Last updated: March 2026
Cookie Policy
1. Introduction
Tavio Inc. ("we," "us," "our") uses cookies and similar tracking technologies to enhance your experience on the Tavio platform and website ("Platform"). This Cookie Policy explains what cookies are, how we use them, and your choices regarding cookies.
This policy applies to all users of the Platform including account holders, team members, and website visitors. Please read this policy alongside our Privacy Policy and Terms of Service.
2. What Are Cookies?
Cookies are small text files stored on your device (computer, tablet, mobile phone) when you visit a website or application. Cookies contain information that can be retrieved each time you visit the Platform.
Types of Cookies:
- • First-party cookies: Set directly by Tavio
- • Third-party cookies: Set by partners and analytics providers
- • Session cookies: Deleted when you close your browser
- • Persistent cookies: Remain on your device for a set period
3. Cookies We Use
3.1 Essential Cookies (Always Active)
These cookies are necessary for the Platform to function. You cannot disable them without breaking core functionality:
| Cookie Name | Purpose | Duration |
|---|---|---|
sb-access-token | Authentication - keeps you logged in | 1 hour |
sb-refresh-token | Refreshes your session automatically | 7 days |
session-id | Tracks your session for security | Session |
csrf-token | Protects against cross-site request forgery | Session |
tenant-id | Stores your organization ID for multi-tenant isolation | Session |
3.2 Preference Cookies (You Can Disable)
These cookies remember your preferences and choices to improve your experience:
| Cookie Name | Purpose | Duration |
|---|---|---|
theme-preference | Remembers light/dark/system theme choice | 1 year |
sidebar-collapsed | Remembers if sidebar is collapsed | 1 year |
language | Stores your preferred language | 1 year |
notification-settings | Remembers notification preferences | 1 year |
3.3 Analytics Cookies (Opt-In)
These cookies help us understand how the Platform is used and identify improvements. They are disabled by default and require your consent:
| Cookie Name | Purpose | Provider |
|---|---|---|
_ga, _gid | Google Analytics - tracks user interactions and page views | |
posthog | PostHog - tracks feature usage and user behavior | PostHog |
_fbc, _fbp | Facebook Pixel - tracks conversions for marketing | Meta |
3.4 Marketing & Advertising Cookies (Opt-In)
These cookies are used to deliver targeted ads and measure campaign effectiveness:
| Cookie Name | Purpose | Provider |
|---|---|---|
utm_* | Tracks campaign source and medium | Tavio |
gclid, fbclid | Tracks clicks from Google Ads and Facebook Ads | Google/Meta |
3.5 Third-Party Service Cookies
These are set by third-party services integrated with Tavio:
- • Intercom: Customer support chat widget (conversation tracking)
- • Stripe: Payment processing (session management)
- • Supabase: Database and authentication provider (session tokens)
- • Vercel: Application hosting (analytics, performance monitoring)
4. How We Use Cookie Data
4.1 Essential Functions
- • Authenticating your identity and maintaining your session
- • Protecting against fraud and unauthorized access
- • Enforcing Terms of Service and security policies
- • Delivering the core functionality of the Platform
4.2 User Experience
- • Remembering your theme preference (light/dark mode)
- • Storing UI state (sidebar collapsed/expanded, view preferences)
- • Pre-filling forms with your information
- • Delivering personalized content and features
4.3 Analytics & Improvement
- • Understanding how users interact with the Platform
- • Identifying popular features and pain points
- • Measuring page performance and load times
- • Analyzing conversion funnels (signup, upgrade, etc.)
- • Testing new features (A/B testing)
- • Creating anonymized usage statistics
4.4 Marketing & Ads
- • Measuring effectiveness of marketing campaigns
- • Tracking return on ad spend (ROAS)
- • Delivering targeted ads to you on other websites
- • Understanding customer journey from ad to conversion
4.5 Communication
- • Enabling customer support chat functionality
- • Sending relevant email notifications
- • Tracking email open rates and link clicks
5. Do Not Track (DNT) Signals
Some browsers and devices allow you to enable a "Do Not Track" (DNT) signal. Currently, there is no industry standard for DNT signals. While we respect DNT preferences, we still use essential cookies for security and functionality. You can manage your cookie preferences in your account settings or browser settings (see section 8 below).
