Cookie Policy

How GarageExit uses cookies and browser storage.

Last updated: May 7, 2026

What this policy covers

This policy explains how GarageExit uses cookies, local storage, and similar browser-side technologies across the marketing site, waitlist, sign-in flows, and product experience.

It should be read alongside the Privacy Policy.

How GarageExit uses storage

We currently use browser-side storage for four main purposes:

  • To keep authenticated sessions working through Supabase SSR session cookies.
  • To remember temporary access state for the public waitlist-gated name-check flow.
  • To preserve product continuity such as recent-project shortcuts, intro-state handling, and other core UI state.
  • To remember your cookie preferences and, if you allow it, load anonymous site analytics.

Strictly necessary cookies and storage

These items are used to make the site and product work. They are not used for advertising or cross-site behavioral profiling.

  • Supabase auth session cookies: GarageExit uses Supabase server-side auth, which stores access and refresh tokens in secure cookies so the client and server can share session state.
  • garageexit_waitlist_access: an HTTP-only cookie used to remember verified waitlist access for eligible name-check visitors.
  • Cloudflare Turnstile and related challenge storage: used on protected forms to reduce abuse and automated submissions.
  • GarageExit local storage keys: examples include recent project continuity, intro-state handling, resilience caches, and your stored cookie preference.

Analytics

GarageExit uses Vercel Web Analytics for aggregated traffic measurement on the website.

According to Vercel's documentation, Web Analytics stores anonymized data and does not use cookies. Even so, GarageExit treats it as optional measurement and only loads it after you choose Accept All or enable analytics in the cookie preference panel.

Third-party sign-in and protection flows

If you use OAuth or similar third-party sign-in flows, those providers may set their own cookies or related storage during authentication. Those technologies are governed by the provider's own policies, not this one.

Anti-bot and challenge providers may also rely on browser-side storage when you interact with protected public forms.

Managing your preferences

You can manage GarageExit cookie preferences using the banner or cookie settings control shown on the site. Your choice is stored locally in your browser.

You can also use your browser settings to inspect, block, or delete cookies and local storage. Blocking necessary cookies may prevent sign-in, waitlist access, or core product flows from working properly.

Changes and contact

We may update this policy as the product stack, providers, or legal requirements change. When we do, we will revise the date on this page.

Questions about this policy can be sent to [email protected].