Cookie Policy
What Are Cookies
Cookies are small text files placed on your device when you visit a website. We use a small number of them to keep you signed in, secure the site, and remember basic preferences. With your consent, we also use them — and similar technologies from our processors — to understand how the Platform is used and, in future, to show advertising.
Cookies We Use
| Cookie | Category | Purpose | Storage |
|---|---|---|---|
| lorehub-session | Strictly necessary | Keeps you signed in and secures your session | Session — cleared when you close your browser |
| XSRF-TOKEN | Strictly necessary | Cross-site request forgery (CSRF) protection on form submissions | Session |
| lh_authed | Functional | Lets the page shell show the signed-in header immediately, before the account check finishes. Holds no personal data — just a "you're logged in" flag. | Expires with your session |
| geo_country | Functional | Coarse, country-level location used as a fallback to pick a sensible default language and currency | Short-lived, managed at our CDN edge |
| lh_currency | Functional | Remembers the display currency you've chosen | Persistent — up to 1 year |
| lh_locale | Functional | Remembers your language preference | Persistent — up to 1 year |
Strictly Necessary Cookies
lorehub-session and XSRF-TOKEN are required for the Platform to function — session management and security. They cannot be disabled, and they are not part of the consent categories below.
Functional Cookies
lh_authed, geo_country, lh_currency, and lh_locale remember basic preferences — that you're signed in, and your country, currency, and language — so you don't have to re-select them on each visit. They don't track you across other sites or build an advertising profile, so they're always on rather than gated behind a consent toggle. You can clear them via your browser settings at any time; doing so will reset your preferences and sign you out.
Analytics & Replay Cookies (Microsoft Clarity)
Only if you grant the Analytics & Replay consent category, we load Microsoft Clarity — a session-replay and heatmap tool operated by Microsoft — to help us see how LoreHub is actually used and where people get stuck. Clarity does not load until you say yes, and stops loading the next time you visit if you later withdraw consent.
Clarity sets its own third-party cookies on your device, separate from the ones listed above; we don't control their exact names or lifetimes — Microsoft documents those directly. Clarity data is processed by Microsoft and may be transferred outside the UK, under Microsoft's appropriate safeguards for that kind of transfer. Microsoft may also use Clarity data in connection with Microsoft Advertising. We configure Clarity to strict masking, so page text like names and email addresses is hidden from recordings before it ever leaves your browser.
Advertising Cookies (planned)
We plan to show advertising through Google AdSense, to help keep books free to read. AdSense is not enabled yet. When it is switched on, its cookies and any ad personalization will run only for visitors who have granted the Advertising category — never before, and never as a side effect of granting Analytics.
Not Cookies, But Stored On Your Device
A couple of things live in your browser's localStorage rather than as cookies. They aren't sent to our servers automatically, but we list them here for full transparency:
- lore-consent — records the cookie-preference choices you've made — which categories you granted, when, and under which policy version — so we don't ask you again on every page
- Theme preference — remembers whether you prefer light or dark display mode
Your Consent Choices
Beyond the strictly necessary and functional cookies above, LoreHub offers two consent categories:
- Analytics & Replay — Microsoft Clarity session replay and heatmaps, described above
- Advertising — Google AdSense, planned, described above
You choose via the banner shown on your first visit, or at any time afterwards via "Cookie preferences" — a control in the footer of every page (and, in the reader, a small floating icon, since the reader has no footer). Changing your mind takes effect immediately: withdrawing Analytics stops Clarity from loading on your next visit; withdrawing Advertising stops ad personalization once AdSense is live.
If you're signed in, your choice is also written to your account, so we can demonstrate what you consented to and so it follows you to your other devices. If you're a guest, it's remembered only in this browser's storage.
Managing Cookies In Your Browser
You can also manage or delete cookies through your browser's own settings. Note that disabling strictly necessary cookies will prevent you from signing in.
- Chrome / Edge — Settings → Privacy and security → Cookies
- Firefox — Settings → Privacy & Security
- Safari — Preferences → Privacy → Manage Website Data
We keep these documents under review and recommend you take independent legal advice on any that affect you.