Cookie Policy

Last updated: 2026-09-09

This Cookie Policy explains how Shambix uses cookies and similar technologies for the Patcherly service (a brand of Shambix).

What we use

Below is a practical list of cookies and similar technologies we or our providers may set when you use the public website (patcherly.com), the dashboard (app.patcherly.com), or related sign-in flows. Exact names can vary by browser, consent choices, and whether you are logged in.

Public website (marketing and legal pages)

  • Consent (Cookiebot): CookieConsent on patcherly.com - stores your cookie choices; loaded via Cookiebot (consent.cookiebot.com).
  • Analytics (Google Analytics 4): _ga and related cookies on .patcherly.com - on the public marketing website only, with consent as configured in Cookiebot. The dashboard at app.patcherly.com does not load Cookiebot or marketing analytics cookies.
  • Security / CDN (Cloudflare): cf_clearance on .patcherly.com - bot management / security; may be HTTP-only and Secure.

Dashboard sign-in

When you sign in, the dashboard uses cookie-based sessions shared across our .patcherly.com domains so the app can authenticate you securely:

  • patcherly_access_token - HTTP-only short-lived session credential.
  • patcherly_refresh_token - HTTP-only credential used to renew your session.
  • patcherly_csrf - anti-forgery token used with authenticated requests.
  • patcherly_auth - non-secret indicator so the dashboard knows a session may be present (not a substitute for server-side authentication).

Third-party and embedded resources

  • Google: Loading Google Analytics, fonts, or other Google assets may set additional cookies on Google domains (e.g. __Secure-ENID on .google.com) according to Google’s policies.
  • Stripe: When you use billing, checkout, or the Stripe customer portal, Stripe may set its own cookies on Stripe domains - see Stripe’s cookie policy.
  • CDNs and media: We use third-party CDNs (e.g. jsDelivr for libraries, Google Fonts for typography). Those requests normally do not set first-party Patcherly cookies; embedded images or widgets from other sites may cause those third-party domains to set their own technical cookies.

Local storage and session storage

Beyond cookies, the dashboard may use localStorage (e.g. preferences and UI column visibility) and sessionStorage (short-lived UI state). The documentation site may use a separate auth cookie (patcherly_docs_auth).

Managing preferences

Use the Cookiebot banner on our site or your browser settings to manage cookies. Blocking all cookies may affect login and functionality.

Contact

Shambix, Via Tornabuoni 4, 50125 Firenze, Italy. [email protected] or [email protected].

Checking API...
Checking AI Gateway...
Check status
⚠️ Setup Required