What we set
linkmesh-consent-v2 — localStorage, always
A single localStorage entry storing your cookie-banner decision (granted or denied). Not a cookie — never sent over the network. Stays in your browser until you clear site data. Clearing it re-shows the banner on your next visit.
linkmesh-consent-record — localStorage, after you choose
A second localStorage entry recording when you chose, which version of this page you were shown, and whether the choice came from the banner, from withdrawing, or from your browser's Global Privacy Control signal. We keep it so we can show that consent was actually given, as data-protection law requires. It contains no identifier and is never sent over the network — it stays in your browser, and you can delete it with your site data.
Global Privacy Control — we answer it for you
If your browser sends the Global Privacy Control signal, we treat it as a Decline and the banner never appears — you have already told us, so we do not ask again. The signal also overrides an earlier Accept, on the grounds that it is the more recent instruction. While it is switched on, accepting is not possible; switch it off if you want to change that.
Google Analytics cookies — only after Accept
If you click Accept on the banner, Google's tag sets the following first-party cookies:
| Cookie | Purpose | Expiry |
|---|---|---|
_ga | Distinguishes browser sessions for Analytics | 2 years |
_ga_F97CQD8TV5 | GA4 container session state | 2 years |
These cookies are first-party (set on linkmesh.io itself), not third-party trackers. They contain a randomly-generated client ID, not your identity.
If you click Decline, none of these cookies are set and the Google Analytics tag stays under Consent Mode v2 in denied state: no analytics event is sent to Google at all — not page views, not downloads, not install clicks. The only measurement that continues is PostHog's cookieless count, described below.
PostHog storage — cookies only after Accept
We also use PostHog (EU Cloud, hosted in the EU) for product analytics and session replay. If you click Accept, PostHog sets the following first-party cookie. If you click Decline, PostHog may use cookieless aggregate measurement and does not set this cookie:
| Cookie | Purpose | Expiry |
|---|---|---|
ph_<project>_posthog | Stores a randomly-generated device ID and session state for PostHog analytics | 1 year |
First-party (set on linkmesh.io), containing a random device ID, not your identity. Until you choose, PostHog stores nothing in your browser — no cookie, no local or session storage. After Decline, the same is true.
What that cookieless measurement counts, before you choose and after a Decline: page views, and the actions you deliberately take — starting an install, copying the install command, downloading a binary or a document, submitting a form, and following a link to our documentation. Each is counted with the page address, the language and the button's label, and nothing else: no cookie, no stored identifier, no profile, and no campaign, referrer or first-touch information, which is added only after you accept. We also switch off PostHog's location lookup, so no country or city is derived from your IP address until you do. PostHog counts visitors with a daily server-side hash it deletes each day, so the same person is not recognisable from one day to the next.