Cookie Policy
LighChat Cookie Policy
Last updated: 2026-08-03 Version: 2 Applies to: the LighChat web/PWA version (https://lighchat.online and its subdomains).
1. What this covers
Cookies are small files a website stores in your browser. This Policy also covers equivalent technologies we rely on more heavily than cookies: localStorage, sessionStorage and IndexedDB.
LighChat carries no advertising and no advertising or cross-site tracking technologies.
2. Strictly necessary (always on)
Required for the Service to work; no consent is needed under GDPR Art. 5(3) ePrivacy or comparable rules.
| Name | Type | Purpose | Lifetime |
|---|---|---|---|
sidebar_state | cookie | Remembers whether the sidebar is expanded | 7 days |
firebase:authUser:* | IndexedDB / localStorage | Your signed-in session (Firebase Authentication) | Until sign-out |
firebase-installations-*, firebase-heartbeat-* | IndexedDB | Firebase SDK instance identifier and health signals | Until data is cleared |
firebase-app-check-* | IndexedDB | App Check attestation token protecting our backend from automated abuse | Up to 1 hour |
lc_cookie_consent_v1 | localStorage | Stores your cookie choice so we stop asking | Until cleared |
| Firestore offline cache | IndexedDB | Local cache of your chats so the app works offline and loads quickly | Until sign-out or clearing |
3. Functional (on by default, removable)
| Name | Type | Purpose | Lifetime |
|---|---|---|---|
lc_features_welcome_v1, lc_landing_viewed_v1, lc_app_first_open_v1 | localStorage | Remembers that you have seen onboarding screens | Until cleared |
pwa_onboarding_shown | localStorage | Suppresses the repeated "install the app" prompt | Until cleared |
| UI preferences (theme, language, layout) | localStorage | Keeps your interface settings | Until cleared |
4. Analytics (off by default — only with your consent)
Loaded only after you choose "Accept" in the cookie banner. Choosing "Only required" means these are never set, and you can change your mind at any time by clearing site data or through the banner when it reappears.
| Name | Type | Purpose | Lifetime |
|---|---|---|---|
_ga, _ga_* | cookie | Google Analytics 4 — aggregated product usage statistics | Up to 2 years |
firebase-perf-* | IndexedDB | Firebase Performance Monitoring — page and request timings | Up to 1 year |
The identifier we send to analytics is pseudonymised (hashed); analytics never receives your message content.
5. Advertising
None. LighChat sets no advertising cookies, runs no ad networks, and does not sell or share personal data for cross-context behavioural advertising.
6. Managing your choices
- change your decision in the cookie banner, or clear site data in your browser to make it reappear;
- block or delete cookies in your browser settings;
- use a private/incognito window.
Blocking strictly necessary storage will break sign-in and offline access.
7. Third-party technologies
Some providers may set their own storage when their features are used — Google (Firebase, Analytics, reCAPTCHA Enterprise for App Check), and embedded content such as map or video previews. Their processing is governed by their own policies; see the Subprocessor Registry and:
- Google: https://policies.google.com/technologies/cookies
8. Mobile and desktop applications
The native applications do not use browser cookies. They use local device storage for the same purposes (session, preferences, offline cache) and, where you consent, analytics and crash reporting SDKs.
9. Changes and contact
We update this Policy when the technologies we use change; the effective date is at the top. Questions: privacy@lighchat.online.
