Cookie Policy
Version 1.1 — Effective 2026-09-22
The Digital Worker platform uses only the cookies and browser storage needed to deliver the service you request and to remember your interface preferences. We do not use advertising cookies, cross-site tracking pixels, or analytics that build behavioural profiles. Under the ePrivacy Directive (2002/58/EC) and the Croatian Electronic Communications Act, storage that is strictly necessary for a service you request does not require prior consent; we list everything here for transparency. If the Croatian and English versions differ, the Croatian version prevails.
1. Cookies
| Name | Purpose | Category | Lifetime |
|---|---|---|---|
connect.sid |
Signed session identifier that keeps you signed in. HttpOnly, SameSite=Lax, Secure over HTTPS. | Strictly necessary | Until you sign out, or 7 days by default (the instance administrator can change this) |
2. Browser storage (localStorage and sessionStorage)
| Key | Purpose | Category | Lifetime |
|---|---|---|---|
theme, dw_ui_skin, dw_ui_skin_css |
Remember your light/dark theme and interface skin so pages render without flicker. | Preference | Until you clear it |
widgetVisibilityState, dw.timezone, logViewer_v1_*, hubMinimized (sessionStorage) |
Remember your dashboard widgets, display time zone, log-viewer filters, and whether the assistant panel is minimised. | Preference | Until you clear it |
app_api_key_<app> |
Stores the access key you enter for a published app that requires one, so you do not have to re-enter it. | Strictly necessary (for that app) | Until you clear it or the key is rejected |
userName, userRole (sessionStorage) |
Display your name and role in the interface during the browser session. | Strictly necessary | Until the browser tab is closed |
hubBackgroundRuns, hubSeenRuns |
Keep track of agent runs you started in the background and which results you have already seen. | Strictly necessary | Until you clear it |
fleet_* (including fleet_device_id) and the Cache Storage entry fleet-weights |
Only if you opt in to lending this browser's compute to your organisation (Compute Fleet): a device identifier, your chosen settings and worker state, and downloaded AI model weights so they are not fetched again. | Strictly necessary (opt-in feature) | Until you stop lending and clear site data |
DW_DEBUG, enableClientLogging, disableClientLogging, logViewerDebug |
Diagnostic switches, set only when you or support turn on troubleshooting output. | Strictly necessary (support) | Until you clear it |
3. Third parties
The platform itself loads no third-party advertising or analytics scripts, and serves its fonts itself. If you sign in through an identity provider (for example Google or your organisation's single sign-on), that provider may set its own cookies during the sign-in redirect, under its own policy.
Agents and apps that customers publish on their own websites run in the context of the customer's site, whose own cookie policy applies. The Digital Worker embed does not set tracking cookies; inside it, the entries above are used only when the visitor signs in.
4. Controlling cookies
You can clear or block cookies and site data in your browser
settings. Blocking connect.sid prevents you from staying
signed in.
5. Changes
If we ever add a non-essential category, such as product analytics, we will ask for your consent first and add it to the tables above.
6. Contact
Questions: legal@apexacademy.hr.