COOKIE POLICY

Last Updated: May 23, 2025

1. INTRODUCTION AND SCOPE

This Cookie Policy ("Policy") explains how Expresso Inc., a Delaware C Corporation ("Amber," "we," "us," or "our"), uses cookies and similar tracking technologies on our website located at https://www.ambermind.ai and our artificial intelligence-powered emotional support services (collectively, the "Service").

This Cookie Policy should be read in conjunction with our Privacy Policy and Terms and Conditions, which provide additional information about how we collect, use, and protect your personal information. By continuing to use our Service, you acknowledge that you have read and understood this Cookie Policy and consent to our use of cookies as described herein.

We are committed to transparency about our data collection practices and providing you with meaningful choices about how your information is collected and used through cookies and similar technologies.

2. WHAT ARE COOKIES

Definition and Purpose:

Cookies are small text files that are placed on your computer, smartphone, tablet, or other device when you visit a website. These files contain information that can be read by the website that created them or by third-party services when you visit other websites that use the same cookies.

How Cookies Work:

When you visit our website, your browser sends information to our server, and we may send one or more cookies to your browser. Your browser stores these cookies and sends them back to our server each time you visit our website. This process allows websites to recognize your device and remember information about your visit.

Types of Cookie Storage:

Cookies can be stored for different durations. Session cookies are temporary and are deleted when you close your browser, while persistent cookies remain on your device for a set period or until you manually delete them.

Similar Technologies:

In addition to cookies, websites may use similar technologies such as web beacons (also called pixel tags or clear gifs), local storage objects, and other tracking technologies that serve similar functions to cookies.

3. CURRENT COOKIE USAGE

Minimal Cookie Implementation:

At present, Expresso Inc. operates with a minimal cookie approach. We do not use cookies for advertising, marketing, analytics, or third-party tracking purposes. Our commitment to privacy means that we have designed our Service to function effectively without relying on extensive cookie usage.

Essential Cookies Only:

We currently use only essential cookies that are strictly necessary for the operation and security of our Service. These essential cookies cannot be disabled as they are fundamental to providing you with our AI-powered emotional support services.

Session Management Cookies:

We use temporary session cookies to maintain your login status and ensure secure access to your account. These cookies are automatically deleted when you close your browser and contain only the minimum information necessary to authenticate your session.

Security Cookies:

We implement security-related cookies to protect against fraudulent activity, prevent unauthorized access attempts, and maintain the integrity of our Service. These cookies help us identify and prevent potential security threats.

Load Balancing Cookies:

To ensure optimal performance and reliability of our Service, we may use technical cookies for load balancing purposes. These cookies help distribute user requests across our servers to provide the best possible user experience.

4. FUTURE COOKIE IMPLEMENTATION

Potential Future Usage:

While we currently maintain a minimal cookie approach, we may implement additional cookies in the future to enhance our Service functionality, improve user experience, or comply with business requirements.

Analytics and Performance Cookies:

We may implement analytics cookies to better understand how users interact with our Service, identify areas for improvement, and measure the effectiveness of our features. Any such implementation would be conducted in compliance with applicable privacy laws and with appropriate user notice and consent.

Functionality Cookies:

We may introduce cookies to remember your preferences, settings, and choices to provide a more personalized experience. These might include language preferences, accessibility settings, or other user customization options.

Third-Party Service Integration:

Should we integrate with third-party services for enhanced functionality, we may implement cookies related to those services. Any such integration would be subject to updated privacy disclosures and appropriate consent mechanisms.

User Notification:

Before implementing any new cookie categories, we will update this Cookie Policy and provide clear notice to users about the changes. We will also implement appropriate consent mechanisms as required by applicable law.

