Cookies
FXScan uses no third-party tracking, no advertising cookies and no fingerprinting. The Content-Security-Policy blocks third-party scripts outright, and fonts are served from this domain rather than a CDN. One optional cookie exists, and it is only set if you accept it.
| Name | Purpose | Category | Lifetime | Consent |
|---|---|---|---|---|
| __Secure-fxscan.session | Keeps you signed in. Holds a random token; only its hash is stored server-side. | Strictly necessary | 30 days | Not required |
| fxs_share_… | Grants read-only access to one scan report opened through a share link. Scoped to that single report. | Strictly necessary | Life of the share link | Not required |
| fxscan.oidc_state, _nonce, _verifier, _return | Protects the sign-in handshake with Titan Auth against forgery and replay, and remembers where to return you afterwards. | Strictly necessary | 10 minutes | Not required |
| fxscan.oidc_id | Encrypted identity token, used only to sign you out of Titan Auth as well. | Strictly necessary | Life of the session | Not required |
| fxscan.consent | Remembers the choice you made in the cookie banner, so you are not asked again. | Strictly necessary | 1 year | Not required |
| titan_attribution | Records which Titan Software product referred you, so we can tell which of them are useful. Not needed to run a scan. | Analytics | 30 days | Required — set only if you accept |
| fxscan.tracked.… (session storage) | Stops the same analytics event being counted twice when you refresh a page. Cleared when the tab closes. | Analytics | Browser tab | Required — written only if you accept |
Changing your mind
Clear this site's data in your browser and the banner will appear again on your next visit. Refusing removes the optional cookie immediately; nothing else about the service changes.