This Cookie Policy explains which cookies and browser storage keys Luminar uses on the website and app. For general privacy practices, see our Privacy Policy.
1. Essential cookies
Luminar currently uses only cookies that are strictly necessary to deliver the service securely. Without these cookies, your session cannot be maintained safely.
- luminar_refresh_token Used to refresh your authentication session. Set with HttpOnly, Secure (in production), and SameSite=Lax; sent only to Luminar API authentication endpoints. Duration: approximately 60 days or until you sign out. Provider: Luminar (first party).
2. Browser storage (localStorage / sessionStorage)
These are not cookies technically, but they store preferences and session state on your device. They may contain personal data (e.g. an access token).
- luminar_access_token: Active session access token (JWT).
- luminar_header_hint: Avatar and display-name preview in the header.
- luminar_locale: Your language preference (tr / en).
- luminar-reader-theme / luminar-reader-font-size: Reader theme and font size preferences.
- luminar-editor-theme: Writing studio editor theme.
- luminar-draft-*: Local backups of unpublished chapter drafts.
- luminar-announcement-dismiss-* / luminar-beta-announcement-dismissed-v1: Dismissed announcement and beta info bars.
- luminar-cookie-notice-dismissed-v1: Dismissal of the cookie information strip.
- luminar-billing-autosync-at: Timestamp for in-session subscription sync.
- luminar-ilhami-selected-book-id: Selected book in the İlhami AI assistant.
- Session storage (sessionStorage): İlhami greeting state and AI widget conversation IDs — cleared when the browser tab is closed.
3. Third-party cookies
If you choose Sign in with Google or Apple, those providers may set their own cookies during authentication. Luminar does not control those cookies; they are governed by each provider's privacy policy.
Luminar does not currently use third-party advertising, behavioral analytics, or marketing tracking cookies.
4. Error reporting (Sentry)
When error monitoring is enabled in production (Sentry DSN configured), limited technical context (e.g. browser type, stack trace) may be sent to Sentry to diagnose unexpected errors. This is not the same as using analytics or advertising cookies.
5. Consent and your choices
Essential session cookies are required for secure access to your account; disabling them ends your session.
You can delete cookies and site data or clear localStorage in your browser settings. Language, reader, and editor preferences will reset.
Because we do not use advertising or analytics cookies, we do not show a separate marketing cookie consent panel. If analytics tools are added later, this policy and the information strip will be updated.
6. Updates
This Cookie Policy may be updated. The current text is published on this page; the date is revised when material changes are made.