Cookie notice
Last updated: 30 July 2026
Short version: StaffVoice sets only strictly necessary, first-party cookies. There are no analytics cookies, no advertising trackers, and no third-party scripts on any page — which is why you didn't see a cookie banner.
The cookies we set
- Session cookie — keeps you signed in after you authenticate. Removed when you sign out or it expires.
- Organization cookie (
sv-org) — remembers which organization you last used, if you belong to more than one. - Two-factor cookie — records that you completed two-factor authentication for the current session, if your account uses it.
All three exist only to make sign-in work; under UK PECR they are exempt from consent because the service can't function without them.
Respondents: local storage, not cookies
The response page keeps your draft and your response token in your browser's local storage so you can leave and come back through the same link while a pulse is open. That data stays on your device — it isn't a cookie and isn't sent with page requests. Clearing your browser data removes it.
If this changes
If we ever add cookies that need consent (for example, marketing attribution), we'll ask first and update this page. Questions: [email protected].