- No intrusive tracking: We do not sell your personal data or track you across third-party websites.
- Essential storage only: Cookies and local storage are primarily used for secure Google Sign-In sessions, theme preferences (light/dark), and performance caching.
- Privacy-first analytics: Aggregate product usage is measured responsibly via PostHog, Google Analytics, and Hotjar without selling data.
- Full control: You can clear your cookies or browser storage at any time directly in your browser settings.
1. What are cookies and local storage?
Cookies are small text files placed on your device by websites you visit. Similar technologies like localStorage and sessionStorage allow web applications to securely store data locally in your browser so you don't have to re-enter settings or sign in on every page reload.
XGrowth uses both HTTP cookies and HTML5 web storage to ensure seamless workspace operation, authentication security, and fast asset loading.
2. How XGrowth uses storage technologies
We classify our browser storage mechanisms into three distinct functional categories:
A. Strictly Essential Storage
These items are required for the platform to function. Without them, secure authentication and workspace access cannot operate. They cannot be turned off without breaking application functionality.
B. Functional & Preference Storage
These keys remember your interface preferences, such as your light/dark theme selection, ensuring you have a consistent visual experience across page refreshes.
C. Performance & Analytics
We collect anonymized, aggregate telemetry to detect application errors, measure feature performance, and understand how founders navigate the autonomous agent workflows.
3. Inventory of cookies and storage keys
| Name / Key | Type | Category | Purpose & Retention |
|---|---|---|---|
foundergrowth_user_v1 |
Local Storage | Essential | Stores signed-in founder display name, email, and avatar for fast UI paint before network validation. Persists until sign-out. |
Firebase Auth (IndexedDB) |
IndexedDB / Cookie | Essential | Secure cryptographic session token for Google Authentication and cloud workspace authorization. |
xg_theme |
Local Storage | Functional | Remembers light or dark theme mode to prevent screen flickering on page load. |
xg_cache_ver |
Local Storage | Functional | Ensures your browser loads updated agent scripts and style sheets without stale cache issues. |
ph_* (PostHog) |
Cookie / Storage | Analytics | Anonymous telemetry tracking workspace interactions and error rates to improve agent reliability. |
_ga*, _gid |
Cookie | Analytics | Google Analytics cookies used to calculate visitor, session, and campaign data for public pages. |
_hj* (Hotjar) |
Cookie / Storage | Analytics | Anonymous session and interaction data used to understand usability. Hotjar masks inputs by default, and private workspace content is suppressed. |
4. Third-party integrations
When you use XGrowth, certain trusted third-party services may set cookies or access local storage on your device:
- Google Identity Services & Firebase: Manages secure OAuth 2.0 authentication and token renewal.
- Dodo Payments: Handles PCI-DSS compliant checkout and subscription management. Payment details are handled securely on Dodo Payments infrastructure and never stored on XGrowth servers.
- PostHog: Provides privacy-compliant product analytics and session error diagnostics.
- Hotjar: Provides anonymous heatmaps and session insights to help us improve usability. Hotjar masks inputs by default, private workspace content is suppressed, and Do Not Track settings are honored where supported.
5. How to control and delete cookies
You have full control over cookies and browser storage:
- Browser Settings: You can configure your browser to block cookies, delete existing cookies, or alert you before a cookie is placed. Note that blocking essential cookies will prevent authentication into the XGrowth workspace.
- Local Storage Clearing: You can clear local storage at any time via your browser's developer tools or privacy settings (Clear Browsing Data > Cookies and site data).
- Sign Out: Clicking Log out in XGrowth immediately purges cached authentication tokens and user profiles from your local storage.
6. Compliance & Contact
Our cookie practices adhere to global privacy regulations, including the European Union General Data Protection Regulation (GDPR), the ePrivacy Directive, and the California Consumer Privacy Act (CCPA/CPRA). For more details on how we handle personal data, please review our Privacy Policy and Terms of Service.
If you have any questions about this Cookie Policy, reach out to our team:
- Email: hello@xgrowth.uno
- Website: https://www.xgrowth.uno