Legal

Cookie Notice

Last updated: June 2026

This Cookie Notice explains what cookies are, how Landed Lab uses them on our website and platform, and what choices you have.

This notice should be read alongside our Privacy Notice at landedlab.com/privacy.

What are cookies?

Cookies are small text files placed on your device when you visit a website or use an online platform. They help services work efficiently, remember preferences, and provide information to site owners.

Some cookies are set by us directly. Others are set by third-party services we use to operate the platform (such as our hosting provider or email marketing tool). These are known as third-party cookies.

Cookies can be:

  • Session cookies, which aredeleted automatically when you close your browser.
  • Persistent cookies, whichremain on your device for a set period or until you delete them.

The legal position

Cookie use in the UK is governed by Privacy and Electronic Communications Regulations (PECR), the UK GDPR, and the Data (Use and Access) Act 2025 (DUAA).

Under the DUAA, certain low-risk cookies do not require prior consent. These include:

  • Cookies that are strictly necessary for the platform to function.
  • Cookies used solely to collect aggregate, anonymised statistical information about how a service is used, where the data is not used to identify individuals.

All other cookies, particularly those used for marketing, tracking, or personalisation,require your consent before being set.

We have categorised our cookies below, with a clear indication of which require consent and which do not.

Category 1 - Strictly necessary cookies

These cookies are essential for the platform to function. Without them, you would not be able to log in, navigate the platform, or use core features. They do not require your consent.

  • __session / auth-token (Supabase, HTTP): maintains your authenticated login session (session, no consent required).
  • sb-access-token (Supabase, HTTP): stores your access token to authenticate API requests (session, no consent required).
  • sb-refresh-token (Supabase, HTTP): refreshes your session to keep you logged in (persistent, up to 1 year, no consent required).
  • __vercel_live_feedback (Vercel, HTTP): Used by Vercel to manage platform deployment and integrity checks (session, no consent required).
  • _GRECAPTCHA (Google, if used, HTTP): bot detection and fraud prevention during sign-up or login (session or up to 6 months, no consent required).

Category 2 - Functional Cookies

These cookies remember your choices and preferences to improve your experience. They are not strictly necessary but make the platform work better for you. Under the DUAA, preference cookies that are low-risk and directly serve the user may be set without prior consent.

  • landing_preferences (Landed Lab, HTTP): Remembers your display preferences (e.g. theme or language) (1 year, no consent required).
  • cookie_consent (Landed Lab, HTTP): Records your cookie consent choices so you are not asked again (1 year, no consent required).

Category 3 - Analytics Cookies

We use Vercel Analytics to understand how the platform is used. This tool collects only aggregated, anonymised data. It does not track individuals, store personal data, or use fingerprinting. Under updated ICO guidance and the DUAA, this type of analytics is exempt from the consent requirement.

  • _va (Vercel Analytics, HTTP): We use Vercel Analytics to understand how the platform is used. This tool collects only aggregated, anonymised data. It does not track individuals, store personal data, or use fingerprinting. Under updated ICO guidance and the DUAA, this type of analytics is exempt from the consent requirement.
  • _vt (Vercel Analytics, HTTP): Distinguishes between new and returning visitors for aggregate reporting only. Not used to track individuals.

Category 4 - Consent-required analytics and replay cookies

These cookies are set only after you accept analytics cookies in the banner.

They are used to understand user journeys, conversion funnels, and product experience issues; they are not set by default.

  • _ga / _ga_* (Google Analytics 4, HTTP): measures page views, events, and conversion funnels (up to 2 years, consent required).
  • _clck / _clsk (Microsoft Clarity, HTTP): session replay and behaviour analytics for UX improvement (up to 1 year, consent required).
  • CLID / ANONCHK / MR / MUID (Microsoft Clarity and Microsoft domains, HTTP): supports replay integrity and visit/session identification (varies by browser and region, consent required).

Category 5 - Marketing and Third-Party Cookies

These cookies are set by third-party services and are used to measure the effectiveness of our marketing communications. They require your consent before being set. You can withdraw consent at any time via the managing your cookies section below.

  • brevo_cid / sib_cuid (Brevo/Sendinblue, HTTP): Tracks whether you have opened a marketing email and clicked through to the platform, to measure campaign effectiveness.
  • _fbp (Meta, if activated in future, HTTP): Used to measure effectiveness of advertising campaigns on Facebook/Instagram. Not currently active.

Managing your Cookies

You can control and manage cookies in several ways:

Cookie banner: When you first visit the Landed Lab website or platform, you will be shown a cookie banner. You can accept or decline non-essential cookies at that point. You can update your choices at any time via the cookie settings link in the footer of the website.

Browser settings: Most browsers allow you to refuse or delete cookies. The method varies by browser, please refer to your browser's help documentation. Please note that disabling all cookies may affect the functionality of the platform, including your ability to log in.

Links to cookie management guidance for common browsers:

  • Google Chrome: support.google.com/chrome/answer/95647
  • Mozilla Firefox: support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences
  • Safari: support.apple.com/en-gb/guide/safari/sfri11471
  • Microsoft Edge: support.microsoft.com/en-us/windows/manage-cookies-in-microsoft-edge

Do Not Track

Some browsers include a Do Not Track (DNT) setting. We currently respond to DNT signals by limiting our analytics to aggregated data only. We do not use cross-site tracking technologies.

Changes to this Cookie Notice

We may update this Cookie Notice from time to time, for example when adding features, changing analytics providers, or in response to changes in the law. The most current version will always be available at landedlab.com/cookies. Where changes are material, we will notify you via the platform or by email.

Questions?

If you have questions about how we use cookies, please contact us at info@landedlab.com or write to us at: Orum Consulting Ltd, Belmont Suite, Paragon Business Park, Chorley New Road, Horwich, Bolton, BL6 6HG.

For more information about how we handle your personal data more broadly, please read our Privacy Notice at landedlab.com/privacy.