Legal — Cookie Policy
Cookie Policy
Version 1.0 · Effective: 2026-05-19 · Last updated: 2026-05-19 · Document id: regunav-cookies-v1
This Cookie Policy explains how Regunav Inc. ("Regunav") uses cookies and similar storage technologies on regunav.com, codeconstitution.com, and compliancetoarchitecture.com (the "Sites"). It supplements our Privacy Policy.
1. What is a cookie
A cookie is a small text file stored on your device by your browser. We also use related technologies — localStorage, sessionStorage, and HTTP-only secure tokens — in similar ways. Where this policy says "cookie", the same rules apply to those equivalents.
2. Categories we use
2.1 Strictly necessary
Required to operate the Sites and authenticated console. These cannot be turned off without breaking the Service.
__rn_sess— session identifier · 1st-party · Session · Auth state.__rn_csrf— CSRF token · 1st-party · Session · Anti-forgery.__cf_bm— Cloudflare Bot Management · 1st-party (Cloudflare) · 30 min · Bot mitigation.
2.2 Preferences
Remember your choices (theme, locale, cookie banner state). Off by default for new visitors until the banner is acknowledged.
__rn_prefs— UI preferences · 1st-party · 12 months.__rn_cookie_consent— your banner choice · 1st-party · 12 months.
2.3 Analytics (optional, consent-gated)
Aggregate, privacy-preserving analytics. We do not use third-party advertising or cross-context behavioral tracking. EU/UK visitors must opt in via the consent banner before any analytics cookie is set.
_pa_id— privacy-preserving analytics (Plausible / Fathom-class, no fingerprint, no cross-site graph) · 1st-party · 12 months.
3. Cookies we do NOT use
- No advertising cookies.
- No cross-site tracking pixels.
- No Facebook Pixel, Google Ads tag, LinkedIn Insight Tag, TikTok Pixel, etc.
- No device fingerprinting beyond standard fraud-prevention signals.
4. How to control cookies
You can:
- change your consent any time via the "Cookie settings" link in the footer;
- set Global Privacy Control (GPC) in your browser — we honor GPC as a do-not-sell / do-not-share signal under CPRA;
- block or delete cookies in your browser settings (note: this may break the authenticated console).
5. International users
For EU/EEA and UK visitors, optional cookies require prior opt-in consent (ePrivacy Directive Art. 5(3) as implemented). For Swiss visitors, the revFADP transparency requirements apply. For US visitors, we follow CPRA opt-out signaling.
6. Changes
Material changes are notified 30 days in advance via the Sites and to authenticated users.
7. Contact
Privacy: privacy@regunav.com · Full Privacy Policy: /legal/privacy.
Regunav Inc. · 2026.