Cookie Policy
Last updated: September 19, 2026
Strictly necessary only
Boltch sets only strictly necessary, first-party cookies that are required for the service to function. We set no advertising cookies, no analytics cookies, and no cross-site tracking cookies.
Cookies we set
boltch_session: keeps you signed in to the dashboard. boltch_csrf: protects forms against cross-site request forgery. boltch_device_id: a stable device identifier used for account security and abuse prevention (up to 1 year). boltch_staging_access: gates access to the non-production staging environment. Temporary error and rejection cookies may be set briefly to display a message and then expire. Session cookies expire when you sign out or after the session lifetime elapses.
Third-party content
The public landing, models, and documentation pages load no third-party scripts. The sign-up form loads Cloudflare Turnstile bot protection only, which is required to prevent automated abuse of account creation. Payment checkouts are hosted by our payment processor and are subject to the processor's own cookie practices for the duration of the checkout.
Managing cookies
Because every Boltch cookie is strictly necessary, blocking them will prevent sign-in and dashboard use. You can clear cookies at any time in your browser settings; you will simply need to sign in again. Deleting your Boltch account removes the personal data associated with these identifiers from our systems.