The short version: Topline Studio uses two pieces of browser storage, both strictly needed for the site to work. No analytics tags. No advertising pixels. Nothing that follows you anywhere else. The longer version is below.
Last updated · 28 May 2026Total cookies · 1 essentialTracking pixels · 0
01What we use, in full
Here's everything Topline Studio stores in your browser. Both items are classed as "strictly necessary" under PECR / the ICO's cookie guidance — they don't require consent, but disclosing them clearly is the right thing to do.
topline_sess Essential
HTTP-only signed session cookie. Only ever set when an admin (i.e. me, Ben) logs into the dashboard at /admin. It contains an HMAC-signed token — no personal data is stored inside the cookie itself. It exists so I don't have to re-enter my password on every page load.
Type · 1st-party HTTP cookieExpires · 7 daysSet on · /admin only
topline_session_id Essential
A random anonymous ID stored in your browser's localStorage the first time you visit. We use it for one thing only: if you run a free audit on the /audit page and then submit a lead on the /start page later, this ID lets us link the two so we can reference your audit score in our reply. It doesn't contain any identifying info, and we can't read it from any other website.
Type · localStorageExpires · Persists until clearedTied to · This domain only
topline_consent Essential
A small localStorage flag remembering whether you've already dismissed the cookie banner. Without it, the banner would re-appear on every page you visit, which would be incredibly annoying. Possible values: accepted or essential_only.
Type · localStorageExpires · Persists until clearedTied to · This domain only
02What we don't use
For the avoidance of doubt, the following are not on the public Topline Studio site:
Google Analytics — no GA4, no Universal Analytics, no GTM
Advertising pixels — no Meta Pixel, no Google Ads conversion tags, no LinkedIn Insight, no TikTok pixel
Retargeting cookies — we don't follow you to other websites
Fingerprinting — no canvas fingerprints, no audio context fingerprints, no battery API
Heatmap tools — no Hotjar, no FullStory, no Microsoft Clarity
Third-party chat widgets on public pages
The site does send a small anonymous beacon (assets/beacon.js) to our own server with the URL you visited and the referrer header, but this is server-side logging, not a cookie. It exists so I can tell which marketing pages are bringing visitors. See the Privacy Policy for more detail.
03Third-party cookies
None set on our public pages. We deliberately don't embed third-party widgets, video players, social-media buttons or chat scripts on marketing pages because they all bring their own cookies along. The only third-party content the site loads is:
Google Fonts (Fraunces, Inter Tight, JetBrains Mono) — Google's privacy FAQ confirms that no cookies are set when loading fonts from fonts.googleapis.com.
04How to control storage
All modern browsers let you block or delete cookies and clear local storage. Here are the official guides for the big ones:
You can also reset Topline Studio's banner choice using the button below, which clears the topline_consent flag.
Reset cookie banner choice
Clears the topline_consent flag. Next time you load the site you'll see the banner again.
05Changes
If I ever add a new cookie or analytics tool — for example if a future client project requires a Stripe payment widget — I'll update this page and bump the "last updated" date at the top.
06Questions
Anything unclear? Email ben1.edw@gmail.com. I'd genuinely rather over-explain than under-explain on this stuff.