6. Cookie Duration
| Cookie Type | Duration |
|---|---|
| Essential (session) | Deleted when you close your browser |
| Essential (persistent) | 1 hour to 7 days |
| Preference | 1 year |
| Analytics | 1-2 years |
| Marketing | 3 months to 2 years |
7. Similar Technologies
In addition to cookies, we use other technologies that work similarly:
- • Web Beacons (Pixels): Small images embedded in pages to track visits
- • Local Storage: Browser storage for settings and cached data
- • Session Storage: Temporary storage for form data during your session
- • Analytics Scripts: JavaScript that tracks user interactions
- • Device Identifiers: Unique IDs for devices accessing the Platform
Your choices about cookies also apply to these similar technologies.
8. Your Choices & How to Control Cookies
8.1 Cookie Preferences in Your Account
Log into your Tavio account and go to Settings → Privacy & Data → Cookie Preferences. You can:
- • Enable/disable analytics cookies
- • Enable/disable marketing cookies
- • View a list of all active cookies
- • Delete cookies manually
Important: You cannot disable essential cookies without breaking the Platform.
8.2 Browser Settings
You can manage cookies directly in your browser:
- • Chrome: Settings → Privacy and Security → Cookies and other site data
- • Firefox: Settings → Privacy → Cookies and Site Data
- • Safari: Preferences → Privacy → Cookies and website data
- • Edge: Settings → Privacy → Clear browsing data → Cookies
You can set your browser to:
- • Block all cookies
- • Block third-party cookies only
- • Delete cookies when closing your browser
- • Ask you before accepting cookies
8.3 Third-Party Opt-Outs
You can opt-out of specific third-party cookie providers:
- • Google Analytics: Google Analytics Opt-out Browser Add-on
- • Facebook: Facebook Settings → Apps and Websites (remove Tavio)
- • Google Ads: Google Ad Settings
8.4 Privacy-Focused Browsing
For maximum privacy:
- • Use private/incognito browsing mode (cookies deleted when window closes)
- • Use privacy-focused browsers (Brave, DuckDuckGo, etc.)
- • Use a VPN (Virtual Private Network)
- • Install browser extensions like uBlock Origin or Privacy Badger
Note: Disabling cookies may limit functionality of the Platform. Essential cookies cannot be disabled without breaking core features like login.
9. International & Legal Compliance
9.1 GDPR (EU/EEA Users)
Under GDPR, we must obtain your consent before placing non-essential cookies. When you first visit, you'll see a consent banner. Your choices are:
- • Accept All: Allow all cookies (except marketing, which requires opt-in)
- • Reject All: Decline all non-essential cookies
- • Customize: Choose which types of cookies to allow
You can change your consent anytime in Settings → Privacy & Data → Cookie Preferences.
9.2 CCPA (California Users)
Under California Consumer Privacy Act (CCPA), you have the right to:
- • Know what personal data is collected (see section 3 above)
- • Delete personal data (submit a data deletion request)
- • Opt-out of data sales (we don't sell data, but you can opt-out of targeted ads)
- • Appeal a denial of your rights
9.3 Kenya Data Protection Act (KDPA)
Under KDPA, we comply with data processing principles and your rights to access, rectify, and delete your data. See our Privacy Policy for details.
10. Security & Protection
Cookies are transmitted over secure, encrypted HTTPS connections. However:
- • Never store sensitive information (passwords, credit cards) in cookies
- • Always use strong, unique passwords
- • Enable two-factor authentication (2FA) on your account
- • Clear your cookies if using a shared device
- • Logout when finished, especially on shared devices
11. Cookie Updates
We may update the cookies we use as we improve the Platform, add new features, or integrate new third-party services. We will update this policy accordingly. Significant changes will be communicated to you via email or in-app notification.
12. Contact Us
If you have questions about our use of cookies or want to exercise your rights:
Email: privacy@tavio.ai
Data Protection Officer: dpo@tavio.ai
Mailing Address: Tavio Inc., Nairobi, Kenya
Phone: +254 (0)20 2000 1234
We will respond to your inquiry within 30 days.
QUICK SUMMARY
✓ Essential cookies: Always active (required for security & login)
✓ Preference cookies: Remember your settings (theme, language)
✓ Analytics cookies: Help us improve (can disable anytime)
✓ Marketing cookies: Track conversions (can disable anytime)
✓ Control: Manage in Settings → Privacy & Data → Cookie Preferences
✓ GDPR/CCPA Compliant: Your consent is required for non-essential cookies