Cookie and Browser Storage Policy
Last updated: August 1, 2026
OptimalCardSetup uses minimal browser storage to operate. We do not set first-party advertising or tracking cookies. This page explains the browser storage and limited cookieless measurement used by the Service.
Local Storage Used by the App
Authentication tokens
Access and refresh tokens are stored in localStorage to keep you signed in between visits. They are sent to the API for authentication and are removed when you sign out. Do not use a shared browser for a sensitive account.
Theme and interface state
The light/dark theme preference and small interface or redirect state are stored in localStorage, not a cookie. This storage does not contain payment-card or bank credentials.
Strictly Necessary OAuth Cookie
If you start a Google or Microsoft sign-in, the API sets a short-lived, secure, HttpOnly, SameSite cookie containing a random browser-bound state value. It is used to prevent forged sign-in callbacks, expires after about 10 minutes, and is cleared when the callback completes. It is not used for advertising or analytics.
Limited Cookieless Measurement
The app records limited cookieless page-view, feature-event, and selected performance metrics as daily aggregates. It is intended for product reliability and improvement, not cross-site advertising or user-level ad profiles. Error monitoring through Sentry receives technical events after configured scrubbing removes user identifiers, credentials, request bodies, cookies, query strings, and other sensitive fields. See the Privacy Policy.
Affiliate and Provider Cookies
When you follow an application link, the destination card issuer or affiliate network may set cookies to attribute the referral. Stripe, Google, Microsoft, Cloudflare, or other providers may also use their own cookies during direct checkout, OAuth, or service interactions. Those cookies are governed by the provider's policies, not this site, and we do not control their contents.
Managing Browser Storage
Use your browser settings to clear cookies and localStorage for optimalcardsetup.com. Clearing localStorage signs you out and resets the theme preference; signing out removes authentication tokens. Blocking third-party cookies generally does not affect the core Service, but a provider may require its own storage during a direct checkout or OAuth interaction.
Contact
Questions or accessibility feedback are welcome at [email protected]. We do not represent that the site conforms to any particular accessibility standard.