Unetia Legal
Cookie Policy
This policy explains cookies used for login security, service state, and platform traffic analytics.
Effective September 10, 2026
1. Essential cookies
`__Host-unetia-session` maintains login and `__Host-unetia-csrf` prevents forged requests. While a super administrator switches to a member account for support, `__Host-unetia-impersonation-grant` retains a one-time administrator return credential for up to two hours. Provider-specific one-time state cookies are used for up to ten minutes during OAuth login.
Authentication cookies are Secure and host-only, and platform sessions are not shared with customer subdomains.
2. Choice and retention
Blocking essential cookies can prevent login and editing. Unetia does not separately configure personalized-advertising or remarketing features. On the exact unetia.com hostname, Naver Analytics may use a server-issued cookie; Google Analytics may use the `_ga` and `_ga_<container-id>` first-party cookies; and Microsoft Clarity may use the `_clck` and `_clsk` first-party cookies plus the `CLID`, `ANONCHK`, `MR`, `MUID`, and `SM` Microsoft-domain third-party cookies. Microsoft states that some of these cookies also support analytics, operations, and advertising across Microsoft services. None of the three analytics scripts is loaded on dev.unetia.com or customer subdomains. You can block or delete these cookies in browser settings, and consent choices apply in regions where required by law.
Session cookies last for up to 30 days from issuance or renewal. While you actively use the signed-in service, a rate-limited activity check extends the session. The cookies are removed when you log out or after prolonged inactivity causes expiry. OAuth state cookies last up to 10 minutes and are removed after completion or expiry.
