Cookie Policy
Last updated: May 2026
This Cookie Policy explains how FreshCut NYC ("we", "us") uses cookies and similar technologies when you visit our website or use our mobile app. It works alongside our Privacy Policy and Terms of Service.
1. What are cookies?
Cookies are small text files that a website stores in your browser. They let the site remember things like your login session, your language preference, and which items you put in your cart. We also use closely-related browser storage technologies (localStorage and sessionStorage) for the same purposes. Where this policy says "cookies", it covers all of these.
2. Cookies we set ourselves (first-party)
| Name | Purpose | Lifetime | Category |
|---|---|---|---|
next-auth.session-token | Keeps you signed in across page loads. | 30 days | Strictly necessary |
next-auth.csrf-token | Anti-forgery token protecting auth forms. | Session | Strictly necessary |
freshcut-analytics-consent | Remembers your analytics consent choice. | 12 months | Strictly necessary |
freshcut-last-email | Pre-fills the email field on the login form so you don't have to retype it. | Until you clear it | Functional |
freshcut-cart | Holds your shopping cart between visits. | 30 days | Functional |
freshcut-theme | Remembers your light/dark + color-theme choice. | 12 months | Functional |
freshcut-locale | Remembers your language preference (1 of 9). | 12 months | Functional |
freshcut-quick-search-recent | Stores your last 5 quick-search queries for faster reuse. | 90 days | Functional |
Strictly necessary cookies cannot be turned off — the site does not work without them. Functional cookies are set by you using the relevant feature; you can clear them at any time from your browser settings.
3. Cookies set by our service providers (third-party)
We use the following third-party services that may set their own cookies. Each is documented in their own privacy policy, linked below. We do not load any of the analytics or advertising providers below until you accept analytics consent via the banner.
| Provider | Purpose | Category |
|---|---|---|
| Stripe | Payment processing, fraud prevention (Radar). | Strictly necessary |
| Google Analytics 4 | Aggregate site usage so we know which features are used. Disabled until you consent. | Analytics |
| PostHog | Product analytics, A/B testing, session replay (only of consented users; never of payment or PII fields). | Analytics |
| Sentry | Error reporting so we can diagnose bugs. Scrubs PII before transmission. | Analytics |
| Cloudinary | Image hosting + CDN for product/shop photos. | Strictly necessary |
4. How to control cookies
- Analytics opt-out: The cookie consent banner that appears on your first visit lets you reject analytics cookies. You can change your mind any time by clearing the
freshcut-analytics-consentkey in your browser storage — the banner will reappear on your next visit. - Sale of personal information opt-out (CCPA/CPRA): Visit Do Not Sell or Share My Personal Information to submit a CCPA/CPRA opt-out request.
- Browser controls: All major browsers let you block, delete, or set preferences for cookies. See Chrome, Safari, Firefox, or Edge. Note: blocking the strictly-necessary cookies will sign you out and stop checkout from working.
- Global Privacy Control: If your browser sends a GPC signal, we treat it as a sale/share opt-out automatically — no further action needed.
5. Changes to this policy
We may update this Cookie Policy as we add or remove services. The "Last updated" date at the top tells you when. If changes affect what we collect or who we share with, we'll also let you know via email or an in-app banner.
6. Contact
Questions about cookies? Email privacy@freshcut.nyc or write to FreshCut NYC, Attn: Privacy Team, 1 Centre Street, New York, NY 10007.
