Navimum · Cookie Policy
Effective date: 2026-09-06 · Last updated: 2026-09-13
This Cookie Policy explains how Navimum Limited ("Navimum") uses cookies and similar technologies on our website https://navimum.com and, where relevant, in connection with our app SDKs. It supplements our Privacy Policy.
1. What are cookies and similar technologies?
Cookies are small text files stored on your device. Similar technologies include local storage, pixels and web beacons, and software development kits (SDKs) embedded in our app that read or write device identifiers. We refer to all of these as "cookies" here.
2. Consent (EU and UK)
Under EU ePrivacy rules and UK PECR, we set non-essential cookies only after you consent. When you first visit our website you will see a consent banner allowing you to Accept all, Reject all, or Manage preferences by category. Rejecting is as easy as accepting. Strictly-necessary cookies do not require consent. You can change or withdraw your choices at any time via "Cookie settings" in the website footer.
3. Cookie categories
| Category | Purpose | Consent needed? | Examples |
|---|---|---|---|
| Strictly necessary | Core site function, security, load balancing, remembering your consent choice | No (exempt) | Session cookie, CSRF token, consent record |
| Functional / preferences | Remember language and settings | Yes (EU and UK) | navimum_locale (not set yet, see section 4) |
| Analytics / performance | Understand usage to improve the site | Yes | None. No third-party product-analytics vendor is used. Website visit counts come from Cloudflare Web Analytics, which sets no cookies. |
| Attribution / referral | Remember which campaign link brought you to the website | Yes | navimum_utm (see section 4). No third-party attribution or deep-link provider is used. |
| Marketing / advertising | Ad measurement and retargeting | Yes | None. No advertising or retargeting provider is used. |
4. Specific cookies
The website ships no analytics or advertising cookies. The two strictly-necessary cookies below can always be set. The one attribution cookie below is set only after you allow "Attribution and referral". The banner gates every non-essential cookie so it cannot be set before you consent.
Website visit statistics come from Cloudflare Web Analytics, which sets no cookies and stores nothing on your device. It counts visits, pages and referring sites, and records location only to country level.
| Name | Provider | Category | Purpose | Expiry |
|---|---|---|---|---|
sb-<ref>-auth-token (Supabase auth session) | Supabase (@supabase/ssr), first-party | Strictly necessary | Keeps you signed in on /account and /subscribe after authentication. Set only after sign-in. | Session or refresh-token lifetime, renewed on use |
navimum_consent | Navimum, first-party | Strictly necessary | Stores your cookie-consent choice by category so we honour it and do not ask again. Readable by client scripts so they can gate non-essential cookies. | 180 days |
navimum_utm | Navimum, first-party | Attribution / referral | Remembers the campaign parameters (utm_source, utm_medium, utm_campaign) of the link that brought you, so we can tell which campaigns work. Set only after you allow "Attribution and referral", and deleted if you withdraw that choice. | 30 days |
navimum_locale | Navimum, first-party | Functional / preferences | Would remember your chosen language. Not set yet. Locale detection is not wired on the site, which always resolves to English today. Listed here for when it is introduced. | 1 year, when introduced |
5. Mobile-app SDKs
In the app, we currently use only the Sentry SDK for crash and error diagnostics. We do not ship a referral or deep-link attribution SDK, and we do not ship a product-analytics SDK. These are disclosed in our Privacy Policy and in the app-store privacy labels. Where any SDK accesses device identifiers for purposes requiring consent, for example tracking under Apple's App Tracking Transparency, we request the required permission in-app. Navimum does not use health data for advertising.
6. Apple App Tracking Transparency (ATT)
Navimum does not track you across other companies' apps or websites. No attribution, analytics, or advertising SDK ships in the app, so no ATT prompt is presented. If we ever introduce an SDK that does track across other companies' apps or websites, iOS will present the ATT prompt and we will only track after you allow it.
7. How to control cookies
- Use our Cookie settings link in the footer to change categories at any time.
- Most browsers let you block or delete cookies in their settings. This may break site features.
- For app SDK tracking, use your device privacy settings or the in-app prompt.
8. Changes
We may update this policy. The "Last updated" date reflects the current version. Material changes will be signposted via the banner.
9. Contact
privacy@navimum.com · Navimum Limited, 128 City Road, London, EC1V 2NX.