D&D ShopGen V2

Cookie and Storage Notice

D&D ShopGen V2 uses necessary storage for app operation and account sessions. Its privacy-conscious analytics uses no analytics cookies or persistent browser identifier. You can optionally store a first-party preference that excludes this browser from server page counts, Vercel Web Analytics, and aggregate engagement signals.

Last updated July 15, 2026

Necessary storage

The app uses browser storage for local saves, imported player-safe codes, current workspace state, guide preferences, drafts, and account session handling.

Supabase Auth may use browser storage and necessary cookies or redirects to keep signed-in sessions working.

Patreon connection uses a short-lived OAuth state cookie during the connect redirect so the app can verify the returning request.

Vercel and Supabase may use technical cookies or logs required to deliver, secure, and operate the service.

StorageProviderPurposeDurationType
Local saves and imported player codesBrowser storageStore local shops and player-safe snapshots on this device.Until deleted in the app or cleared in the browser.Necessary
Draft and app stateBrowser storageKeep current workspace state, guide preferences, and drafts usable.Until replaced, deleted, or cleared in the browser.Necessary
Auth session storage, cookies, or redirect stateSupabase AuthKeep Google sign-in and authenticated cloud features working.Until logout, session expiry, or browser clearing.Necessary
dsg_patreon_oauth_stateD&D ShopGen / Patreon OAuthVerify the Patreon connection redirect belongs to the signed-in session.Short-lived and cleared after the OAuth callback or browser clearing.Necessary
dsg_traffic_opt_outD&D ShopGenExclude this browser from aggregate page counts, Vercel Web Analytics, engagement signals, and active heartbeats.Up to one year, until you include the browser again, or until browser clearing.User-requested privacy preference
Technical logsVercel and SupabaseDeliver, secure, debug, and operate the service.Limited provider and operational retention periods.Necessary

Cookie-free analytics

D&D ShopGen V2 does not use analytics cookies, advertising tags, behavioral advertising profiles, non-essential marketing cookies, or persistent analytics storage in the browser.

The original server-side counter still increments only a safe page category for full browser page loads. It does not read or store a full URL, query parameters, share token, referrer, IP address, User-Agent, country, device, email address, account identifier, visitor identifier, or session identifier.

Cookie-free Vercel Web Analytics adds aggregate page views, a daily-reset anonymous visitor estimate, referring hostname, and standard aggregate country/browser/OS/device panels. Before sending a page view, D&D ShopGen removes query parameters and fragments, excludes private or unknown routes, and replaces public share tokens with /share/public.

The first-party engagement script sends one engaged-visit signal only after a real browser action and eight visible seconds. It may then send limited active heartbeats while the page is visible and interaction is recent. It reduces the raw browser referrer to a fixed source category before sending; the raw referrer is not sent to D&D ShopGen or stored in Supabase.

The server-side counter, Vercel wrapper, and engagement endpoint skip collection when DNT: 1, Global Privacy Control, or the optional dsg_traffic_opt_out preference applies. Daily route and engagement aggregates are retained for 7 days, and completed daily reports are retained for 3 months. Vercel Web Analytics retention follows the project's Vercel plan and Vercel's terms.

The optional dsg_traffic_opt_out cookie stores only the value 1. It is not used to count, recognize, link, or profile a browser; its only effect is to stop these analytics channels until the preference is removed.

Analytics itself does not write non-essential browser storage. Only the user-initiated exclusion control writes this privacy preference, so the current implementation does not show an analytics-cookie banner. Any future expansion to advertising, cross-day visitor recognition, fingerprinting, or non-essential storage requires a separate review and consent controls where required.

Analytics preference

Use this control separately in every browser or browser profile you want excluded from server page counts, Vercel Web Analytics, engagement signals, and active heartbeats. Clearing site cookies removes the preference.

Analytics preference
Checking this browser's preference…

Managing browser storage

You can delete saved shops and imported player-safe snapshots inside the app where those controls are available.

You can include this browser in privacy-conscious analytics again with the preference control above, or remove the preference by clearing site cookies.

You can also clear browser storage in your browser settings. Clearing browser storage may remove local saves, imported player codes, guide preferences, drafts, current workspace state, the traffic opt-out preference, and local account session data from this device.

Future changes

If analytics cookies, ads, or other non-essential storage are added later, D&D ShopGen V2 will update this notice and add consent controls before enabling them where required.

Questions about cookies or storage can be sent to support@dndshopgen.com.