Cookie Policy
Last updated: May 13, 2026
1. Overview
filez.zone is designed with privacy as a core principle. This Cookie Policy explains what browser storage technologies we use, why we use them, and — more importantly — what we do not use.
2. Cookies We Do NOT Use
We do not use any of the following:
- Tracking cookies: We do not place any cookies that track your browsing activity across sites.
- Advertising cookies: We do not use advertising networks, ad pixels, or retargeting cookies of any kind.
- Analytics cookies: We do not use Google Analytics, Meta Pixel, or any third-party analytics cookies.
- Social media cookies: We do not embed social media buttons or tracking pixels.
- Third-party cookies: We do not set or read cookies from any third-party domains.
3. Browser Storage We Use
Our Service uses minimal browser storage strictly for essential functionality:
Local & Session Storage
We may use the browser's localStorage or sessionStorage APIs for:
- Application state: Temporary UI state (e.g., form inputs, loading indicators) to provide a smooth user experience. This data is not transmitted to our servers and is cleared when you close your browser or clear your browsing data.
IndexedDB / Cache Storage
We do not currently use IndexedDB or the Cache API. If this changes in the future, we will update this policy and provide clear notice.
4. First-Party Cookies
We do not set any first-party cookies. Our Service does not use cookies for session management, authentication, or any other purpose. All API requests are stateless and do not require session cookies.
5. Third-Party Services
Cloudflare
We use Cloudflare for content delivery, DDoS protection, and R2 object
storage. Cloudflare may set its own cookies (such as __cf_bm) as part of their
bot management and security services. These cookies are:
- Set by Cloudflare, not by filez.zone.
- Used solely for security and performance purposes.
- Not used for tracking, advertising, or building user profiles.
- Subject to Cloudflare's own privacy policy at cloudflare.com/privacypolicy.
You can learn more about Cloudflare's cookies at cloudflare.com/cookie-policy.
Presigned Upload URLs
When you upload a file, your browser communicates directly with Cloudflare R2 using presigned URLs. These URLs contain authentication parameters in the query string (not cookies) and expire after one hour. No cookies are exchanged during the upload process.
6. How to Control Browser Storage
You can control or delete browser storage at any time through your browser settings:
- Chrome: Settings → Privacy and security → Clear browsing data
- Firefox: Settings → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Manage Website Data
- Edge: Settings → Cookies and site permissions → Manage and delete cookies
Since we use minimal browser storage and no tracking cookies, clearing your data will not affect your ability to use the Service. File encryption keys are stored exclusively in the URL hash fragment, which is never persisted by the browser.
7. Do Not Track
We honor Do Not Track (DNT) signals by default — we do not track, profile, or collect behavioral data regardless of whether your browser sends a DNT header. Our Service is designed to be privacy-first without requiring any opt-out configuration.
8. Changes to This Policy
We may update this Cookie Policy from time to time. Any changes will be reflected on this page with an updated "Last updated" date. If we introduce significant changes that affect how we use browser storage, we will provide clear notice on our website.
9. Contact
If you have questions about this Cookie Policy or our use of browser storage technologies, please contact us at privacy@filez.zone.
