Publication checklist: verify the production cookie names and providers, replace the marked fields, obtain legal review, and then change
drafttofalse.
1. How Convert for You uses cookies and browser storage
Cookies and similar browser storage help Convert for You provide authentication, security, private administration, consent preferences, and document workflows. Optional advertising and analytics technologies remain disabled until you choose to allow them.
The Privacy settings link in the footer lets you review or change optional choices. If you clear browser storage, Convert for You will ask for your choices again.
2. Current inventory
| Name or storage key | Provider | Purpose | Type | Duration | Consent |
|---|---|---|---|---|---|
pdfflow_consent_v2 | Convert for You | Remembers advertising, analytics, and diagnostics choices | localStorage | 180 days from decision | Necessary |
pdfflow_statistics | Convert for You | Protects the private statistics dashboard session | HttpOnly cookie | 8 hours | Necessary |
| Clerk-managed authentication cookies | Clerk | Sign-in, account session, and security | Cookies | Provider-managed | Necessary |
| AdSense cookies and storage | External advertising measurement and delivery when configured | Third-party cookies/storage | Provider-managed | Advertising consent required | |
| Sentry browser SDK storage | Sentry | No Convert for You cookie is intentionally set; privacy-filtered error events are sent only after diagnostics consent | Network events | Provider-managed | Diagnostics consent required |
| Analytics cookies and storage | None currently active | No analytics provider is currently configured | — | — | Not active |
Clerk and Google may use provider-managed names that can change with their service. Before publication, verify the production browser inventory and add any provider-specific names required by the provider documentation.
3. Essential technologies
Essential technologies support authentication, security, consent choices, private administration, and the document conversion workflow. They cannot be disabled through the optional privacy settings without affecting the service.
The Google Drive and Dropbox picker libraries are loaded only when you actively choose a cloud import. Cloud-provider authorization is a user-initiated feature action, not a persistent advertising or analytics technology.
Cloudflare Turnstile is loaded only when repeated feedback submissions require abuse-prevention verification.
4. Optional advertising, analytics, and diagnostics
The first-party Convert for You promotion does not load an external advertising script. External advertising, such as Google AdSense, is loaded only when all of the following are true:
- the advertising provider is configured by Convert for You;
- you have selected advertising in Privacy settings; and
- the page is eligible to display an advertisement.
No analytics provider is currently active. Any future analytics provider must be added to this inventory and gated by analytics consent before it is enabled.
Browser Sentry diagnostics are loaded only after diagnostics consent is granted. The browser integration is configured without Session Replay, performance tracing, request bodies, cookies, identity, or document contents. Server-side Sentry and availability monitoring do not set browser cookies.
5. Managing browser storage
You can delete cookies and browser storage through your browser settings. Deleting necessary storage may sign you out, remove your privacy choices, or interrupt a workflow. You can also use Privacy settings in the footer to change optional choices without deleting necessary storage.
For provider-managed cookies, use the provider's controls and privacy notice. Privacy questions should be sent to [[PRIVACY_CONTACT_EMAIL]].