Effective: May 28, 2026
Updated: July 18, 2026
Cookie Policy
This Cookie Policy explains how Tryall uses cookies, local storage, session storage, and similar technologies on tryall.ai.
1. Overview
Cookies and similar technologies help us operate the Services, keep accounts secure, remember user-requested preferences, process checkout, and measure product usage only where the user has given analytics consent.
With your marketing consent, we use Google Ads conversion measurement, which may set advertising cookies that link ad clicks to sign-ups and purchases. Without that consent, the Google tag runs in cookieless consent mode and does not set advertising cookies. PostHog heatmaps and session replay are disabled for the MVP and would require a separate future review before use.
2. Your Choices
- You can reject non-essential cookies and similar technologies.
- You can accept functional, analytics, and marketing purposes individually; session replay remains off for the MVP.
- We honor the Global Privacy Control (GPC) browser signal: with GPC enabled, “Accept all” leaves marketing off, and only the explicit marketing toggle can enable it.
- You can change or withdraw your choices later from Cookie preferences.
- You can also clear or block cookies and site data in your browser settings, but this may break sign-in, checkout, and user-requested preferences.
Manage your choices here: .
3. Strictly Necessary Technologies
These technologies are needed for authentication, security, checkout, legal preference storage, operational integrity, or delivery of a user-requested service. They can run before optional consent because the service would not work properly without them.
| Technology | Provider | Purpose | Storage | Retention | Consent |
|---|---|---|---|---|---|
| Privacy consent choiceActive | Tryall | Stores the visitor's cookie and privacy preferences without identifiers or content. | Cookietryall_privacy_consent | 180 days after the latest consent choice | Can run before optional consent |
| Clerk authentication cookiesActive | Clerk | Keeps signed-in users authenticated and protects account sessions. | CookieClerk-managed session and authentication cookies | Managed by Clerk session settings | Can run before optional consent |
| Platform gate sessionConditional | Tryall | Remembers temporary access to locked deployments and protects non-public environments. | Cookietryall-platform-gate | 12 hours by default when the deployment gate is enabled | Can run before optional consent |
| Authentication redirect session flagsActive | Tryall | Completes sign-in, sign-out, and OAuth redirect flows requested by the user. | Session storagetryall.auth.*.pending | Current browser session | Can run before optional consent |
| Stripe checkout and fraud preventionActive | Stripe | Processes user-requested payments, checkout sessions, fraud prevention, and billing records. | CookieStripe-managed checkout, payment, and fraud prevention cookies | Managed by Stripe for checkout, fraud prevention, and legal obligations | Can run before optional consent |
| Sentry operational telemetryActive | Sentry | Reports crashes, errors, and security-relevant diagnostics with minimized payloads. | Network telemetryProvider-managed or not device storage | Managed by Sentry project retention settings | Can run before optional consent |
| OpenRouter AI provider routingActive | OpenRouter and selected model providers | Routes prompts, attachments, and outputs to AI providers to deliver requested chat and generation features. | Network telemetryProvider-managed or not device storage | Controlled by Tryall configuration and downstream provider terms | Can run before optional consent |
| Tavily web searchConditional | Tavily | Runs user-requested web search and grounding when the Tavily search provider is enabled. | Network telemetryProvider-managed or not device storage | Managed by Tavily and Tryall search-result retention settings | Can run before optional consent |
| OpenAI native image editingConditional | OpenAI | Processes selected source images, masks, and edit prompts when native OpenAI mask editing is enabled. | Network telemetryProvider-managed or not device storage | Managed by OpenAI image API settings and Tryall generated image retention | Can run before optional consent |
| Vercel hosting and platform logsActive | Vercel | Hosts the application and processes operational logs needed for delivery, security, and debugging. | Server-side processingProvider-managed or not device storage | Managed by Vercel account and log retention settings | Can run before optional consent |
| Resend transactional emailConditional | Resend | Sends account, product, and service emails that users request or need for the service. | Network telemetryProvider-managed or not device storage | Managed by Resend delivery and suppression retention settings | Can run before optional consent |
| Supabase storage and database servicesConditional | Supabase | Stores requested attachments, project sources, support screenshots, and generated artifacts when those features are enabled. | Server-side processingProvider-managed or not device storage | Controlled by feature retention settings and Supabase storage policies | Can run before optional consent |
| Upstash Redis cache and rate limitsConditional | Upstash | Stores short-lived cache, quota, admission-control, and rate-limit data when enabled. | Server-side processingProvider-managed or not device storage | Controlled by cache TTLs and rate-limit windows | Can run before optional consent |
| Inngest background workflowsConditional | Inngest | Runs background jobs, retries, and asynchronous product workflows when enabled. | Server-side processingProvider-managed or not device storage | Controlled by workflow event and run retention settings | Can run before optional consent |
4. Functional Technologies
Functional technologies remember preferences or maintain requested product continuity. Some are treated as user-requested functional storage; entries marked as requiring prior consent stay blocked unless consent is granted or Legal/Product approves a narrower strictly necessary exemption.
