Cookies
Last updated 5 September 2026
Linemerge sets only the cookies the service needs to work. There are no advertising cookies, no third-party tracking cookies, and analytics are cookieless, so there is no cookie banner.
| Cookie | Purpose | Lifetime |
|---|---|---|
lm_at, lm_rt | Your sign-in session (access and refresh tokens). HttpOnly, Secure. | Session / up to 30 days |
lm_csrf | Protects forms against cross-site request forgery. | Session |
lm_tz | Remembers the timezone you chose on a booking page. | 1 year |
lm_lang | Remembers the language you chose on a booking page. | 1 year |
lm_ref | Remembers a referral link so both people get their free month if you sign up. | 30 days |
lm_oauth_*, lm_signin_next | One-time state while you connect a calendar or sign in with Google. | Minutes |
Cloudflare (cf_*, Turnstile) | Bot protection and network security on the booking form, when enabled. | Set by Cloudflare; see their policy |
| Stripe | Fraud prevention during checkout and in the billing portal, on Stripe's pages. | Set by Stripe; see their policy |
Booking pages embedded on a host's own website (?embed=1) set the same first-party cookies inside the frame and nothing on the host's site. The mobile apps use no cookies; they hold a session token in the device keychain.
Questions: [email protected].