01
What we set
Runny.sh uses cookies that are required to run the site. We do not set advertising cookies, social pixels, or analytics IDs on runny.sh. Transactional mail does not include an open-tracking pixel.
- runny_sidSession cookie. Keeps you signed in. Stored in Redis. HttpOnly, SameSite=Lax, Secure when the site is served over HTTPS. Lifetime 14 days. Without it, the dashboard and settings cannot keep a login.
- runny_per_pagePreference cookie. Remembers table page size. HttpOnly, SameSite=Lax, Secure on HTTPS. Lifetime 1 year. The site works without it; lists fall back to the default page size.
Raw script fetches at /r/{slug} do not set a session cookie. API requests that use a bearer token do not use these cookies.
02
Stripe cookies
When you start Checkout or open the customer portal, you leave runny.sh for a Stripe-hosted page. Stripe sets its own cookies on checkout.stripe.com and related Stripe domains to process the payment, prevent fraud, and remember portal sign-in. Those cookies are Stripe’s, described in Stripe’s privacy policy.
We do not read Stripe’s cookies. We learn that you paid from Stripe webhooks, not from your browser.
03
Your controls
Your browser can block or delete cookies. Blocking runny_sid signs you out and prevents staying signed in. Blocking Stripe cookies on Checkout may prevent a subscription from completing.
See also the Privacy Policy and Terms of Service.