ORIN
Sign in

Cookie & Local Storage Policy

Effective Jul 28, 2026

This page is short because the honest answer is short: ORIN stores four things in your browser, all of them necessary to run the product, and none of them for advertising or analytics. Every item is listed below and every one can be verified in your own devtools.

01The short version

ORIN sets no advertising cookies and no cross-site trackers. We use one analytics tool, Microsoft Clarity, and it does not run until you have said yes to it.

Everything else we store in your browser is strictly necessary to deliver a service you explicitly asked for — keeping you signed in, remembering your settings, and holding your own records. That is the exemption in Article 5(3) of the ePrivacy Directive and in regulation 6(4) of the UK Privacy and Electronic Communications Regulations, and it is why we do not ask permission for those.

Clarity does not qualify for that exemption, so we ask. Until you accept, the Clarity script is not loaded, no request is made to Microsoft, and no analytics cookie exists. Declining costs you nothing: no feature depends on it, and we do not ask again.

You can verify every item below yourself: open your browser’s developer tools, look at Application → Storage, and compare. A policy you can check beats one you have to believe.

02Everything we store, item by item

NameTypePurposeLifetime
orin.authLocal storageYour signed-in session token. Without it you would be signed out on every page load.Until you sign out or the session expires.
orin.sessionLocal storageThe device-local session used when ORIN runs without an account server. Only present in that mode.Until you sign out.
orin (IndexedDB)IndexedDB databaseYour analyses, journal, watchlist, alerts and settings when running without an account, plus a cache of price candles in all modes. The candle cache exists so a repeated analysis does not re-spend a market-data allowance.Until you delete your data in Settings or clear browser storage.
Interface preferencesLocal storageSmall display choices — density, last timeframe, dismissed prompts — so the product does not reset itself every visit.Until cleared.
orin.consent.analyticsLocal storageYour answer to the analytics question. We have to remember a "no" in order to honour it, so this one exists whichever way you answered.Until cleared.
_clck, _clskCookies (Microsoft Clarity)Analytics. Only set once you accept. _clck holds a per-browser identifier so repeat visits join up; _clsk ties the pages of one visit together._clck up to one year, _clsk one day. Both removed when you turn analytics off.

Cookies specifically. Our authentication provider may set a cookie to maintain your session where local storage is unavailable. It is a first-party, strictly necessary session cookie carrying no advertising identifier.

Server logs. Separately from browser storage, our hosting and database providers record request logs containing your IP address and user agent, as any web server does. Those are covered by the Privacy Policy, not by this page.

03Microsoft Clarity, and what it actually sees

Clarity is a session-analytics product from Microsoft. With your agreement it records how you interact with this site — clicks, scrolling, mouse movement, page transitions, screen size, browser and approximate location derived from your IP address — and reconstructs it as a replay and as aggregate heatmaps.

Clarity is not loaded at all until you accept. Declining means the script is never fetched, so no request reaches Microsoft and no analytics cookie is created.

What it does not see. The entire signed-in desk is marked in our markup as masked, so Clarity records that a region was there and not what it said. It does not receive your journal, your positions, your account size, your risk settings or the substance of your analyses. Those live in your account and are covered by the Privacy Policy. Clarity records the shape of your interaction with the interface, not the trading record inside it.

Withdrawing. Settings → Data & privacy → Product analytics turns it off, deletes the two cookies and reloads the page so the script stops running. Withdrawal is as easy as consent, which Article 7(3) of the GDPR requires. You can also block it in your browser, and we honour Global Privacy Control signals where your browser sends one.

Microsoft as a recipient. Clarity data is processed by Microsoft Corporation in the United States under Standard Contractual Clauses. Microsoft is listed on our sub-processor register, and Microsoft states that Clarity data is not sold and is not used for advertising targeting.

04What we deliberately do not use

  • No Google Analytics.
  • No advertising or retargeting pixels — no Meta pixel, no Google Ads tag, no LinkedIn Insight, none.
  • No cross-site tracking, no fingerprinting, no data brokers, no identity resolution.
  • No selling or sharing of personal information, as those terms are defined in California law.
  • No A/B testing tools that profile you.
  • No third-party script that loads before you have agreed to it.

This list used to include analytics of every kind, and it no longer does. We added Microsoft Clarity because we could not otherwise see where the product confuses people. It is the only such tool, it is consent-gated, and it is described in full below rather than folded into a sentence about improving your experience.

05Clearing or blocking it

You can clear everything above at any time from your browser’s settings, and you can block storage for this site entirely.

If you clear browser storage while ORIN is running without an account, your analyses and journal are deleted permanently. That data exists only on your device — there is no server copy to restore from. Export from Settings first.

With an account, your records live in our database and clearing browser storage only signs you out. This is the main practical reason to create one.

Blocking storage for this site entirely will prevent sign-in from working, because there is nowhere to keep the session.

06Changes

If we ever introduce a tool that is not strictly necessary, we will update this page and implement a proper consent mechanism before that tool ships — not after — and we will remove the claim in the Privacy Policy that we set no trackers at the same time. Questions to privacy@tryorin.xyz.

Questions about this document go to legal@tryorin.xyz. The other documents in this set are listed here.