1. About this Policy
This Cookie Policy explains how AiVante, operated under the WholeStack AI brand, uses cookies and similar browser storage. Cookies are small values a website stores in a browser. Similar technologies include local storage, which keeps a preference on the device without creating a traditional cookie.
We use these technologies to operate and secure AiVante, remember requested preferences, and—with consent where required—measure product use. We do not use them to sell personal information or serve third-party behavioral advertising.
2. Strictly necessary cookies
These cookies are required for requested service, authentication, or security and cannot be disabled through the consent banner.
- Session cookies verify a signed-in user, tenant, and authorized session and expire according to the session configuration or when cleared on sign-out.
- OAuth and single-sign-on cookies temporarily preserve anti-forgery state and code-verification values during a sign-in flow.
- Security and assisted-session cookies may preserve a narrowly scoped, authorized administrative state. A cookie alone does not grant that authority; server-side authorization is rechecked.
3. Preference storage
Preference cookies may remember light or dark mode and workspace appearance choices. Local storage may remember the cookie-consent choice, whether a sidebar is collapsed, and whether the short landing-page intro has played during the current browser session.
Preference storage is used to honor a choice the user made. It is not used to determine insurance, healthcare, eligibility, or financial outcomes.
4. Optional analytics
If a production analytics key is configured, AiVante may use PostHog to measure page visits, feature use, and application errors. The analytics library is not initialized unless the visitor accepts non-essential measurement. Rejecting non-essential cookies leaves authentication and requested service functions available.
AiVante does not intentionally place medical records, policy numbers, government identifiers, financial account details, or public AI chat text into analytics events.
5. Duration
Some security and sign-in values last only for a browser session or short authentication flow. A signed application session may persist for the configured session period. Theme and interface preferences may remain for up to one year or until cleared. Consent and local interface choices remain until changed, cleared, or the relevant session ends.
6. Managing a choice
Use the button below to reopen the consent choice. Browser settings can also block or delete cookies and local storage. Blocking strictly necessary cookies may prevent sign-in, security controls, saved preferences, or other requested features from working.
If optional analytics had already been accepted, changing the choice stops new optional analytics capture in the current app and prevents analytics initialization on the next load.
7. Browser signals and third parties
Because AiVante does not use third-party behavioral advertising, it does not currently respond differently to a browser’s Global Privacy Control or Do Not Track signal for advertising. Applicable opt-out rights may still be exercised by contacting us.
A third-party service reached through AiVante may use its own necessary technologies under its own policy. This Policy covers only storage controlled through AiVante.
8. Changes and contact
We may update this Policy when browser storage, analytics, or law changes. The effective date above identifies the current version.
Questions may be sent to support@wholestack.ai with the subject line “AiVante cookies.”
