Cookies and browser storage
Version 1.0 — Effective date 2026-07-14 — Status live — SHA-256 2ef8613757899aa84de180161441c9b80d8057934f4f6f9139f88518e76bc9c3
Prélude uses only cookies and storage required for authentication and the natal tunnel. No analytics consent is requested because no analytics, advertising pixel or A/B testing is active.
Strictly necessary inventory
- authjs.session-token / __Secure-authjs.session-token — Account-session authentication and security. Durée : 30 days maximum.
- authjs.csrf-token / __Host-authjs.csrf-token — CSRF protection for authentication forms. Durée : browser session.
- authjs.callback-url / __Secure-authjs.callback-url — Return to the requested page after authentication. Durée : browser session.
- prelude-natal — Natal tunnel state, derived data and previews in the current tab. Durée : tab session.
Management
Browser controls can erase these data. Prélude currently has no dedicated deletion control in the account. Clearing session cookies signs the account out; clearing sessionStorage resets the tunnel for that tab.