Protocol15 uses essential cookies, local storage, session storage, and similar technologies to operate the service, including authentication, security, redirect recovery, language preferences, participant session continuity, and live-session functionality.
On public pages, optional PostHog analytics is off by default. The PostHog browser library is loaded and sends individual analytics events only after you explicitly accept analytics. It uses random browser and session identifiers, cookies, and browser storage; these are not linked to your host or participant account.
PostHog uses its EU region. Automatic click capture, session recording, heatmaps, advertising tracking, full referrer URLs, raw URL query strings, and fragments are disabled. We do not create identified person profiles.
After consent, we collect the referring website domain, public campaign labels (utm_source, utm_medium, and utm_campaign), browser language, and clicks on Start Free Demo buttons. Only validated campaign labels are retained, not the full query string. Referral and campaign context is kept in memory during the current page document and cleared on withdrawal. Demo-button clicks measure interest, not completed signups or started sessions.
For consented public-page visits, PostHog uses your IP address to estimate location, such as country, region, and city. This is approximate network location, not GPS location. The IP address is discarded before the analytics event is stored.
Usage reporting clarification (September 10, 2026): we also count public pageviews using our own service. Basic counting is on by default to improve the site. The counter stores only a fixed page category and daily total for 90 days; it does not store visitor identifiers, IP addresses, or referrers. Only completed daily page-category totals are sent from our server to PostHog (EU), where they may be retained for up to one year. No individual visit time, visitor identifier, IP address, browser details, referral data, or campaign tags are included in this export. Basic counts do not measure unique visitors or sessions. You can turn off Basic page counts in Cookie preferences; Reject analytics turns off both basic counts and optional browser analytics. Counts already aggregated cannot be associated with a visitor or removed individually. Hosting providers may separately retain request logs. We retain daily sign-in counts by host for 90 days. Authorized operators can view aggregate account, sign-in, exercise, participation, and order counts from service records.
You can reopen Cookie preferences in the public-page footer to change your choice. Rejecting or withdrawing analytics consent stops new optional browser captures and removes its stored analytics identity. Accessible legacy Google Analytics cookies are removed during the transition. Blocking essential browser storage can break host login, participant join, or live session behavior.
Protocol15 disables optional analytics on authentication, account, host, participant-join, live-game, presentation, and Operations routes. Analytics events are limited to an approved parameter list that excludes room codes, account and participant identifiers, and user-provided names.