Cookie Policy
Version cookies-2026-08-01 — in effect from 1 August 2026.
A cookie is a small text file a website stores on your device. "Local storage" does the same job without a file that travels back to the server on every request. This policy covers both, and everything CatholicWorld stores on your device, whichever technique is used. It is the detailed version of the choices you make in the cookie banner and in section 5 of the Privacy Policy.
1. The three layers
Everything on your device falls into one of three layers. Only one of them is on by default.
Necessary
Keeps you signed in, protects forms, remembers your cookie choice, stores game progress and your leaderboard identity once a feature needs them, and enforces rate limits. These cannot be switched off — the service does not work without them, and the law does not require consent for them either.
Analytics
PostHog and our own extended analytics, with an identifier that spans sessions. Off by default; nothing in this layer loads before you say yes.
Marketing
Meta Pixel (Facebook and Instagram), TikTok Pixel, and X Pixel, used to measure our ad campaigns. Off by default, and switched off automatically if your browser sends a Global Privacy Control signal, whatever you chose before.
2. Every cookie and local-storage item
| Name | Type | Provider | Purpose | Retention | Layer |
|---|---|---|---|---|---|
cw_session | Cookie | CatholicWorld | Keeps you signed in. | 30 days | Necessary |
cw_device | Cookie | CatholicWorld | Recognizes a known device so we don't ask for a sign-in code every time. | 180 days | Necessary |
cw_csrf | Cookie | CatholicWorld | Protects forms against request forgery. | Session | Necessary |
cw_consent | Cookie | CatholicWorld | Remembers your cookie choice. | 12 months | Necessary |
__convexAuthJWT | Local storage | Convex | Authenticates your session. | Until you sign out | Necessary |
cw_progress_v1 | Local storage | CatholicWorld | Stores your progress as a guest, once you ask a game to save it. | Until you clear it | Necessary |
cw_player_token | Local storage | CatholicWorld | Identifies you on the leaderboard. Created only the first time you save progress or submit a result — never just by visiting. | 24 months since last use | Necessary |
cw_settings | Local storage | CatholicWorld | Remembers dark mode, clock style, and your chosen difficulty. | 12 months | Necessary |
ph_phc_* | Cookie | PostHog | Measures traffic and how people move through the site. | 12 months | Analytics |
_fbp | Cookie | Meta (Facebook, Instagram) | Measures the performance of our ad campaigns. | 90 days | Marketing |
_ttp | Cookie | TikTok | Measures the performance of our ad campaigns. | 13 months | Marketing |
personalization_id | Cookie | X | Measures the performance of our ad campaigns. | 24 months | Marketing |
3. What is not on this list, and why
| Tool | Why it is not listed |
|---|---|
| Sentry | Does not set a cookie with our configuration, and session recording is permanently disabled. |
| Vercel Web Analytics | Works without cookies and without a per-visitor identifier. |
| Stripe and Easytools | Any cookie they set exists only on their own checkout pages, under their own privacy policies. |
| Browser fingerprinting | We do not use any fingerprinting technique. |
4. The leaderboard identity: when it is created
cw_player_token does not exist until you ask a game for a feature that needs it: saving your progress, or submitting a result to the leaderboard. It is never created just by visiting or playing a puzzle. It is not used to track you across other websites.