Every cookie ShieldDocs sets, what it does, and how long it stays.
ShieldDocs uses a small number of cookies — and one piece of browser local storage — to make the site work and to measure aggregate traffic. None of them are sold, shared with advertisers, or used to build a third-party profile of you. If you’d rather not have any of these besides the strictly-essential ones, your browser’s cookie controls or a private/incognito window will keep you out of every row below.
| Name | Purpose | Type | Retention |
|---|---|---|---|
sd_access |
Authenticates you as a Starter Kit customer after purchase so you can return to /templates and download your files on a later visit without re-entering your Stripe purchase email. |
Essential (HTTP-only, signed) |
1 year from purchase |
sd_ab_soc2_guide_cta |
Sticky 50/50 split that keeps you in the same A/B experiment variant on return visits to the SOC 2 guide inline CTA — required for a valid experiment. | Analytics (experiment assignment) |
90 days |
polsia_vid |
Anonymous visitor identifier stored in browser local storage (not a cookie). Used to count unique visitors across ShieldDocs pages for aggregate traffic analytics. | Analytics (local storage) |
Until you clear site data |
sd_access is set automatically once you complete a Starter Kit purchase. It can’t run without it — it’s the same mechanism your bank uses to remember you logged in. It contains no personally identifying information beyond an HMAC-signed reference to your Stripe checkout session.
sd_ab_soc2_guide_cta stores a single letter (a or b) and contains nothing identifiable. polsia_vid is an opaque UUID stored in your browser’s local storage, also with no PII. Both are used to count unique visitors in aggregate — we share neither with third-party advertisers, nor combine them with anything outside of the ShieldDocs product team’s own analytics dashboard.
None set today. We don’t run retargeting pixels, ad-network trackers, or any third-party cookies tied to advertising platforms. If that ever changes, we’ll update this page first and re-prompt any EU visitor for consent.
You can clear every cookie ShieldDocs (or the Polsia analytics beacon) sets from your browser’s settings. To clear them while keeping the rest of your browser data, use your browser’s “Cookies and site data” / “Site permissions” controls and remove items from shielddocs.polsia.app. Clearing polsia_vid lives under “Site data” / “Local storage.” Clearing sd_access means you’ll need to re-verify your Stripe purchase to access the Starter Kit templates.
Email privacy@shielddocs.polsia.app. You can also request a signed GDPR Data Processing Agreement for your procurement team from the Trust page.
ShieldDocs’ GDPR Data Processing Agreement covers lawful basis, sub-processors, breach notification timelines, and EU SCCs. One-click download on the Trust page.