Legal
Cookie Notice
Last updated
Analytics does not load until you allow it. Until then — and permanently, if you decline or your browser sends a Global Privacy Control signal — the only things CUSignals puts in your browser are the two that keep you signed in, the two that remember your theme, and the one that records what you chose here. There are no advertising cookies, no ad tags and no cross-site tracking.
What cookies and browser storage are
A cookie is a small text file a site asks your browser to keep and send back on the next request; it is how a website recognizes that two requests came from the same signed-in person. Local storage is a related mechanism that keeps a value on your device and never transmits it. This notice covers both, and supplements the Privacy Policy.
Exactly what we set
| Name | Kind | Purpose | Lifetime |
|---|---|---|---|
| cu360_session | Cookie — strictly necessary | Keeps you signed in. An HMAC-signed, HttpOnly token carrying only your account identifier and an expiry, so it cannot be read by page scripts and cannot be forged. | Until it expires or you sign out |
| state | Cookie — strictly necessary | A single-use random value set only during Google Sign-In, to bind the response back to the request that started it. This is what prevents a cross-site-request-forgery attack on the sign-in flow. | Minutes; deleted as soon as sign-in completes |
| cu360-theme | Local storage — preference | Remembers whether you chose the light or dark theme, so the page does not flash the wrong one before it loads. Never sent to us. | Until you clear site data |
| cu360-density | Local storage — preference | Remembers whether you chose comfortable or compact table rows. Never sent to us. | Until you clear site data |
| cu360-device | Local storage — strictly necessary | A random identifier, generated by your browser the first time you start a free trial, so the trial can be limited to one per organization. Nothing is read from your device to produce it and it identifies no one by itself. Sent to us only when you start a trial, and stored only as a one-way hash alongside that subscription. | Until you clear site data |
| cu360-consent | Local storage — strictly necessary | Records whether you allowed analytics, so we neither load it against your wishes nor ask you again every visit. Written only once you answer. Never sent to us. | Until you change it or clear site data |
| _ga, _ga_* | Cookie — analytics (Google) | Google Analytics 4. Distinguishes one visitor from another so we can count how many people read a page, which route they took to it, and which of a short list of actions they took while there — that list is below. Set only if you allow analytics — decline, or say nothing at all, and these never exist. | Up to 2 years (Google’s default) |
That is the complete list. If you find something in your browser that this table does not describe, we would genuinely like to know: admin@infinidatum.net.
Strictly necessary cookies
The session and sign-in cookies are what make an authenticated product work at all. Without them there is no way to stay signed in between two page loads, and no way to tell a genuine sign-in from a forged one. They carry no advertising identifier and no profile. Because they are strictly necessary to deliver a service you asked for, they are set without a consent prompt — but they are only ever set once you sign in. A visitor who only reads the public pages is never given one.
Analytics, and the gate in front of it
We use Google Analytics 4 to see which pages are read and which are not, in aggregate, to decide what to write next. We do not use it to build a profile of you, we do not join it to your account, and we do not enable Google Signals, remarketing or any advertising feature on the property.
Beyond page views, we record a short list of actions. That a search was run and how many results it returned; that a result, a signal screen or a credit union’s profile was opened; that a filter was applied; that an account brief was copied; that an upgrade notice was shown or its link followed; that a plan’s button was pressed; and that a sign-in was attempted and whether it succeeded. Each carries a little context — which signal, which plan, how many results — because a count with no context cannot answer anything.
What we deliberately leave out is more informative than the list above. Nothing you type is sent. The search box records that you searched and how many results came back, never the words; the state filter records how many states you chose, never which. No credit union is ever named in an event, so which institutions you looked at is not something this property can be asked. Nothing carries your email address, your account identifier or your password, and the contents of an account brief — which include officer names and phone numbers — never leave your browser for Google. Where we genuinely need to know what people search for, that belongs in our own server logs, under the Privacy Policy, rather than in a third party’s.
It does not load until you allow it. On your first visit you get one choice, and until you make it nothing is requested from Google — no script, no cookie, no pixel, not even a page-view ping. Decline and the same is true permanently. The gate covers the whole origin, so the signed-in dashboard is treated exactly like the marketing pages rather than being quietly exempted.
Global Privacy Control overrides everything. If your browser sends a GPC signal we read it as a standing opt-out, honor it automatically, and never show you the banner. GPC also outranks an earlier acceptance: turning it on withdraws a yes you gave us last year, because that is what turning it on means.
What declining does not cover. The choice on this page governs Google Analytics — every third party, in other words, since it is the only one. It does not switch off our own server-side records: the sign-in audit, the rate limiter, and a count of which step of the sign-up path each visit reached, which is how we tell whether registration is working. Those set no cookie, store nothing on your device and go to no one else; the network address is kept only as an unreversible keyed hash, and the funnel counts are deleted after 90 days. They are described in full under “Sign-up funnel counts” in the Privacy Policy.
One limit worth stating. Withdrawing consent stops all further collection immediately, but it does not reach back and delete _ga cookies your browser already holds from when it was allowed. Clearing site data for this domain does remove them, and so does Google’s official opt-out add-on.
Your choice, and how to change it
This is live — it reads and writes the same setting the banner does, and takes effect on the next page load.
A consent you cannot withdraw is not a consent, so this control is permanently linked from the footer of every page. Changing it here changes it everywhere on this browser.
What we do not set
No advertising cookies. No conversion pixels, no remarketing tags, no social-network trackers, no data brokers, no session-replay recorder, and no fingerprinting — the trial identifier above is a random value your browser stores and you can delete, not anything read off your device. We do not participate in any advertising network and we do not sell or share personal information for cross-context behavioral advertising, which is why this page has no “your privacy choices” opt-out link: there is nothing to opt out of.
Controlling cookies yourself
Every major browser lets you see, block and delete cookies for a specific site, usually under Privacy or Site settings, and clearing site data for this domain removes everything in the table above. Blocking the strictly necessary cookies will sign you out and prevent you signing back in; blocking everything else has no effect on the product.
Changes
If we add anything that stores data in your browser, it goes in the table above and the revision date at the top of this page moves. Questions: admin@infinidatum.net.