Cookie Policy
Last updated: [PLACEHOLDER: date]
Summary
We use a small number of cookies and similar technologies. Some are strictly necessary to run Scope, sign you in and take payments securely. Anything else, such as analytics that are not covered by a legal exemption or marketing tags, is used only if you agree, and you can change your choice at any time.
1. Who we are
This policy is from [PLACEHOLDER: company legal name], ABN [PLACEHOLDER] ("Scope", "we"). It explains how we use cookies and similar technologies on our website at heyscope.io, in the Scope web app, in client portals and share links, on Scope Sign signing pages and public portfolio pages ([v3 addition, 7 Oct 2026]), and in our emails. Read it with our Privacy Policy.
2. What cookies and similar technologies are
Cookies are small text files stored in your browser by a website. Similar technologies include local storage, session storage, pixels (tiny images in emails or pages) and software development kits in apps. In this policy, "cookies" covers all of them.
Some cookies are set by us (first-party). Others are set by services we use, such as Stripe (third-party).
3. The types of cookies we use
3.1 Strictly necessary
These make Scope work and keep it secure. They sign you in, keep your session open, remember your workspace and security settings, protect forms against abuse and help prevent fraud on payments. They do not need consent, because the service cannot work without them. You can block them in your browser, but parts of Scope will then stop working.
3.2 Preferences
These remember choices such as your cookie choice, theme or layout. [CONFIRM: whether any are used beyond the consent record.] Where they are not strictly necessary, we ask first.
3.3 Analytics
These help us understand how the website is used, such as which pages are visited, so we can improve it. [CONFIRM: which analytics tool is used. If Framer's built-in analytics is used, confirm with Framer whether it sets cookies or stores identifiers on the device; Framer describes its analytics as privacy-friendly, but check the current documentation.]
In the UK, since 5 February 2026 the law has allowed some analytics cookies without consent, where they are used only to collect statistics to improve our own website or service, users are given clear information and a simple way to object. [Lawyer: confirm the Data (Use and Access) Act 2025 exception applies to the chosen tool and settings.] If we rely on this, we tell you here and give you a simple way to opt out in [PLACEHOLDER: Cookie settings].
Elsewhere, and for any analytics that does not qualify for that exception, we ask for your consent first.
3.4 Marketing
[PLACEHOLDER: "We do not currently use advertising or marketing cookies." Keep this only if true. If advertising pixels are added later, they will be off until you agree, and this policy will be updated first.]
4. Cookies we use
Name | Provider | Purpose | Category | Duration |
|---|---|---|---|---|
[PLACEHOLDER: session cookie name] | Scope | Keeps you signed in to the web app | Strictly necessary | [PLACEHOLDER: session or period] |
[PLACEHOLDER: CSRF/security cookie] | Scope | Protects forms and requests from abuse | Strictly necessary | [PLACEHOLDER] |
[PLACEHOLDER: portal/share link session] | Scope | Lets a client view a portal or share link without an account | Strictly necessary | [PLACEHOLDER] |
[v3 addition, 7 Oct 2026] [PLACEHOLDER: signing-session cookie, if any] | Scope [CONFIRM: or signing provider] | Lets a signer open and complete a Scope Sign document without an account | Strictly necessary | [PLACEHOLDER] |
[v3 addition, 7 Oct 2026] [PLACEHOLDER: any cookie or analytics on public portfolio pages, or "none"] | Scope | [CONFIRM: whether public portfolio pages set cookies or run analytics; if analytics, consent rules in section 3.3 apply] | [CONFIRM] | [PLACEHOLDER] |
[PLACEHOLDER: consent cookie] | Scope / Framer cookie banner | Remembers your cookie choices | Strictly necessary | [PLACEHOLDER: e.g. 12 months] |
| Stripe | Fraud prevention for payments | Strictly necessary | 1 year [CONFIRM against Stripe's current cookie list] |
| Stripe | Fraud prevention for payments | Strictly necessary | 30 minutes [CONFIRM] |
[PLACEHOLDER: analytics] | [PLACEHOLDER: Framer Analytics or other] | Website usage statistics | Analytics | [PLACEHOLDER] |
Stripe sets its cookies where a Stripe payment element or checkout appears, for example when you add a card for your trial or when a client pays an invoice. Stripe explains its use of cookies at stripe.com/cookie-settings [CONFIRM URL].
5. Emails
Our product and marketing emails may contain a pixel or tracked links that tell us whether an email was opened or a link was clicked. [CONFIRM: whether tracking is enabled in the email provider.] For marketing emails in the UK we treat this as needing consent and you can turn it off by [PLACEHOLDER: disabling images, or a setting]. Transactional emails (for example receipts, signing requests and trial reminders) are sent to deliver the service.
6. Your choices
Cookie settings. When you first visit our website, you can accept, reject or choose cookies by category. Rejecting is as easy as accepting. You can change your choice at any time from the "Cookie settings" link in the footer.
Browser controls. Most browsers let you block or delete cookies. Blocking strictly necessary cookies will stop parts of Scope from working.
Global Privacy Control. [PLACEHOLDER: "Where your browser sends a Global Privacy Control signal, we treat it as a rejection of non-essential cookies." Include once implemented.]
7. Changes
We will update this policy when the cookies we use change. The date at the top shows when it was last updated.
8. Contact
Questions about cookies: hello@heyscope.io, or write to [PLACEHOLDER: address].