetisis.com)
 
6. Session Storage & Local Storage
Current status: Zetisis does not use browser localStorage or sessionStorage APIs during the beta phase.
If we introduce these technologies in the future:
- We will update this Cookie Policy
 - We will notify users of the change
 - We will explain what data is stored and why
 - We will provide opt-out mechanisms where appropriate
 
7. Cookie Categories
Our cookies fall into the following categories defined by the ePrivacy Directive and GDPR:
| Type of Cookie | Why We Use These Cookies | Examples | 
|---|---|---|
| Necessary | These cookies are necessary in order to allow the Website to work correctly. They enable you to access the Website, move around, and access different services, features, and tools. These cookies cannot be disabled. | zetisis_session, zetisis_csrf | 
  
| Functionality | These cookies remember your settings and preferences and the choices you make in order to help us personalize your experience. | zetisis_remember | 
  
| Security | These cookies help us identify and prevent security risks. They are used to store your session information and prevent malicious attacks. | zetisis_csrf | 
  
| Performance | These cookies help us collect information to help us understand how you use our Website. This helps us improve the performance of our Website. | First-party analytics (no cookies, server-side tracking) | 
| Analytics | These cookies collect information regarding your activity on our Website to help us learn more about which features are popular with our users and how our Website can be improved. | First-party analytics (no cookies, server-side tracking) | 
8. Cookie Consent Banner
Beta Phase
During the closed beta, we do not display a cookie consent banner because:
- We only use essential cookies that are strictly necessary for the service (exempt from consent under GDPR Article 6(1)(b))
 - Our first-party analytics are based on legitimate interest and do not use cookies
 - We do not use third-party tracking cookies
 - The "Remember Me" cookie is optional - you choose whether to enable it at login
 
Public Launch
Before public launch, we will implement a cookie consent banner if:
- We add non-essential cookies requiring explicit consent
 - We integrate third-party services with cookies
 - Regulatory guidance requires it
 - We expand beyond the current minimal cookie usage
 
9. Third-Party Services
We use limited third-party services that do not set cookies on your device:
- DigitalOcean: Server hosting (EU-based, GDPR compliant) - does not set cookies
 - Tally: Marketing opt-in forms on external pages (see Tally Privacy Policy)
 
External links on our platform may lead to third-party websites that use their own cookies. We are not responsible for their cookie practices. We recommend reviewing their cookie policies before using their services.
10. Updates to This Policy
We may update this Cookie Policy as we add new features or comply with regulatory changes.
For significant changes:
- Updated policy will be posted on this page with a new "Last Updated" date
 - Users will be notified via email if changes affect your rights
 - A notice will appear on the platform
 - Changes will take effect 30 days after notification for material changes
 
11. Questions About Cookies
If you have questions about how we use cookies or want to opt out of analytics:
Email: hello@zetisis.com
Subject: "Cookie Policy Inquiry"
We typically respond within 5 business days.
12. Your Rights
Under GDPR, you have rights regarding data collected through cookies:
- Right to Access: Request information about what data we collect via cookies
 - Right to Erasure: Request deletion of your analytics data
 - Right to Object: Object to analytics tracking (opt-out available)
 - Right to Withdraw Consent: Where consent is required, you can withdraw it anytime
 
To exercise these rights, contact us at hello@zetisis.com.
Last Updated: October 25, 2025
Version: 1.0 (Beta)