Website information · Updated September 17, 2026

Cookies & browser storage

This page explains browser storage and optional analytics on Chyt.ai. It supplements our privacy information; your website choices are separate from agreement to account terms or consent to share contact details.

Your choices

Optional analytics starts off. Accept or reject it in the notice, or change your choice below. Closing the notice leaves analytics off when you have not accepted. We remember your choice for 180 days in this browser on this origin; it is not shared with other devices or workspace subdomains. Invalid, expired or unreadable choices do not enable analytics.

Turning off an already loaded analytics script refreshes the page. Finish unsaved work first. Cloudflare may send its final page measurement while the page closes; the refreshed page does not load the analytics script.

If the browser prevents saving a withdrawal, we try to remove the old permission. If that also fails, a tab-session denial and an explicit analytics-off recovery link keep this browsing flow off. The previous permission may remain in storage and other tabs or a separately opened address may still use it. Clear this site's browser storage to remove it, or enable storage access and save a rejection here. Clearing all site storage also signs you out. We do not claim your withdrawal was remembered when the browser refused it.

Optional website analytics

With permission, Cloudflare Web Analytics measures visits and page performance on reviewed public pages of chyt.ai and www.chyt.ai. It reports information such as page paths, referrers, device/browser categories and performance timings. Cloudflare describes this beacon as using no analytics cookies or local storage and no cross-site individual tracking. We do not use it for advertising.

The browser downloads the beacon from static.cloudflareinsights.com and sends measurements to cloudflareinsights.com. We load it manually only after a saved choice permits it. It is not enabled on account, dashboard, invitation, demo or chatbot routes. Some public pages added later may also have analytics off until reviewed.

This choice controls the optional browser beacon. It does not disable ordinary hosting/security request logs or Cloudflare's network-level traffic statistics used to operate and protect the site. See Cloudflare's collection information and Web Analytics FAQ.

Storage for services you request

Cookies are sent with matching web requests; local storage stays in the browser until code reads it or it is cleared. Session storage is limited to a browser tab. We use these mechanisms for the following functions, independently of optional analytics.

Purpose / examplesStorage and duration
Your analytics choice: chyt_site_analytics_consentOrigin-only local storage. Version, yes/no choice and decision/expiry times; 180 days. No account, IP address or user-agent field. A failed withdrawal may use chyt_analytics_denied_in_tab in session storage to keep that tab off.
Workspace sign-in: access_token, refresh_token; chat sign-in: chyt_end_user_token_*Local storage used only for requested sign-in. Server expiry and revocation control access; sign-out removes workspace tokens. Browser entries can remain until sign-out, expiry handling or clearing.
Google sign-in and workspace handoff: __Host-chyt_oauth, __Host-chyt_handoffSecure, HttpOnly cookies on the API host, lasting up to 10 minutes and 60 seconds respectively. Integration OAuth state uses chyt_connection_oauth in tab session storage, validated for 10 minutes.
Workspace routing and site preview: chyt_last_org, chyt_last_email, chyt_site_accessCookies lasting up to 30 days. The org value is a routing hint, not proof of sign-in; the email hint is set by email login. Preview access applies where that gate is enabled.
Requested demo: demo_token, demo_chatbot_id, demo_otp_pendingLocal storage supports an in-progress demo and email verification. Pending OTP details are restored for up to 10 minutes; demo access uses the server's token expiry. Entries are cleared by demo exit/reset or browser clearing.
Chat security and visitor limits: chyt:visitor:*A signed, chatbot- and origin-scoped continuity token in local storage, normally valid for 30 days. It does not grant workspace or transcript access. Rejecting analytics does not erase it or reset message limits.
Requested display preferences: theme, chyt_theme, chyt_* language/sound, sidebar_stateTheme/chat preferences use local storage until changed or cleared. Sidebar preference uses a 7-day cookie in workspace views. Chat engagement and cached workspace branding use tab session storage.
Loading recovery: chyt_chunk_reloadedTab session storage prevents a repeated reload loop, normally cleared after 15 seconds of a successful load.

Chat, security and connected services

The site assistant loads only when you open it. Opening chat can fetch its configuration; sending a message can create a session, run a Cloudflare Turnstile security check and store the visitor continuity token. Chat messages and verification/contact details are handled as described in the privacy information. Analytics is not required to ask for help.

Google sign-in and payment-provider scripts load for those requested functions. Their providers may process data needed for sign-in or checkout. This notice does not replace the choices and notices on customer-operated websites that embed a Chyt chatbot.

Browser controls

You can clear browser storage yourself, but clearing sign-in or security storage can interrupt sessions and requested services. Rejecting analytics here does not sign you out. Contact [email protected] with questions about this notice.