UK Pilot · PECR / device storage
Storage & Cookie Notice
1. What this notice covers
This notice explains cookies and similar storage/access technologies used by Business AI, including browser storage and service-worker caches.
2. Essential authentication storage
The authenticated owner app uses Supabase Auth. Its browser client may use browser storage to maintain the signed-in session. This is necessary to provide the authenticated service the user requests.
3. Temporary conversation storage
The owner-side AI test tool uses sessionStorage to keep the current tenant-scoped test conversation available during the browser session. It is temporary, is not used for advertising and is cleared with the relevant private browser state.
4. Static app cache
The Business AI service worker may cache a limited set of static assets such as the manifest and icons so the installed app shell works reliably. It does not intentionally cache authenticated API responses, access tokens, customer records or page navigations.
5. Consent position
The current Pilot does not intentionally configure advertising, cross-site tracking or behavioural-analytics technologies. The storage currently used by the application is intended to be necessary for requested authentication/app functions or static app delivery, so Business AI does not currently show a non-essential cookie-consent banner. If non-essential storage or tracking is introduced, the operator will assess the applicable PECR rule and implement consent or an objection mechanism before enabling it where required.
6. Controls
You can clear site data through your browser settings, but removing essential authentication storage may sign you out or prevent requested app functions from working until that storage is recreated.