Legal

Cookie policy

One cookie, our own and necessary. None from third parties, no tracking. This page sets out exactly what is there and why we do not ask your permission.

Last updated: 26 August 2026

1. Why you do not see a cookie banner

Because none is needed. Article 22(2) of the Spanish LSSI requires consent for cookies that are not essential to providing the service. Noosphere installs none of those: no analytics, no advertising, no embedded social media, no resource served from anyone else's domain. Asking your permission for the only thing here — keeping you signed in — would be an empty formality.

This is a deliberate decision and it has a cost: we give up knowing how many people visit. In exchange, nobody builds a profile of you for reading about psychoactive substances — exactly the kind of data that should not be in anyone's hands.

2. The one cookie that does exist

NameTypeWhat it doesLifetime
session First-party · technical · strictly necessary Keeps you signed in, remembers the conversation turn in progress and stops the free trial query from repeating. Without it you cannot sign in at all Up to 14 days, or until you sign out

It is marked HttpOnly — the page's JavaScript cannot read it — SameSite=Lax, and it is only sent over HTTPS.

One honest detail, because it is your browser. That cookie is signed — the server detects any tampering — but not encrypted. That means anyone with physical access to your browser could read your email address, your name and the last turns of the conversation in progress inside it. It never travels to third parties and is not readable from other websites, but we would rather say it than have you find out.

3. What is stored in the browser and is not a cookie

Two things, in local storage. Neither is ever sent to the server:

KeyWhat it storesWho uses it
noosphere_langWhether you prefer the site in Spanish or EnglishEveryone
noos_admin_tokenThe administration key, to avoid typing it on every visitOnly the project's admin page

4. Third-party cookies: none

The site declares a content security policy that only allows loading resources from its own domain. In practice:

5. How to remove them

By signing out, or by clearing the site's data in your browser (Chrome and Edge: Settings → Privacy → Site data; Firefox: Settings → Privacy → Cookies and Site Data; Safari: Preferences → Privacy). You can also block all cookies: the site will still answer questions, but you will not be able to sign in.

6. Changes

If a cookie that is not strictly necessary is ever added, it will appear here and behind a prior consent banner, as the law requires. As long as this page says what it says, there is none.

Privacy policy Legal notice