Legal

Cookie Policy

Effective August 16, 2026 · Last updated: August 16, 2026

This page explains the cookies and similar technologies HUSH uses and how you can control them. We do not use advertising or cross-site tracking cookies.

1. What are cookies?

Cookies are small data files a website stores in your browser. They can be first-party (set by HUSH) or third-party (set by an integrated service). HUSH also uses browser localStorage, IndexedDB, and a service worker cache for the same purposes described below, since HUSH is an installable app (PWA).

2. What we use

Strictly necessary

  • Session — keeps instructors and students signed in. Stored by our authentication provider in your browser.
  • Security — short-lived values used to protect sign-in and state-changing requests from cross-site abuse.
  • Payments — set by Stripe on checkout and billing-portal pages for fraud prevention and session integrity.
  • Offline app shell — the service worker caches interface assets so the installed app loads quickly and survives a flaky connection. It does not cache other people's messages for you.

Preferences

  • Interface state such as your last-selected tab, time range on Live Questions, notification-prompt dismissals, and whether you have installed or dismissed the app install banner.

Analytics

  • Privacy-conscious product analytics to understand feature usage — for example that a lesson was opened. No question text, chat messages, direct messages, or uploaded files are sent to analytics.

We do not use advertising cookies, and we do not sell or share this data for cross-context behavioral advertising.

3. Push notifications

If you enable notifications, your browser creates a push subscription tied to your device. This is not a cookie, but we mention it here for completeness: you can revoke it at any time in your browser or device settings, or by turning notifications off in HUSH.

4. How to control cookies

You can clear or block cookies and site data in your browser settings, and uninstalling the app clears its cached assets. Blocking strictly-necessary storage will prevent you from signing in, joining a class, or submitting questions. Where required by law (for example in the EU/UK), we show a consent banner and load non-essential analytics only after you accept; declining leaves the necessary items above in place.

5. Contact

Questions about this policy? Send us a message through our contact form.

Questions about this document?

Send us a message through our contact form and we'll reply to you directly.