5. LEGAL BASIS FOR COOKIE USAGE

GDPR Compliance:

For users in the European Union and other jurisdictions where the General Data Protection Regulation (GDPR) applies, our use of cookies is based on the following legal grounds:

  • Strictly Necessary Cookies: Our current essential cookies are used based on the legitimate interest exception under GDPR, as they are strictly necessary for the provision of our Service and cannot be disabled without significantly impairing the functionality of our website.
  • Consent-Based Cookies: Any future implementation of non-essential cookies will be based on your explicit consent, which you may withdraw at any time through your browser settings or cookie management tools we may provide.

ePrivacy Directive Compliance:

We comply with the EU ePrivacy Directive (Cookie Law) requirements regarding cookie consent and transparency. Essential cookies are permitted without consent, while non-essential cookies require user consent before implementation.

California Privacy Laws:

For California residents, our cookie practices comply with the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) requirements regarding tracking technologies and user privacy rights.

6. HOW TO CONTROL AND MANAGE COOKIES

Browser Settings:

You have the ability to control and manage cookies through your web browser settings. Most modern browsers provide options to block, delete, or manage cookies according to your preferences.

Universal Browser Instructions:

Most browsers allow you to:

  • View which cookies are stored on your device.
  • Delete existing cookies individually or all at once.
  • Block cookies from specific websites or all websites.
  • Set preferences for accepting or rejecting cookies.
  • Receive notifications when cookies are being set.

Important Considerations:

Please note that disabling essential cookies may affect the functionality of our Service and may prevent you from accessing certain features or using our AI-powered emotional support platform effectively.

7. BROWSER-SPECIFIC COOKIE MANAGEMENT

Google Chrome:

To manage cookies in Google Chrome, you can access cookie settings through the browser menu and adjust your preferences. For detailed instructions and to opt-out of Google's advertising cookies specifically, visit: https://support.google.com/chrome/answer/95647 and https://adssettings.google.com/

Mozilla Firefox:

Firefox users can manage cookie preferences through the browser's privacy and security settings. For comprehensive cookie management instructions, visit: https://support.mozilla.org/en-US/kb/enhanced-tracking-protection-firefox-desktop

Apple Safari:

Safari provides cookie management options through Safari preferences. For detailed guidance on managing cookies and website data, visit: https://support.apple.com/guide/safari/manage-cookies-and-website-data-sfri11471/mac

Microsoft Edge:

Edge users can control cookie settings through the browser's privacy and security section. For step-by-step instructions, visit: https://support.microsoft.com/en-us/microsoft-edge/delete-cookies-in-microsoft-edge-63947406-40ac-c3b8-57b9-2a946a29ae09

Internet Explorer:

For users still using Internet Explorer, cookie management options are available in the Internet Options menu. Detailed instructions can be found at: https://support.microsoft.com/en-us/topic/delete-and-manage-cookies-168dab11-0753-043d-7c16-ede5947fc64d

Opera Browser:

Opera provides cookie management through its privacy and security settings. For instructions on managing cookies in Opera, visit: https://help.opera.com/en/latest/web-preferences/#cookies

Mobile Browsers:

For mobile browsers on iOS and Android devices, cookie management options are typically found within the browser's settings menu under privacy or security sections.

8. THIRD-PARTY COOKIES AND SERVICES

Current Third-Party Usage:

We currently do not use third-party cookies on our Service. Our minimal cookie approach means that we do not allow external parties to set cookies through our website for advertising, analytics, or tracking purposes.

Payment Processing:

While we use Stripe, Inc. for payment processing, this integration does not involve setting third-party cookies on our main website. Payment processing occurs on Stripe's secure platform, subject to their own cookie and privacy policies.

Future Third-Party Integration:

Should we integrate third-party services that use cookies in the future, we will:

  • Provide clear disclosure about such third-party cookie usage.
  • Obtain appropriate consent where required by law.
  • Update this Cookie Policy to reflect any changes.
  • Provide information about how to opt-out of third-party tracking.

Advertising Networks:

We do not currently participate in advertising networks or allow third-party advertising cookies. We do not display advertisements or use advertising-related tracking technologies.

9. INTERNATIONAL COOKIE COMPLIANCE

Global Privacy Standards:

Our cookie practices are designed to comply with international privacy standards and regulations across the jurisdictions where we operate, ensuring consistent protection for all users regardless of their location.

