Overview
Porvio does not set advertising cookies or include marketing pixels. It uses essential cookies for authentication, the public Ask Porvio question allowance, and a signed-out browser’s human-support conversation, plus temporary browser storage for setup and the optional important-alert reminder. Cloudflare’s hosting and security services process network and request metadata. Porvio does not include a third-party product-analytics client and requires production configuration to keep Cloudflare’s optional browser analytics and Real User Monitoring injection disabled. The repository does not verify that dashboard setting. Porvio does not use hosting telemetry to create an advertising profile.
Essential cookies
Porvio keeps an authenticated session in the__Secure-porvio.session_token Secure, HttpOnly cookie with SameSite=Lax. Browsers send this essential cookie to Porvio, but page scripts cannot read its value. The session can last up to 30 days and its server record can refresh after 24 hours of activity. It may persist across tabs and browser restarts until it expires, is revoked, or you sign out.
When Ask Porvio opens on a public page, Porvio sets the__Host-porvio-luna Secure, HttpOnly, SameSite=Strict session cookie. It contains a signed random reference, not chat text or identity information. It has no persistent browser expiry, and Porvio rejects it after 24 hours. The related server record contains only an anonymous hash, count, and timing metadata.
When a signed-out visitor starts a human-support conversation, Porvio sets the __Host-porvio-support Secure, HttpOnly, SameSite=Strict cookie. It contains only a high-entropy random capability, not the visitor’s email or message text, and expires after 30 days. Page scripts cannot read it, and Porvio does not store the raw capability. Porvio stores its SHA-256 hash, expiry and revocation state, the identifier of the one support conversation it can open, and limited security metadata for rate limiting and safe request retries. Signed-in support access is bound to the verified account instead of this guest capability.
You should still sign out after using a shared device. If you used support without signing in, clear Porvio’s site data so the next person cannot reopen that browser’s conversation. Keep the browser and device protected.
Setup and preference storage
When an authorized team invitation is opened, Porvio temporarily stores the single-use invitation reference in per-tab session storage. It does not automatically carry into another tab. If Porvio finds a legacy invitation reference in local storage, it moves it once into the current per-tab store and removes the legacy copy. Unlike the authentication cookie, this temporary reference can be read by Porvio’s page scripts. Porvio removes it after acceptance and ignores browser invitation data after 14 days. The server separately enforces invitation expiry and treats an accepted token as single-use.
If a referral link is opened, Porvio temporarily keeps its short referral code in per-tab session storage so email verification and workspace setup can continue. The code is removed after successful setup and contains no patient information.
If you choose Google sign-in, the authorization request uses a single-use state reference stored in Porvio’s server-side database, not a Porvio OAuth-state cookie or local-storage item. Google may use its own cookies under its policies while you are on Google’s service.
If you dismiss the important-alert setup reminder, Porvio stores only a local timestamp that hides the reminder for 30 days. It contains no account, message, task, patient, or clinical content.
Device permissions
Microphone access is a browser permission, not a cookie. Porvio asks for it only when an authorized user starts a recording. A browser may remember that permission according to its own settings.
Porvio asks for notification permission only after you choose to turn on important alerts. The browser then keeps a push subscription, and Porvio stores its endpoint and encryption keys so the browser or operating-system push service can deliver encrypted, generic alerts. Those alerts say only that a teammate sent a message or an assignment was received; their push payload contains no patient identifiers, names, message text, task text, or clinical record details. Porvio does not request camera or location access for the current workflow.
Hosting and technical logs
Cloudflare and network providers can process IP address, request time, browser or device characteristics, request destination, error, and security signals to deliver and protect the Service. These records are controlled by provider configuration and contract rather than a Porvio advertising cookie. Review the Privacy Notice for the provider list and international-processing disclosure.
Your choices
You can clear Porvio’s cookies and site data in your browser. Clearing the authentication cookie signs you out. Clearing local or session storage removes a pending invitation or referral reference and may interrupt setup; it also resets a dismissed alert reminder. Clearing Ask Porvio’s cookie ends that browser session. Clearing the guest support cookie removes that browser’s access to its saved conversation but does not delete the support record or email copies. Blocking essential cookies prevents authentication, Ask Porvio’s question allowance, and signed-out support continuity from working; blocking local or session storage may prevent setup from continuing in the current tab.
You can turn important alerts off from Porvio’s Inbox or from your browser or operating-system site settings. Signing out also attempts to unsubscribe that browser. Browser and push providers control how long permission and their technical delivery records remain.
Porvio does not use advertising or marketing storage, so there is no marketing-cookie preference panel. Porvio will update this Notice and provide any legally required choices before materially expanding tracking.
Questions and updates
Questions can be sent to support@porvio.app. This Notice will be updated if the storage technologies or their purposes change.