Contents
Cookie Policy
Last updated: June 24, 2026 · Effective date: June 24, 2026
This Cookie Policy explains how Gawry & Co Servicos LTDA (CNPJ 10.548.738/0001-41), operator of PostFrames (“we”), uses cookies and similar technologies on postframes.co, postframes.io, and related applications (the “Service”). It supplements our Privacy Policy.
1. What cookies are
Cookies are small text files stored in your browser or device when you visit a site. They let us recognize the browser, keep you authenticated, remember preferences, and understand how the Service is used. We also use similar technologies (e.g., local storage and session tokens), referred to together here as “cookies”.
2. Types of cookies we use
- Strictly necessary (essential): required to authenticate you, maintain the session, and ensure security. Without them, the Service does not work. No consent required (legal basis: performance of a contract and legitimate interest).
- Functional / preference: remember choices, such as language. They improve the experience but are not essential.
- Analytics / performance: help us understand Service usage in aggregate, to improve it.
Non-essential functional and analytics cookies are enabled only with your consent, which you can withdraw at any time (Section 5).
We do not use third-party behavioral advertising cookies and we do not sell your data to ad networks.
3. Consent
On your first visit, we show a cookie notice that lets you accept or reject non-essential cookies. Essential cookies are applied regardless of your choice, as they are required for the Service to function. You can revisit your decision at any time at [COOKIE SETTINGS LINK] or in your browser settings.
4. Cookies we use
Illustrative list: confirm exact names and durations against the implementation.
| Cookie | Purpose | Type | Duration |
|---|---|---|---|
better-auth.session_token (and __Secure- variant) | Keeps you authenticated | Essential | 7 days |
| CSRF token | Protection against request forgery | Essential | Session |
pf:locale | Remembers your chosen language | Functional | 1 year |
__stripe_mid / __stripe_sid | Payment processing and fraud prevention (at checkout) | Third-party (Stripe) | 1 year / 30 minutes |
ph_* (PostHog) | Product (Studio) usage analytics | Analytics (third-party) | 1 year |
_ga, _ga_* (Google Analytics) | Website (marketing) usage analytics | Analytics (third-party) | 2 years |
5. How to manage cookies
- In the Service: use the [COOKIE SETTINGS] to adjust consent for non-essential cookies.
- In your browser: you can block or delete cookies in your browser settings. Blocking essential cookies may prevent the Service from working (for example, keeping you logged in).
6. Third-party cookies
Some cookies are set by third parties that provide services to us, such as Stripe (payments), PostHog (product analytics), and Google Analytics (website analytics). These third parties process data under their own policies. See the list of processors in our Privacy Policy.
7. Changes
We may update this Cookie Policy. Material changes will be signaled in the Service and the “Last updated” date will be revised.
8. Contact
Questions about cookies: Email: dpo@postframes.co