Syncing
Syncing
Legal
Last updated: August 16, 2026
PrismPoster only loads optional analytics tools after you opt in. Essential cookies and storage stay active because they keep authentication, security, consent records, referral attribution, and core product workflows working.
Cookies are small files stored by your browser. Similar technologies include local storage, session storage, SDK identifiers, and browser signals used to remember choices or measure site behavior.
These items are necessary for the service and cannot be switched off inside PrismPoster. You can still block them in your browser, but parts of the service may stop working.
| Name | Purpose | Duration |
|---|---|---|
| next-auth session and CSRF cookies | Keeps you signed in and protects sign-in forms. | Up to 7 days, refreshed while you stay active. |
| cookie-consent-preferences | Stores your cookie choices in browser local storage. | Until cleared by you or your browser. |
| pp_cookie_consent | First-party fallback that remembers your consent choice on this site. | Up to 12 months. |
| prism_ref | Set only when you arrive through a referral link (a ?ref= URL). It remembers the referral code so the person who referred you is credited if you sign up. First-party. | Up to 90 days. |
| prism_via | Set only when you arrive through a partner link (a ?via= URL). It remembers which partner referred you so they can be credited if you subscribe. First-party and httpOnly, so it is not readable by scripts in your browser. | Up to 60 days. |
| prism_did | An opaque random identifier for this browser, used only to stop one person claiming the free starter credits repeatedly from a single device. It holds no information about you or your device — it is a random value that lets us recognise the same browser signing up twice. First-party and httpOnly, never shared with anyone, and never used for advertising or analytics. | Up to 400 days. |
| prism_dsig | Set only if device-recognition is switched on for fraud prevention. It holds a signed, one-way identifier derived from your browser’s configuration, used for the same single purpose as prism_did: one free starter grant per person. First-party and httpOnly. | Up to 400 days. |
| prism_creator_music_vote | Set only if you vote on a public creator music page without an account. A signed, random session identifier that stops repeat votes; it does not identify you. First-party and httpOnly. | Up to 180 days. |
| NEXT_LOCALE / pp_lang_hint_dismissed | Remember the display language you chose, and that you dismissed the language-suggestion banner, so the site renders in your language without asking again. First-party. | Up to 12 months. |
| pp-theme / pp-light-ok | Remember your light/dark theme choice (browser local storage plus a first-party cookie) so pages render in your theme without flashing. | Until you change theme or clear browser data. |
| pp_currency / pp_resolved_currency | Remember which currency to show prices in. We infer an approximate country from your IP address to choose a default currency; you can override it any time with the currency switcher. Used only to localize pricing — your IP address is not stored for this purpose. First-party. | Up to 12 months, or until you change it. |
| Core app storage | Remembers drafts, workspace state, security checks, and settings needed to provide requested features. | Varies by feature; removable through browser storage controls. |
Used to understand product usage, performance, and page quality. This category can include PostHog (including masked session replay), Google Analytics (GA4, which sets _ga cookies under Google Consent Mode), and Sentry session replay, plus the first-party prism_utm cookie, which records the marketing campaign (UTM tags) and referring page that brought you to the site so we can attribute the channel. Every tool and cookie named in this paragraph loads or is written only after you grant analytics consent, and they are removed or expire when you withdraw it. The prism_utm cookie lasts up to 90 days. Cookieless measurement is described separately below and does not depend on this choice.
Browser Do Not Track and Global Privacy Control also keep analytics and marketing off.
Separately from the tools above, we count page views and product actions on our own servers without using any cookie. Nothing is stored on your device for this. Instead of an identifier that follows you, our server derives a short-lived code from your IP address, browser user-agent and the current date; it is discarded and regenerated every day, so activity cannot be linked from one day to the next, and the code cannot be reversed back to your IP address.
We use this to see how many people visit, which pages and studios they use, and where they run into problems. It stays on our own infrastructure and is never sent to an advertising network or used to build a marketing profile.
We also use Vercel Web Analytics and Vercel Speed Insights, cookieless measurement services from our hosting provider Vercel. They store nothing on your device, do not identify you across visits, and run for every visit as service measurement.
If your browser sends Global Privacy Control or Do Not Track, we skip our first-party counting too. If you have an account, you can switch it off entirely in privacy settings.
Used for optional personalization beyond the core service. With Functional consent, ticking “Remember me” at sign-in stores the email you last signed in with (pp_remembered_email, browser local storage) so the login form can pre-fill it; it is removed when you untick “Remember me” or withdraw Functional consent. This category is off unless you choose it or accept all cookies.
PrismPoster does not use third-party advertising, retargeting, or ad-network cookies, and does not sell or share your data with advertisers.
No cookies or tools currently load in this category. Creator partner referrals are handled entirely by us through the strictly necessary first-party prism_via cookie listed above, which credits a partner if you subscribe and is never used for advertising or shared with an ad network.
Some providers process limited technical data when their services are used. Payment processors such as Stripe may set fraud-prevention cookies during checkout. Error and performance telemetry may run as service-reliability tooling on our legitimate interest in keeping the service secure and available, but session replay stays disabled unless analytics consent is present.
For the current processor list, see our Sub-Processors page.
You can change your choices at any time with Cookie Settings. Declining analytics removes known analytics cookies and PostHog browser storage. You can also clear cookies and site data in your browser.
If your browser sends Global Privacy Control, PrismPoster records an essential-only choice and treats the signal as an opt-out from optional analytics and marketing.
Current consent version: 2026-07-21.
If you have questions about cookies or privacy, contact us at dpo@prismposter.com.
PrismLabs OÜ
Sepapaja tn 6, 15551 Tallinn, Harju County
Estonia
See also our Privacy Policy, privacy choices, and Terms of Service.