Cookies and local storage
Version: 11 September 2026. Footexlab uses essential settings to operate the site and optional analytics only with consent. Refusing does not limit reading or paid subscription access. Change your choice using Cookie settings at the bottom of the page.
Google Analytics
Google Analytics 4 measures visits after you accept analytics cookies. Google receives usage data; _ga cookies may be retained for up to 180 days. Advertising features are disabled. You can withdraw consent in Cookie settings. Meta Pixel is not enabled.
What is stored
- footexlab_consent — selected categories, consent date and version. Essential cookie, 180 days. HttpOnly, SameSite=Lax; Secure over HTTPS.
- footexlab_google_state — essential protection against forged Google sign-in requests. Expires after 10 minutes and is deleted after sign-in. Google opens only after clicking its button and has its own privacy policy.
- footexlab_telegram_state — essential protection against forged Telegram sign-in requests. Expires after 10 minutes and is deleted after sign-in. Telegram opens only after clicking its button. Profile ID and name are requested, without a phone number or permission for a bot to message the user.
- pitchlab_session — essential sign-in session. Duration depends on the login mode and Remember me setting.
- pitchlab_language — selected language in localStorage until deleted by the user.
- pitchlab_visitor — optional visit analytics ID, 30 days after the last update.
- pitchlab-reader — optional article counter ID in localStorage; deleted on refusal or withdrawal of consent.
- footexlab-consent-sync — time of preference changes for tab synchronization, without a user ID.
Optional analytics
With consent, visited paths, referrers, campaign tags, language, device type, reading time and scroll depth may be stored. Records may be linked to signed-in accounts. Article counts use reader ID and viewing day. Refusing stops further collection but does not automatically delete previously stored server records.
Sign-in and registration protection
Authentication forms use Cloudflare Turnstile against automated requests. The widget loads on the authentication page and sends browser and network technical data to Cloudflare for security checks. This is separate from optional analytics. Verification tokens are single-use and valid for up to five minutes. Learn more: Cloudflare privacy policy.
Refusal and external services
Analytics is off until you choose. We also disable it on a Global Privacy Control (GPC) signal. Advertising cookies are not used. External links follow the destination site policies. External images may send your IP address and request technical data to providers; analytics consent does not control image delivery.
Your choice is stored on this device for 180 days. A settings version change asks for consent again. Browser storage blocking may cause the banner to reappear.
Privacy policy