Einfy, Türkiye operates the Einfy service. This document applies to public visitors, account users and organizations using the platform, subject to mandatory law.
1. What this policy covers
This policy explains the cookies and similar session technologies used on Einfy. Cookies are small values stored by a browser and returned with later requests. The current core application uses them for authentication, security, workspace continuity and referral attribution rather than third-party advertising.
2. Essential session cookie
When you visit or sign in, the server creates a session identifier. It is used to maintain authentication, CSRF protection, workspace context, temporary notices and OAuth state. The application configures the session cookie as HTTP-only, uses strict session mode and marks it secure when served through HTTPS. Blocking it prevents account sign-in and protected forms from working.
3. Referral attribution
If you arrive through an approved referral URL, Einfy may set einfy_ref. It records the referral code, not the contents of your account, and is configured as HTTP-only with SameSite=Lax. The standard attribution period is 30 days, although an administrator may configure a different period within the product’s supported range.
4. Authentication redirects
Google Sign-In uses short-lived state, nonce and PKCE values in the server session while you move between Einfy and Google. Einfy does not place the Google password in a cookie and does not persist the Google access token for the sign-in-only flow.
5. External services
Einfy pages may load assets or link to services operated by other companies. Their websites and account pages may use their own cookies under their policies. Optional integrations are activated by authorized users and are not the same as advertising trackers on Einfy’s public pages.
6. Your controls
You can delete or block cookies through your browser. Deleting the session cookie signs you out. Blocking all cookies may prevent registration, sign-in, OAuth callbacks and workspace forms from working. Referral attribution can be removed by deleting the einfy_ref cookie before an account is created.
7. Changes and contact
The policy will be updated if the application introduces materially different cookie uses. Questions can be sent to Einfy Support Center.