Cookie Policy
Short version: Homjo sets no advertising cookies and no analytics cookies. Our hosting provider (Vercel) counts page views for us without any cookie or browser storage, so it is not in the list below — there is nothing of it on your device. What we do store in your browser is listed below — completely.
What Homjo stores in your browser
Homjo itself uses browser storage (localStorage/sessionStorage), not cookies. Everything here is first-party and stays until you clear it or sign out:
| What | Purpose | Type |
|---|---|---|
| Sign-in session | Keeps you signed in (Supabase auth token) | Strictly necessary |
| Session record | Holds the id of your current usage session and a page counter, so activity can be grouped for security review (tab-only) | Strictly necessary |
| Theme | Remembers light/dark mode | Preference |
| Region and language | Remembers your chosen city and UI language, and caches the list of areas so it does not reload every visit | Preference |
| Suggestion cache | Caches cross-pillar suggestions so they load instantly | Functional |
| Promo frequency cap | Remembers which in-app announcements you've seen, so we don't repeat them | Functional |
| Dismissals and archive | Remembers cards you dismissed, panels you collapsed, and conversations you archived on this device | Functional |
| Coupon in progress | Holds a coupon code across the sign-in redirect | Functional |
| First-touch attribution | If you arrived via a marketing link, holds the campaign tags for the current tab; saved only if you sign up | Functional (tab-only) |
| Reload guard | Remembers that the app just reloaded itself after an update, so it does not loop (tab-only) | Strictly necessary |
Third parties that may set their own cookies
A few services we embed run in your browser and may set cookies on their own domains, not on homjo.com:
- Cloudflare Turnstile — the anti-bot check on forms. It may set a Cloudflare cookie as part of telling humans from bots (strictly necessary for keeping spam out).
- Stripe — only if you open a payment or identity-verification page, which is hosted by Stripe.
Map tiles (OpenFreeMap, and Esri for the satellite view) and a small number of image hosts are loaded from their servers, which means they receive your IP address, but we don't use them to track you. Two more run in your browser: when you type an address or area into the location picker or an area guide, that text and your IP address go to OpenStreetMap's Nominatim search service so it can find the place; and an event page may show a static map image from Mapbox, which receives your IP address when it loads. Address look-ups when you post a listing run on our servers, not in your browser. The complete list of who receives what is on the Sub-processors page.
Error monitoring
We use Sentry to catch errors. When you are signed in, error reports include your account email and user id so we can investigate problems you actually hit. A session recording is kept only when an error actually occurs, with all text and all input fields masked — we do not record healthy sessions. In our app code we do not send IP addresses to Sentry, and we aim to have IP storage disabled on Sentry's side too. This uses browser storage, not cookies.
Managing this
Because there are no optional advertising or analytics cookies, there is no consent banner and nothing to opt out of beyond your browser's normal controls: clearing site data removes everything above (and signs you out). If we ever introduce non-essential cookies, we will add a consent choice before they are set and update this page.
Questions: privacy@homjo.com.
Version 1.4 · Effective 20 August 2026 · Updated 4 September 2026 · privacy@homjo.com