Cookie Policy
Last Updated: January 18, 2026
1. Introduction
This Cookie Policy explains how Ethan Consulting (“we”, “our”, “CountHub”) uses cookies and similar technologies on www.counthub.io and app.counthub.io.
Good news: CountHub uses ONLY essential cookies. No advertising tracking or analytics cookies are used.
2. What is a Cookie?
A cookie is a small text file stored on your device (computer, tablet, smartphone) when you visit a website.
Types of cookies:
- Session cookies: Deleted when browser is closed
- Persistent cookies: Retained for a specified period
- Third-party cookies: Set by external services (Google, Facebook, etc.)
3. Cookies Used by CountHub
3.1 Essential Cookies (Consent Exempt)
CountHub uses only essential cookies for service operation, in accordance with Article 82 of the French Data Protection Act and Article 5(3) of the ePrivacy Directive.
These cookies do NOT require prior consent.
| Cookie Name | Purpose | Duration | Type |
|---|---|---|---|
| better-auth.session_token | User authentication | Session (deleted on logout) | Session |
| better-auth.csrf_token | CSRF attack protection | Session | Security |
| counthub_lang | Language preference storage | 1 year | Preference |
3.1.1 Session Cookie (better-auth.session_token)
Purpose: Maintain your login session
How it works:
- Created upon logging into your account
- Identifies you without requesting password on each page
- Automatically deleted on logout
Security features:
- 🔒 httpOnly: Inaccessible by JavaScript (XSS protection)
- 🔒 Secure: Transmitted only via HTTPS
- 🔒 SameSite=Strict: CSRF attack protection
Consent exemption: Art. 5(3) ePrivacy Directive - Cookie strictly necessary for service provision.
3.1.2 CSRF Cookie (better-auth.csrf_token)
Purpose: Protect against Cross-Site Request Forgery (CSRF) attacks
How it works:
- Generates unique token for each session
- Verifies requests originate from CountHub application
- Prevents malicious attacks from other sites
Consent exemption: Security cookie essential for secure service operation.
3.1.3 Language Cookie (counthub_lang)
Purpose: Remember your language preference
How it works:
- Stores chosen language code (fr, en, es, pt, de, it, nl, pl)
- Automatically applies preferred language on next visits
- Can be deleted without impact on service functionality
Consent exemption: Non-intrusive user preference cookie.
4. Cookies NOT Used by CountHub
4.1 No Advertising Tracking Cookies
❌ Google Analytics - Replaced by Plausible (cookie-free) ❌ Google Ads - Not used ❌ Facebook Pixel - Not used ❌ Retargeting cookies - Not used ❌ Affiliate cookies - Not used
4.2 No Social Media Cookies
❌ Facebook - No cookies ❌ Twitter/X - No cookies ❌ LinkedIn - No cookies ❌ Instagram - No cookies
4.3 No Third-Party Cookies
CountHub shares your data with NO third-party services using tracking cookies.
5. Cookie-Free Analytics (Plausible)
5.1 GDPR-Compliant Alternative
CountHub uses Plausible Analytics, a 100% cookie-free web analytics solution compliant with GDPR.
Hosting: Germany (European Union) Website: plausible.io
5.2 Data Collected (Anonymous)
Plausible collects fully anonymous data without any cookies:
✅ Pages visited - URL without sensitive parameters ✅ Referrer - Website you came from ✅ Country of origin - Based on IP address (without storing full IP) ✅ Browser and OS - Browser type and operating system ✅ Device type - Desktop, mobile, tablet
No personal data is stored.
5.3 GDPR Compliance
Plausible is GDPR-compliant without requiring consent:
- ✅ No cookies set
- ✅ No personal data collected
- ✅ No cross-site tracking
- ✅ No profiling
- ✅ Aggregated and anonymous data only
Legal reference: Article 5(3) ePrivacy Directive - Cookie-free analytics do not require consent.
6. No Cookie Banner Required
6.1 Why CountHub Doesn’t Display a Banner
In accordance with GDPR and ePrivacy Directive, CountHub does NOT require a cookie banner because:
- ✅ No tracking cookies - Only essential cookies are used
- ✅ Legal exemption - Essential cookies are exempt from consent (Art. 5(3) ePrivacy Directive)
- ✅ Cookie-free analytics - Plausible sets no cookies
- ✅ No third-party cookies - No third-party services using tracking cookies
CNIL reference: Cookies strictly necessary for website operation are exempt from consent collection (authentication, session, security cookies).
