Last updated 29 May 2026·v1.2
Cookies on Carerealm
This page lists the cookies and similar technologies Carerealm uses, who sets them, what they are used for, and how long they last. It also lets you change your consent choices at any time. We do not run remarketing or audience-targeted ads, and we do not sell cookie data to data brokers. We do use Google Ads conversion tracking on the marketing site to measure how well our ads work — opt-in via its own dedicated toggle (separate from the analytics toggle), and documented in the table further down.
At a glance
- Three buckets: Strictly necessary (always on), Analytics & insights (opt-in), and Advertising & conversion tracking (opt-in, separate toggle).
- Necessary cookies keep you signed in, keep payments secure and protect against bots. The app can't run without them.
- Analytics is off by default. If you accept, we use Google Analytics 4, WebRec session recording and the Intercom support messenger — all with anonymisation and input masking.
- Advertising is off by default and toggled independently of analytics. If you accept, Google Ads attribution cookies (
_gcl_au,_gac_*) let us measure which adverts brought in real signups. We don't run remarketing or build advertising audiences. - Change your mind at any time using the toggles below. Your choice applies across
www.carerealm.comandapp.carerealm.com.
Your preferences
Change your mind any time. Your choice is stored on this device and applies across www.carerealm.com and app.carerealm.com.
What's a cookie, briefly
A cookie is a small text file a website stores in your browser so it can recognise you on the next request. The same idea covers similar techniques like localStorage and session-only browser storage — we treat them the same way and list them together below where it matters.
Cookies on Carerealm are either first-party (set by Carerealm itself) or third-party (set by a service we embed, such as Stripe or Intercom). The "Set by" column in the tables below tells you which is which.
Strictly necessary
Required for Carerealm to work. We don't ask for consent because the service can't operate without them and they're not used for tracking.
| Name | Set by | Purpose | Retention |
|---|---|---|---|
| carerealmSessionId | Carerealm | Keeps you signed in. | 30 days |
| cr_csrf | Carerealm | Protects forms against cross-site request forgery. | Session |
| cr_consent_v1 | Carerealm | Remembers your cookie preferences from this page. | 6 months |
| realm_primary_color | Carerealm | Remembers your organisation's brand colour so the app paints correctly before sign-in (localStorage, not a cookie). | Until cleared |
| __stripe_mid / __stripe_sid | Stripe | Required for secure payments and fraud prevention on the billing pages. | 1 year / 30 mins |
| __cf_bm / cf_clearance | Cloudflare | Bot management and edge protection on requests to carerealm.com. | 30 mins / 1 year |
Analytics & product insights (opt-in)
Only loaded if you choose "Accept all" or toggle Analytics on. The data is anonymised and used to understand which features get used and where the product trips people up.
| Provider | Purpose | Retention |
|---|---|---|
| Google Analytics 4 (via Google Tag Manager) Cookies: _ga, _ga_* | Anonymised page and feature usage. IP anonymisation enabled. No demographic or interest data is collected. | Up to 2 years |
| WebRec Anonymous session identifier | Session recording for bug fixing and UX work. All input fields are masked — passwords, free-text and personal data never appear in recordings. | 90 days |
| Intercom Cookies: intercom-id-*, intercom-session-* | Powers the in-page support messenger. Tied to your account when signed in so conversations follow you across devices. | 9 months |
Advertising & conversion tracking (opt-in)
Independent toggle from analytics. Only loaded if you turn it on via the cookie banner or in your account settings. We don't run remarketing or build advertising audiences against you — these cookies exist only so we can attribute signups back to the adverts that brought them in.
| Provider | Purpose | Retention |
|---|---|---|
| Google Ads conversion tracking (via Google Tag Manager) Cookies: _gcl_au, _gac_* (only after an ad click) | Attributes signups and trials back to the Google Ads click that brought you in, so we can tell which adverts are worth running. We send aggregate conversion events to Google Ads — no contact details and no cross-site retargeting. | Up to 90 days |
Other third parties on this site
These are loaded by the marketing site but don't set cookies-for-tracking. They're included here for transparency.
| Provider | When it loads | What it does |
|---|---|---|
| Vercel Analytics & Speed Insights | All pages | First-party aggregate page views and Core Web Vitals. Cookie-free, no cross-site tracking. |
| Cloudflare Stream | Pages with product videos (an iframe to customer-*.cloudflarestream.com) | Serves the embedded product videos. May set a small bot-management cookie on its own domain when you start a video. |
| Adobe Fonts (Typekit) | All pages | Delivers our display typeface from use.typekit.net. Adobe may set a small first-party cookie for cache efficiency. |
| Google reCAPTCHA | Forgot-password and sign-up forms only | Bot detection to stop credential-stuffing attacks. Google sets cookies on its own domains to score whether the request looks human. |
| Firebase Authentication | Sign-in, sign-up, password reset flows | Verifies your credentials and returns the token Carerealm uses to keep you signed in. |
How to clear cookies
The fastest path is the toggle panel at the top of this page — flipping Analytics off removes the relevant cookies on next page load. If you sign out of Carerealm, the strictly-necessary session cookies are removed automatically. To wipe your saved cookie preference entirely, clear site data for carerealm.com in your browser and the banner will show again next visit.
Browser-level controls
Most browsers also let you control cookies globally. Bear in mind that blocking strictly-necessary cookies will stop you signing in — these instructions are for completeness, not a recommendation:
- Chrome — Settings → Privacy & security → Cookies and other site data.
- Safari — Settings → Privacy → Manage Website Data.
- Firefox — Settings → Privacy & Security → Cookies and Site Data.
- Edge — Settings → Cookies and site permissions → Manage and delete cookies and site data.
Most browsers also support a "Do Not Track" header. We respect it: when we see it, we treat your Analytics preference as declined unless you've explicitly accepted on this page.
More on data handling
Cookies are just one input into the wider story of what we hold and why. The full picture is in our privacy policy.
Take this with you
Save a PDF copy for your records or share it with your team — same content as this page, branded and dated.