We use only strictly-necessary, first-party storage and cookies. There are no third-party advertising or analytics trackers on this platform — given what visiting an adult site reveals, we treat your presence here as nobody else's business.
Your sign-in is held in the three cookies below, not in page-readable storage, so a malicious script injected into a page cannot copy it. The other items are ordinary local storage.
| Key | Type | Purpose | Lifetime |
|---|---|---|---|
| fl_at | cookie (HttpOnly, SameSite=Strict, Secure) | proves who you are on each request, so you stay signed in. Browser scripts cannot read it | short-lived; renewed automatically; removed at logout |
| fl_rt | cookie (HttpOnly, SameSite=Strict, Secure) | lets us renew your sign-in without asking for your password again. Only ever sent to our sign-in endpoints; browser scripts cannot read it | up to 30 days; removed at logout |
| fl_uid | cookie (SameSite=Strict, Secure) | an identifier, not a credential: lets the page know whether you are signed in and as whom, so it can open instantly | up to 30 days; removed at logout |
| fl_prefs, fl_theme | localStorage | your settings: theme, view, filters | until cleared |
| fl_convs, fl_notifs, fl_txns | localStorage | local cache of your conversations, notifications and wallet history so the app opens instantly | until cleared / logout |
| Age-gate acknowledgement | localStorage | remembers that this browser passed the adults-only gate | until cleared |
Because the local cache includes conversation previews, anyone with access to your unlocked browser profile could see it. On a shared device, use a private/incognito window or log out — logout clears the local cache.
You can clear everything at any time via your browser's site-data controls; the app keeps working and re-fetches from the server after you log in again. Because the only cookies we set are strictly necessary to keep you signed in, there is no consent banner — there is nothing to opt out of.