Cookie Policy
How 코무토 주식회사 (Kommuto Co., Ltd.) uses cookies and similar technologies on trybloks.com and in the Bloks application. Read it alongside our Privacy Policy.
LAST UPDATED: SEPTEMBER 14, 2026
1. What Are Cookies?
Cookies are small text files placed on your device when you visit a website. They let a site remember your actions and preferences over time. We also use similar technologies such as local storage and session storage (which store data in your browser) and software development kits (SDKs) — we refer to all of these collectively as "cookies" in this policy.
Cookies may be:
- First-party — set by Bloks.
- Third-party — set by our service providers (e.g., Google Analytics, PostHog).
- Session — deleted when you close your browser.
- Persistent — remain until they expire or you delete them.
2. How We Use Cookies
We use cookies to:
- Keep you signed in and secure your session (essential).
- Remember your preferences, such as theme and accountability intensity.
- Understand how the Service is used so we can improve it (analytics).
- Diagnose errors and keep the Service reliable.
We do not use cookies for advertising or cross-site behavioral tracking.
3. Categories of Cookies We Use
| Category | Purpose | Consent required? |
|---|---|---|
| Strictly necessary | Sign-in, session security, core functionality. The Service cannot work without these. | No (exempt) |
| Preferences | Remember your settings (e.g., theme, intensity, saved views). | Yes, where required by law |
| Analytics | Measure usage and performance to improve the Service (Google Analytics, PostHog). | Yes |
| Diagnostics | Detect and fix errors and crashes (Sentry). | Yes, where it is not strictly necessary |
| Marketing / Advertising | Not used. | — |
4. Specific Cookies and Technologies
STRICTLY NECESSARY
| Name / Key | Provider | Purpose | Type | Duration |
|---|---|---|---|---|
| sb-<project>-auth-token | Supabase | Authentication / keeps you signed in | Cookie or local storage | Session / until logout |
| CSRF / security token | Bloks | Protects against cross-site request forgery | Cookie | Session |
PREFERENCES (LOCAL STORAGE)
| Key | Provider | Purpose | Duration |
|---|---|---|---|
| Theme, intensity, saved views (e.g. stats range) | Bloks | Remember your in-app settings | Until you clear it |
ANALYTICS
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| _ga | Google Analytics | Distinguishes users | Up to 2 years |
| _ga_<container-id> | Google Analytics | Persists session state | Up to 2 years |
| ph_<key>_posthog | PostHog | Product analytics, distinguishes users | Up to 1 year |
DIAGNOSTICS
| Name | Provider | Purpose | Duration |
|---|---|---|---|
| Sentry identifiers | Sentry | Associates error reports with a session | Session / short-lived |
5. Third-Party Cookies
Some cookies are set by our service providers, who process the data under their own privacy policies:
- Google Analytics (Google) — usage analytics.
- PostHog — product analytics.
- Sentry — error monitoring.
We do not control third-party cookies. Please review each provider's privacy and cookie policies for details on their practices.
6. Your Choices and How to Manage Cookies
CONSENT BANNER
When required by law, we ask for your consent before setting non-essential (analytics, diagnostics, and preference) cookies. Strictly necessary cookies are always active. You can accept, reject non-essential, or manage preferences, and you can change your choice at any time via the "Cookie settings" / "Your Privacy Choices" link in the site footer.
BROWSER CONTROLS
Most browsers let you block or delete cookies through their settings. Note that blocking strictly necessary cookies may stop parts of the Service (like signing in) from working.
OPT-OUTS
- Google Analytics — you can install Google's browser opt-out add-on, or reject analytics in our banner.
- PostHog / Sentry — reject the relevant category in our banner.
7. "Do Not Track" and Global Privacy Control
Some browsers offer a "Do Not Track" (DNT) signal or a Global Privacy Control (GPC) signal. Because we do not sell or share personal information for advertising, these signals have limited effect, but we honor legally required opt-out signals where applicable.
8. Consent Under GDPR, CCPA, and Korea's PIPA
- GDPR / ePrivacy (EEA/UK) — non-essential cookies require prior, freely given consent; "reject" must be as easy as "accept."
- CCPA/CPRA (California) — we do not sell or share personal information; a "Your Privacy Choices" link is provided as a matter of good practice.
- PIPA (Korea) — where cookies process personal information beyond what is strictly necessary, we obtain consent and allow withdrawal at any time.
9. Changes to This Cookie Policy
We may update this policy from time to time. We will post the updated version here and revise the "Last Updated" date. Material changes may also be signaled through the consent banner.
10. Contact
- Company: 코무토 주식회사 (Kommuto Co., Ltd.)
- Email: contact@trybloks.com
- Address: 38-12, Gingorang-ro 22-gil, Gwangjin-gu, Seoul, Republic of Korea
BLOKS