Cookie Policy

Last updated: October 03, 2026

1. What Are Cookies

Cookies are small text files placed on your device by a website. They are widely used to make sites work, to keep you signed in, and to understand usage. OpenSaaS uses a deliberately minimal set — we do not run third-party advertising or cross-site tracking cookies.

2. Cookies and Identifiers We Use

  • Essential authentication cookie — Strictly necessary. Stores your session or authentication state so you stay signed in while navigating OpenSaaS. Without it the dashboard and settings pages cannot function. Duration: session or up to 30 days when you select "Remember me".
  • First-party visitor identifier — mv_vid — Purpose: to recognise returning visitors on a tracked website and associate repeated visits into a single visitor record. It is set only on sites where you have installed the OpenSaaS tracking script, is first-party, contains no personal information by itself, and is not shared with third parties. Duration: 13 months, or the retention period configured for the site.
  • localStorage access token — Purpose: keeps you authenticated when you use the OpenSaaS dashboard. The access_token and refresh_token values are stored in your browser's localStorage (not a cookie) and are removed when you log out or clear your browser data.

3. Data Collected Through the Tracking Script

The tracking script collects the visitor's IP address, page URL, referrer, user agent, and time on page. IP addresses are used to resolve a company and organisation and may be used to derive a business identity. See the Privacy Policy for the full description of how visitor data is used.

4. Retention

  • Authentication cookie: until you log out or it expires.
  • mv_vid: up to 13 months, or shorter if the site owner configures a shorter retention period.
  • Visitor records held by the site owner: 90 days by default, as configured on their plan.

5. How to Opt Out or Delete Cookies

You can delete or block cookies and site data at any time. Note that disabling essential cookies means you will not be able to use the authenticated parts of the service.

  • Most browsers: clear site data for this domain via Settings → Privacy / Cookies → Clear browsing data.
  • Alternatively, set the mv_vid cookie to expire in the browser, or use your browser's "Block third-party cookies" / "Do Not Track" settings.
  • To delete the identifiers we hold about you, contact us at support@maverickintelligence.com.

6. Do Not Track

We respect Do Not Track (DNT) and Global Privacy Control (GPC) signals. When a supported browser sends either signal, the OpenSaaS tracking script does not set the mv_vid identifier and no behavioural profile is built for that visit. The service remains fully usable.

7. Contact

For any questions about cookies or this policy, contact us at support@maverickintelligence.com.