Sayo Cookies and Analytics Policy
This Policy separates essential storage from optional, consent-based product analytics.
1. Essential storage
The essential category is limited to authentication, security, session continuity, consent records, load management, and user-requested settings. Before release, a technical inventory must verify each item's name, operator, purpose, lifetime, and first- or third-party status. Essential storage is not used for advertising and cannot always be disabled without ending the affected function.
2. Analytics is off by default
Optional product analytics is off by default. The release switch is [UNRESOLVED:features.analytics]; even after release, analytics may load only after a user has made a valid opt-in choice.
3. Analytics vendor and storage
If optional analytics is enabled, we disclose the vendor legal name [UNRESOLVED:analytics.vendor_legal_name], policy [UNRESOLVED:analytics.policy_url], processing country [UNRESOLVED:analytics.processing_country], cookie configuration [UNRESOLVED:analytics.cookies], browser storage [UNRESOLVED:analytics.storage], and contracted processor [UNRESOLVED:processors.analytics.contract_legal_name].
4. Allowed events
Analytics may collect only the reviewed event allowlist [UNRESOLVED:analytics.allowed_events] for aggregate product measurement. Event names and properties must be documented and tested before activation.
5. Prohibited data
Analytics must not receive chat or prompt text, model responses, notes, attachment contents or names, tool input or output, cited extracts, payment details, authentication tokens, precise investment interests, or stable identifiers not expressly approved. We do not use analytics for advertising, profiling for ads, or cross-context behavioral advertising.
6. Retention
The verified analytics retention is [UNRESOLVED:analytics.retention]; the corresponding first-party data schedule is [UNRESOLVED:data.analytics.retention]. If those values are not verified, analytics remains unavailable.
7. Consent
The opt-in mechanism is [UNRESOLVED:analytics.opt_in_mechanism]. Declining analytics does not prevent essential service use, and silence, scrolling, or a bundled terms acceptance is not analytics consent.
8. Withdrawal
You may withdraw analytics consent at any time through Privacy Choices or account settings. Withdrawal stops new analytics calls across open tabs as soon as the choice is received and removes optional analytics storage where technically available; it does not retroactively invalidate processing performed under a valid choice.
9. Changes
Adding a vendor, event, purpose, identifier, country, or longer retention requires a new review. We will update this policy and obtain new consent before a material expansion where required.