AuditLume · Cookies

Cookie and similar-technology policy

A cautious inventory of browser technologies and the Cloudflare layer.

Owner and contact

Service and methodology

AuditLume detects automatable signals in a public web response and its initial HTML, then prioritises improvements. Signals include declared language, alternative text, the relationship between fields and labels, H1 elements, viewport, title, description, a visible privacy link, known tracker patterns and selected HTTP headers.

Verified application state

Current AuditLume code does not create first-party application cookies or use localStorage, sessionStorage, IndexedDB or Cache Storage. It does not integrate advertising analytics, marketing pixels or profile-based personalisation. The analysed URL remains temporarily in page memory so it can be associated with the waiting-list form.

Cloudflare technical layer

AuditLume is published through Cloudflare. Responses may carry technical network and error-reporting headers, and Cloudflare may apply necessary security or challenge measures depending on traffic and configuration. Those measures can vary and may use technical identifiers in some scenarios. This policy therefore avoids an absolute promise about every identifier that might occur during a security incident.

Necessary versus analytics and advertising

Strictly technical or necessary technologies deliver and protect the service. AuditLume currently enables no analytics, advertising or profiling category in its code. If non-necessary categories are introduced later, this inventory will be updated and the appropriate choice requested before activation where required.

Browser controls

You can review, block or remove identifiers in browser settings. Blocking strictly necessary measures may prevent access during a security challenge. Report an observed identifier with page, date, browser and apparent purpose, without sending complete values that may be sensitive.

Important limitations

The result is partial guidance. It is not legal advice, GDPR, WCAG or EAA certification, a human audit, a complete accessibility test, a professional security audit, or a guarantee that risks are absent. The presence or absence of a technical signal needs contextual interpretation and manual review.

Contact and exercise of rights

For questions about these terms, privacy or the service, write to the stated email and identify your request sufficiently. Do not send passwords, complete identity documents or unnecessary sensitive information.

Translations

Translations are provided to aid understanding and are informational; they are not presented as professionally legally reviewed. If interpretation is uncertain, consult the Spanish version and obtain independent advice.