6.2 Comparison with Competitors
| Service | Cookies Used | Banner Required | GDPR Compliant |
|---|---|---|---|
| CountHub | Essential only (3) | ❌ No | ✅ Yes |
| US Competitors | 15-50 cookies (tracking, ads, social media) | ✅ Yes | ⚠️ Partial |
7. Cookie Management
7.1 How to Manage Cookies
You can manage or delete cookies via your browser settings.
Warning: Deleting essential cookies will prevent CountHub from functioning properly (you will be automatically logged out).
7.2 Browser Management
Google Chrome:
- Settings > Privacy and security > Cookies and other site data
- See all cookies and site data > Search “counthub.io”
- Delete cookies if desired
Firefox:
- Settings > Privacy and security > Cookies and site data
- Manage data > Search “counthub.io”
- Delete cookies if desired
Safari:
- Preferences > Privacy > Manage website data
- Search “counthub.io”
- Delete cookies if desired
Edge:
- Settings > Cookies and site permissions > Cookies and site data
- See all cookies and site data > Search “counthub.io”
- Delete cookies if desired
7.3 Total Cookie Blocking
You can block all cookies in your browser, BUT:
- ❌ You will not be able to log into CountHub
- ❌ Your language will not be remembered
- ❌ You will need to authenticate on each visit
Recommendation: Block only third-party cookies (tracking, advertising), not essential cookies.
8. Third-Party Service Cookies (Absent)
8.1 Stripe (Payments)
Stripe cookies: Stripe uses its own cookies during payment process (on checkout.stripe.com).
Important:
- These cookies are set by Stripe, not CountHub
- You are redirected to Stripe’s site for payment
- See Stripe’s Cookie Policy for more information
Stripe cookies (examples):
__stripe_sid- Payment session__stripe_mid- Machine identifier (fraud prevention)
Legal basis: Necessary for contract execution (secure payment).
8.2 No Other Third-Party Services
CountHub loads NO other scripts or third-party services setting cookies:
- ❌ No Google Analytics
- ❌ No Facebook Pixel
- ❌ No third-party ads
- ❌ No social media widgets
9. Retention Period
| Cookie | Duration | Deletion |
|---|---|---|
| Session (better-auth.session_token) | Until logout | Automatic on logout |
| CSRF (better-auth.csrf_token) | Session | Automatic on browser close |
| Language (counthub_lang) | 1 year | After 1 year of inactivity |
10. Your Rights
10.1 GDPR Rights
Although essential cookies are exempt from consent, you have the following rights:
- Right to information: This cookie policy informs you of cookie usage
- Right to deletion: You can delete cookies via your browser
- Right to object: You can block cookies (impact on service functionality)
10.2 Contact
For any questions regarding our use of cookies:
Data Protection Officer (DPO): Henrique VIDAL Email: contact[at]ethancg[dot]com Address: Ethan Consulting 10 allées des boutons d’or 78180 Montigny-le-Bretonneux France
11. Policy Modifications
We may update this Cookie Policy to reflect changes in our use of cookies.
In case of modification:
- ✅ “Last Updated” date will be updated
- ✅ Users will be informed by email if changes are substantial
- ✅ Current version is always accessible at www.counthub.io/legal/cookies/
12. Legal References
This cookie policy complies with:
- ✅ GDPR (Regulation EU 2016/679) - Articles 5, 6, 7
- ✅ ePrivacy Directive (2002/58/EC amended) - Article 5(3)
- ✅ French Data Protection Act - Article 82
- ✅ CNIL Recommendations (French Data Protection Authority)
CNIL Guidelines: https://www.cnil.fr/en/cookies-and-other-tracking-devices
Simple Summary
CountHub uses only 3 essential cookies:
- 🔒 Authentication session - To stay logged in
- 🔒 CSRF protection - For your security
- 🌍 Language preference - To remember your language
No tracking cookies, no advertising, no tracking.
Analytics: Plausible (cookie-free, GDPR-compliant)
No cookie banner required - All cookies are exempt from consent as strictly essential to the service.
Document created on January 18, 2026 Compliant with GDPR and ePrivacy Directive Last revision: January 18, 2026