Cookie Statement
Last Updated: July 21, 2026
This Cookie Statement explains how Kikinda LLC ("Kikinda," "42min.us," "we," "us," "our") uses cookies and similar technologies on our website at 42min.us and the 42min Service. It supplements our Privacy Policy.
1. What Are Cookies?
Cookies are small text files placed on your device by websites you visit. They are widely used to make websites work, improve performance, remember preferences, and provide analytics. Similar technologies include local storage, session storage, pixels, web beacons, and SDKs. In this Statement, "Cookies" refers to all of these.
2. Categories of Cookies We Use
We organize Cookies into four categories:
- Strictly Necessary — required for the Service to operate and cannot be turned off (login session, security, theme preference). These do not require consent.
- Functional — remember choices you make to enhance your experience (language, time-zone, preferences). May require consent in some jurisdictions.
- Analytics — help us understand how the Service is used, identify problems, and improve features. Requires consent in the EEA, UK, Switzerland, and similar jurisdictions.
- Marketing / Advertising — used to measure the effectiveness of our marketing and to deliver relevant content. Requires consent.
3. Your Choices
When you first visit our website from a jurisdiction that requires consent, we display a Cookie consent banner. You can:
- Accept all Cookies;
- Reject non-essential Cookies;
- Customize preferences by category.
You may change your preferences at any time via the Cookie banner or the Cookie settings link in our website footer (when available). You can also control Cookies through your browser settings — most browsers let you block, delete, or be notified about Cookies.
We honor Global Privacy Control (GPC) signals as a request to opt out of non-essential Cookies and any "sale" or "sharing" of personal information.
4. Cookies We Use
The tables below describe the Cookies we use. We update this list as the Service changes. If you find a discrepancy, email plus@42min.us so we can correct it.
Note for readers: specific cookie names below may change between releases. Authoritative names are visible in your browser's developer tools (Application → Cookies / Local Storage) when you visit our domains. The categories and purposes described here remain stable.
A. Strictly Necessary
| Cookie / Technology | Purpose | Type | Duration |
|---|---|---|---|
Session identifier (e.g., 42min_session)
|
Maintain your authenticated session | First-party HTTP cookie | Session / up to 30 days |
| Authentication tokens (HTTP-only cookie or local storage) | Authenticate API requests | First-party | Up to 30 days |
| CSRF protection token | Protect against cross-site request forgery | First-party | Session |
theme (local storage)
|
Remember light/dark theme preference | Local storage | Persistent until cleared |
B. Functional
| Cookie / Technology | Purpose | Type | Duration |
|---|---|---|---|
| Language / locale preference | Display the Service in your preferred language | First-party | 12 months |
| Time-zone preference | Render times in your zone | First-party | 12 months |
| Cookie consent record | Remember your Cookie preferences | First-party | 12 months |
C. Analytics
| Cookie / Technology | Purpose | Provider | Duration |
|---|---|---|---|
ph_<project-key>_posthog
|
Stores a pseudonymous analytics identifier and session state so we can count unique users, measure feature usage, and analyze funnels. Status: active. | PostHog, Inc. (PostHog US Cloud) | 12 months |
ph_<project-key>_window_id, related
session keys (session / local storage)
|
Groups events belonging to the same browsing session and browser tab. Status: active. | PostHog, Inc. (PostHog US Cloud) | Session (window ID) / up to 12 months |
| Session replay — PostHog recorder script plus the session identifier above | Records a reconstruction of your interaction with the 42min interface — mouse movement, clicks, scrolling, navigation and console errors — so we can diagnose bugs and usability problems. Input masking is enabled: passwords, form fields and text you type are suppressed before the recording leaves your browser. Status: active. | PostHog, Inc. (PostHog US Cloud) | Recordings deleted after 30 days |
Status and consent: PostHog product analytics and session replay are active on the Service. Data is processed by PostHog, Inc. on PostHog US Cloud (United States) as our processor, under written data-protection terms including the EU Standard Contractual Clauses. We are currently implementing a consent banner that will block these non-essential technologies in the EEA, UK, Switzerland and other jurisdictions where prior consent is required; until it is live, you can prevent this collection using your browser's cookie controls or tracking protection, by sending a Global Privacy Control (GPC) signal, which we honor, or by emailing plus@42min.us to be opted out. Google Analytics is not used on the Service.
More about session replay. Replay is a form of behavioral monitoring, so we are explicit about its limits. We record only pages of the 42min website and Service — never other sites or applications. Sensitive inputs are masked at capture time and never reach PostHog's servers. We do not use replay to monitor the productivity or conduct of individual employees, we do not sell or share recordings, and we do not combine them with advertising data. Recordings are automatically deleted after 30 days. You may object to replay at any time, or request deletion of recordings associated with you, by emailing plus@42min.us — see Section 12 of our Privacy Policy for your full rights.
D. Marketing / Advertising
| Cookie / Technology | Purpose | Provider | Duration |
|---|---|---|---|
| Conversion / retargeting pixels | Measure ad-campaign effectiveness; retarget visitors | TBD (e.g., Google Ads, Meta, LinkedIn, Reddit) | TBD |
Status: No marketing Cookies are active as of the Last Updated date. We may add them in the future and will update this Statement and request consent before placing them in jurisdictions where consent is required.
E. Embedded Content / Connected Services
When you connect to or interact with third-party services through 42min (e.g., Google Calendar, Google Meet, Microsoft 365 / Outlook, Pipedrive), those services may set their own Cookies under their own privacy and cookie policies. We do not control those Cookies.
5. Do Not Track and Global Privacy Control
Our response to "Do Not Track" browser signals may vary depending on context and legal requirements. We honor Global Privacy Control (GPC) signals where applicable.
6. Changes to This Statement
We may update this Cookie Statement to reflect changes in our practices or applicable law. Material changes will be communicated via the Service. The "Last Updated" date indicates the date of the most recent revision.
7. Contact
For questions about Cookies, email plus@42min.us.