Cookie Policy
Effective date: August 11, 2026
This Cookie Policy explains how 28Loops, operator of initdesk, uses cookies and similar technologies on
initdesk.com, www.initdesk.com, and app.initdesk.com. It supplements our Privacy Policy.Your choices
Essential technologies remain enabled because they provide security, authentication, requested features, and consent storage. Analytics and advertising technologies are disabled by default and activate only after you choose the corresponding category. The banner lets you accept, reject, or select non-essential categories.
You may withdraw or change consent at any time through Cookie settings in the site footer or product user menu. The choice is shared across initdesk subdomains when supported by your browser.
Categories and providers
| Category | Provider | Cookie / event | Purpose | Duration | Legal basis | Default |
|---|---|---|---|---|---|---|
| Essential | initdesk | pricing-country | Remember the pricing region selected or inferred for the requested service | 1 day | Contract performance or legitimate interests | Enabled |
| Essential | initdesk | NEXT_LOCALE | Remember the requested language | 1 year | Contract performance or legitimate interests | Enabled |
| Essential | CookieYes | cookieyes-consent | Store and demonstrate granular consent choices across subdomains | Up to 1 year | Legal obligation and legitimate interests | Enabled |
| Essential | initdesk / Cloudflare | Authentication, security, and session tokens | Deliver requested features, maintain sessions, and protect the Service | Session or the token's stated expiry | Contract performance or legitimate interests | Enabled |
| Functional | YouTube | VISITOR_PRIVACY_METADATA, VISITOR_INFO1_LIVE, ytidb::LAST_RESULT_ENTRY_KEY | Preserve embedded-video preferences and player behavior | 6 months; the last-result entry may remain until deleted | Consent | Disabled |
| Analytics | PostHog | ph_<project>_posthog and consented product events | Measure product and site usage without session recording or autocapture | Cookie: 1 year; event retention follows the PostHog account policy | Consent | Disabled |
| Analytics | YouTube | YSC | Measure views of consented embedded videos | Session | Consent | Disabled |
| Advertising | initdesk | __Secure-initdesk_acq | Store encrypted first and last qualified paid-touch context | 90 days after the latest qualified paid touch | Consent | Disabled |
| Advertising | _gcl_au | Measure advertising efficiency | 3 months | Consent | Disabled | |
| Advertising | Google / YouTube | __Secure-YNID, __Secure-ROLLOUT_TOKEN, __Secure-YEC | Security, fraud prevention, staged delivery, and advertising support for consented embeds | Up to 6 months; expired variants are removed | Consent | Disabled |
| Advertising | Google Ads / X | Conversion and page-view events | Attribute campaigns and measure consented conversions | Request-time event; no additional initdesk browser storage | Consent | Disabled |
Cookies and lifetimes can change when providers update their services. CookieYes scans and the Cookie settings panel provide the current cookie-level inventory, purposes, providers, and durations.
Consent records
We use the CookieYes consent log to retain available evidence such as the time, anonymous consent identifier, region when available, and granular categories associated with a choice. We version the corresponding banner configuration separately. These records help us demonstrate compliance and respond to privacy requests.
Browser controls and contact
Browser controls can delete or block cookies, but blocking essential storage may prevent sign-in or requested features. For questions or privacy requests, contact legal@initdesk.com.