| Technology | Provider | Purpose | Storage | Retention | Consent |
|---|---|---|---|---|---|
| Theme preference cookiesActive | Tryall | Remembers the display theme selected by the user. | Cookietryall_theme_preference, tryall_theme | 365 days after the latest theme change | Can run before optional consent |
| Theme preference local storageActive | Tryall | Keeps the user-requested theme stable across page loads. | Local storagetryall:theme-preference and legacy theme keys | Until the user changes theme, clears browser storage, or signs out on the device | Can run before optional consent |
| Guest chat session continuityActive | Tryall | Keeps guest chat continuity and prompt reminders on the same device. | Local storagetryall:guest-chat-session-id and scoped guest prompt keys | Until the browser storage is cleared | Requires prior consent |
| Model preference local storageActive | Tryall | Remembers model selections and model family preferences chosen by the user. | Local storagetryall:model-families, tryall:last-selected-model, tryall:last-model-by-family, tryall:active-models-by-family | Until the user changes model preferences or clears browser storage | Can run before optional consent |
| Pinned conversation preferencesActive | Tryall | Stores conversation pin choices made by the user on this device. | Local storagetryall:pinned-conversations:* | Until unpinned, signed out, or browser storage is cleared | Can run before optional consent |
| Conversation route session cacheActive | Tryall | Caches recent conversation route data in the browser session to speed up navigation. | Session storagetryall.cached-conversation-previews, tryall.cached-conversations, tryall.cached-conversation-route-errors | Current browser session; application TTLs are 1 to 5 minutes | Requires prior consent |
| Image edit handoffActive | Tryall | Temporarily passes a selected generated image into the editor at the user's request. | Session storagetryall:image-edit-handoff | Current browser session and removed after handoff is consumed | Can run before optional consent |
5. Analytics Technologies
Analytics technologies are optional. PostHog product analytics is initialized only after analytics consent, uses explicit reviewed events only, and does not use autocapture, heatmaps, pageview capture, pageleave capture, or session replay in the MVP.
With your analytics consent, we also use Google Analytics to measure visits, traffic sources, and funnel steps. The Google tag starts with analytics storage denied (Google Consent Mode): without your consent, Google receives only cookieless, consent-flagged measurement pings without account identifiers and sets no analytics cookies. Withdrawing analytics consent also expires the Google Analytics cookies already on your device.
| Technology | Provider | Purpose | Storage | Retention | Consent |
|---|---|---|---|---|---|
| PostHog product analyticsActive | PostHog | Measures product usage only after analytics consent and only for reviewed events. | Local storageph_* and PostHog persistence keys | Managed by PostHog project retention settings | Requires prior consent |
| PostHog heatmapsDisabled or future use | PostHog | Heatmaps are disabled for the MVP and require explicit future approval before use. | Network telemetryProvider-managed or not device storage | Disabled for MVP | Disabled unless a later policy and consent flow approve it |
| Google Analytics cookiesConditional | Distinguishes returning visitors for Google Analytics only after analytics consent is granted. | Cookie_ga and _ga_* Google Analytics client cookies | Up to 24 months; expired early on consent withdrawal | Requires prior consent | |
| Google Analytics measurementConditional | Measures site usage, traffic sources, and funnel steps. Before analytics consent, requests are cookieless, carry a consent-denied flag (Google Consent Mode), and include no account or checkout identifiers; analytics cookies are used only after consent. | Network telemetryProvider-managed or not device storage | Managed by Google Analytics property retention settings | Can run before optional consent |
6. Replay and Marketing
Session replay and heatmaps are not active in the MVP. Marketing technologies are limited to Google Ads conversion measurement. The Google tag starts with every consent signal denied (Google Consent Mode): before you grant marketing consent, Google receives only cookieless, consent-flagged measurement pings that carry no account or checkout identifiers, and sets no advertising cookies. Advertising cookies and conversion identifiers are used only after you enable the marketing purpose. You can withdraw that choice at any time from Cookie preferences; withdrawal also expires the Google advertising cookies already on your device.
| Technology | Provider | Purpose | Storage | Retention | Consent |
|---|---|---|---|---|---|
| PostHog session replayDisabled or future use | PostHog | Session replay is disabled for the MVP and would require separate explicit opt-in. | Network telemetryProvider-managed or not device storage | Disabled for MVP | Disabled unless a later policy and consent flow approve it |
| Technology | Provider | Purpose | Storage | Retention | Consent |
|---|---|---|---|---|---|
| Google Ads conversion cookiesConditional | Links Google ad clicks to sign-ups and purchases only after marketing consent is granted. | Cookie_gcl_* Google conversion-linker cookies | Up to 90 days from when the cookie is set; expired early on consent withdrawal | Requires prior consent | |
| Google Ads conversion measurementConditional | Measures whether ad campaigns lead to sign-ups and purchases. Before marketing consent, requests are cookieless, carry a consent-denied flag (Google Consent Mode), and include no account or checkout identifiers; advertising cookies and conversion identifiers are used only after consent. | Network telemetryProvider-managed or not device storage | Managed by Google Ads measurement retention settings | Can run before optional consent |
7. Updates and Contact
We may update this Cookie Policy when our storage, vendors, purposes, retention, or consent model changes. If a change affects optional purposes or adds a new optional vendor, we may ask you to make a new choice.
For privacy questions, contact privacy@tryall.ai. You can also read our Privacy Policy.