Cookie Policy
On this page
This Cookie Policy explains what cookies MustServer Cloud, Inc. ("MustServer", "we", "us") sets when you visit our website or use the member panel, and why. It supplements our Privacy Policy.
1. What are cookies
Cookies are small text files a website stores on your device to remember information between requests — for example, that you're signed in. We also refer to comparable technologies (such as browser local storage) as "cookies" in this policy where relevant.
2. Cookies we use
We keep cookie use to the minimum required to operate the website and member panel. We do not use advertising or cross-site tracking cookies — see Section 4.
| Cookie | Purpose | Duration |
|---|---|---|
mustserver_session |
Strictly necessary. Keeps you signed in and remembers your session state as you navigate the site and member panel. | Session / up to 2 hours of inactivity |
XSRF-TOKEN |
Strictly necessary. Protects forms (login, checkout, support tickets, etc.) against cross-site request forgery. | Session / up to 2 hours of inactivity |
remember_web_... |
Functional. Only set if you tick "Remember me" at login, so you don't have to sign in again on that device. | Up to 5 years, or until you log out |
We don't set a separate cookie to remember that you've dismissed the cookie notice — that choice is kept in your browser's local storage instead, since a cookie for that alone would be circular.
3. Third-party cookies
A small number of pages embed third-party services that may set their own cookies, only when that feature is active on your account or the page you're viewing:
- Cloudflare Turnstile — a privacy-focused bot-check widget shown on our login, registration, and contact forms to block automated abuse. Cloudflare may set cookies needed to complete the check; see Cloudflare's Privacy Policy.
- Google Sign-In — if you choose to sign in or connect your account with Google, Google sets cookies during that authentication flow; see Google's Privacy Policy.
- Stripe — our payment processor sets cookies on the checkout page it hosts to prevent fraud and complete your payment; see Stripe's Privacy Policy.
These services only run on the specific pages/actions described above, not site-wide.
4. No advertising or tracking cookies
We do not run advertising pixels, cross-site tracking, or third-party analytics cookies on mustserver.com. If that ever changes, we'll update this policy and the cookie notice shown on the site before any new non-essential cookie is set.
5. Managing cookies
Most browsers let you view, delete, and block cookies through their settings. Because the session and CSRF cookies described in Section 2 are strictly necessary, blocking them will prevent you from signing in or submitting forms on our site. You can also revoke Google's access to your account at any time from your Google Account permissions page.
6. Changes to this policy
We may update this Cookie Policy from time to time, for example if we introduce a new integration that sets a cookie. Material changes will be reflected here with an updated effective date.
7. Contact us
Questions about this Cookie Policy can be sent to privacy@mustserver.com.