Effective date: 2026-08-11 · Version 1.0
The Backstory Analytics tracking script — the part that runs on our customers' websites and identifies visiting companies — does not use cookies, localStorage, sessionStorage, or any other browser storage. There is nothing for a cookie-consent banner to disclose for that script, and none is required.
Our own dashboard (https://app.trybackstory.com, where our customers log in) uses a small number of strictly necessary cookies, described in Section 3.
Instead of writing an identifier to your browser, the tracking script sends page-view events to our server. The server computes a short-lived, salted session hash from the truncated IP address, user agent, a daily-rotating salt, and an 8-hour time window — entirely server-side. This hash is deleted automatically after 8 hours (via TTL) and cannot be read back from the visitor's browser. See our Privacy Policy and Legitimate Interest Assessment for the full technical and legal detail.
Because no information is stored on or read from the visitor's device ("terminal equipment"), this processing falls outside Article 5(3) of the ePrivacy Directive (the EU rule that requires cookie consent) and equivalent cookie-consent rules elsewhere — no consent banner is required for the tracking script itself.
These are strictly-necessary cookies under ePrivacy/GDPR (no consent banner required for them either), used only to operate the dashboard you are logged into as our customer — never on the websites our tracking script runs on.
We do not embed third-party advertising or tracking cookies in the dashboard or in the tracking script. Payment processing (when you subscribe) may involve our payment processor's own cookies on their hosted checkout page — see our Sub-processor list and that provider's own cookie notice.
Email support@trybackstory.com.