Legal
Cookie Policy
Last updated: 2026
The Short Version
Wild Sprout uses only essential session cookies. We do not use advertising cookies, tracking cookies, or analytics cookies. No cookie consent banner is required or shown.
What Cookies We Use
We use one type of cookie:
- Session cookie (essential)— Set by NextAuth.js when you sign in. This cookie keeps you authenticated between page loads. It is a httpOnly, Secure, SameSite=Lax cookie. It contains a signed session token — not your personal data. It expires when your browser session ends, or after 30 days if you chose “Stay signed in.”
This cookie is strictly necessary for the site to function for signed-in users. It is not used for tracking or advertising.
What We Don't Use
- No Google Analytics
- No Meta Pixel or advertising pixels
- No third-party tracking scripts
- No fingerprinting or persistent identifiers beyond the session
Affiliate Link Tracking
When you click an affiliate link, we log the click server-side (no cookies involved). This is a server log entry — not a cookie or browser-side script. It records which item was clicked and the timestamp.
Why No Cookie Banner
Under GDPR and CCPA, cookie consent banners are required only for non-essential cookies (analytics, advertising, tracking). Since Wild Sprout uses only the essential session cookie, no consent banner is legally required.
Managing Cookies
You can clear or block cookies using your browser settings. Blocking the session cookie will prevent you from staying signed in, but you can still browse the site without being signed in.
Contact
Questions? Email hello@wildsprout.life.