Cookie Policy
This Cookie Policy explains how Legalithm uses cookies and similar tracking technologies across our marketing site, application, and integrations. Legalithm complies with GDPR, ePrivacy, and Consent Mode v2 requirements.
Last updated: March 15, 2026
Consent Management
We use a Consent Management Platform (CMP) with explicit opt-in controls for non-essential cookies. Until consent is granted, non-essential analytics and marketing storage remain disabled.
- Users can change or withdraw consent at any time via the in-product “Cookie Settings” control.
- Legal basis for cookies: consent (Article 6(1)(a) GDPR) for non-essential cookies; legitimate interest for strictly necessary cookies.
- Consent choices are persisted and re-applied on return visits.
Cookie Categories
Strictly Necessary Cookies
Essential for authentication, session security, and load balancing. These cookies cannot be disabled because the product will not function without them.
Storage: Session or up to 24 hours.
lf_session
Provider: legalithm.com
Duration: Session
Maintains authenticated user sessions.
lf_csrf
Provider: legalithm.com
Duration: Session
Protects against cross-site request forgery.
authjs.session-token / __Secure-authjs.session-token
Provider: legalithm.com
Duration: Session or persistent (when remember-session applies)
Authenticates signed-in users and protects account access.
Analytics Cookies
Helps us understand product usage and feature adoption to improve reliability and UX. Enabled only after consent.
Storage: Up to 13 months.
ph_* / ph_phc_*_posthog
Provider: legalithm.com / PostHog ingest (e.g. us.i.posthog.com or eu.i.posthog.com)
Duration: Typically up to 12 months
PostHog pseudonymous analytics identifiers and session state.
Functional Cookies
Remember language preferences, UI settings, and accessibility features.
Storage: Up to 12 months.
lf_locale
Provider: legalithm.com
Duration: 12 months
Stores selected interface language.
lf_theme
Provider: legalithm.com
Duration: 12 months
Remembers dark/light theme preferences.
Marketing Cookies
Used for campaign attribution and conversion tracking where enabled by the user.
Storage: Up to 6 months (provider dependent).
_gcl_au
Provider: google.com
Duration: Up to 3 months
Google Ads conversion support (only when marketing consent is granted).
Managing Cookies
You can adjust cookie settings within your browser preferences or through the Legalithm cookie banner. Disabling strictly necessary cookies may degrade core functionality such as authentication, session management, and billing.
For questions about this policy, contact privacy@legalithm.com.