Cookies & storage
Backroom keeps browser-side storage deliberately limited. This page explains what is stored and why.
1. Authentication cookie
When you sign in, Backroom sets floot_built_app_session. It is a strictly necessary authentication cookie used to associate your browser with a server-side session. It is marked HttpOnly, Secure and SameSite=Lax, is scoped to the site, and is configured for no longer than seven days subject to earlier server expiry or logout.
Because this cookie is necessary to provide the secure sign-in service you request, Backroom does not use it for advertising or cross-site tracking.
2. Analytics
Published Floot applications include Floot’s first-party operational analytics tracker. Backroom instructs that tracker to use an in-memory session rather than persist an analytics session identifier in localStorage. A reload or new tab may therefore be counted as a new analytics session.
Backroom does not currently load Google Analytics, advertising pixels or behavioural advertising trackers.
3. Local application storage
Backroom does not currently persist command-search history in browser localStorage. Some browser or operating-system features may independently remember ordinary form or password information when you choose to use those features; those controls belong to your browser or device rather than Backroom.
4. Consent banner
The current build does not intentionally use non-essential cookies or persistent analytics storage, so it does not display a consent banner merely to obtain consent for storage it does not need. If non-essential storage or tracking is introduced, this page and the consent mechanism must be updated before that technology is enabled for UK users.