Cookie Policy

Last updated: April 16, 2026

This Cookie Policy explains how Prokken ("we", "our", or "us") uses cookies and similar technologies when you use our platform at prokken.com.

1. What Are Cookies?

Cookies are small text files stored on your device (computer, tablet, or phone) when you visit a website. They are widely used to make websites work more efficiently and to provide information to site owners.

2. Cookies We Use

Prokken uses a minimal set of cookies, focused entirely on essential platform functionality. We do not use advertising or tracking cookies.

Cookie NamePurposeTypeDuration
prokken_accessStores your authentication access token to keep you logged in. This cookie is httpOnly and cannot be read by client-side JavaScript.Essential / Strictly Necessary24 hours
prokken_refreshStores your refresh token used to obtain a new access token when the current one expires. This cookie is httpOnly and is only sent to authentication endpoints.Essential / Strictly Necessary7 days

3. Cookie Categories

3.1 Strictly Necessary Cookies

Both cookies listed above are strictly necessary for the platform to function. Without them, you cannot log in or use authenticated features. These cookies do not require consent under most cookie laws (including GDPR) because they are essential to provide the service you have requested.

3.2 Analytics Cookies

Prokken does not currently use any analytics cookies (e.g., Google Analytics). If we introduce analytics cookies in the future, we will update this policy and request your consent before setting them.

3.3 Advertising / Marketing Cookies

We do not use any advertising or marketing cookies. We do not track you across other websites.

4. Security Properties

Our authentication cookies are configured with the following security properties:

  • httpOnly — cookies cannot be accessed by JavaScript, protecting against cross-site scripting (XSS) attacks
  • Secure — cookies are only transmitted over HTTPS in production
  • SameSite: Lax — cookies are not sent with cross-site requests, protecting against cross-site request forgery (CSRF) attacks
  • Path-restricted — the refresh token cookie is only sent to /api/auth endpoints, minimizing exposure

5. Third-Party Cookies

Prokken does not set any third-party cookies. Our payment processor (Stripe) may set its own cookies when you interact with payment forms. Please refer to Stripe's Cookie Policy for details.

6. Managing Cookies

Since Prokken only uses strictly necessary cookies, disabling them will prevent you from logging in and using the platform. You can manage cookies through your browser settings:

  • Chrome— Settings > Privacy and Security > Cookies
  • Firefox— Settings > Privacy & Security > Cookies
  • Safari— Preferences > Privacy > Manage Website Data
  • Edge— Settings > Cookies and Site Permissions

7. Changes to This Policy

We may update this Cookie Policy if we introduce new cookies or change how existing cookies work. When we do, we will update the "Last updated" date at the top of this page.

8. Related Policies

9. Contact Us

If you have questions about our use of cookies, please contact us at:

Prokken
Hasibul Islam
Email: [email protected]
Phone: +8801906315901
Website: prokken.com