European Union Requirements:

We comply with EU cookie legislation, including the ePrivacy Directive and GDPR requirements for lawful processing of personal data through cookies and similar technologies.

United States Compliance:

Our practices align with applicable U.S. federal and state privacy laws, including California's privacy legislation that addresses tracking technologies and user control mechanisms.

Cross-Border Data Transfers:

Any data collected through cookies is subject to the same international transfer safeguards outlined in our Privacy Policy, ensuring appropriate protection when information crosses international borders.

10. COOKIE RETENTION AND DELETION

Retention Periods:

Different types of cookies have different retention periods based on their purpose and functionality:

  • Session Cookies: These temporary cookies are automatically deleted when you close your browser and do not persist beyond your browsing session.
  • Essential Persistent Cookies: Security and authentication cookies may persist for short periods (typically 24-48 hours) to maintain account security and prevent frequent re-authentication requirements.

Automatic Deletion:

Most of our current cookies are designed to automatically expire and delete themselves within short timeframes to minimize data retention and protect your privacy.

Manual Deletion:

You can manually delete cookies at any time through your browser settings, though this may require you to re-authenticate with our Service and may affect your user experience.

11. COOKIE SECURITY

Security Measures:

We implement appropriate security measures to protect the information contained in cookies, including encryption and secure transmission protocols.

Data Minimization:

Our cookies contain only the minimum information necessary for their intended purpose, reducing potential privacy risks and limiting the scope of any data exposure.

Secure Cookie Attributes:

We use secure cookie attributes, including the Secure flag for HTTPS transmission and appropriate SameSite attributes to prevent cross-site request forgery attacks.

Regular Security Reviews:

We regularly review our cookie implementation and security measures to ensure they meet current best practices and security standards.

12. UPDATES AND CHANGES TO COOKIE POLICY

Policy Modifications:

We may update this Cookie Policy from time to time to reflect changes in our practices, new cookie implementations, legal requirements, or technological developments.

Notification of Changes:

We will notify users of material changes to this Cookie Policy through:

  • Email Notifications: Registered users will receive email notification of significant changes to our cookie practices at least thirty (30) days before implementation.
  • Website Notices: Prominent notices will be posted on our website and within user account areas to inform visitors of cookie policy updates.

Consent Management:

If we implement new cookie categories that require consent, we will provide appropriate consent mechanisms and allow users to make informed choices about cookie acceptance.

Effective Date Updates:

Any changes to this Cookie Policy will include an updated effective date, and continued use of our Service constitutes acceptance of the revised policy.

13. YOUR RIGHTS REGARDING COOKIES

Fundamental Rights:

You have several fundamental rights regarding our use of cookies and similar technologies:

  • Right to Information: You have the right to clear and comprehensive information about the cookies we use, their purposes, and retention periods, which we provide through this Cookie Policy.
  • Right to Consent: For non-essential cookies, you have the right to provide or withhold consent, and to withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
  • Right to Object: You may object to our use of cookies for certain purposes and can exercise this right through your browser settings or by contacting us directly.
  • Right to Access: You can access information about the cookies stored on your device through your browser settings and can view, modify, or delete them as desired.

14. CONTACT INFORMATION AND SUPPORT

If you have any questions, concerns, or requests regarding this Cookie Policy or our use of cookies, please contact us using the following information:

Technical Support:

For technical questions about managing cookies in your specific browser or device, we recommend consulting your browser's help documentation or contacting the browser manufacturer's support resources.

Response Timeline:

We are committed to responding to all cookie-related inquiries within thirty (30) days of receipt, or within shorter timeframes as required by applicable law.

Privacy Concerns:

For broader privacy concerns beyond cookies, please refer to our comprehensive Privacy Policy or contact us using the information provided above.

15. ADDITIONAL RESOURCES

Educational Resources:

For additional information about cookies and online privacy, you may find the following resources helpful:

  • All About Cookies: Visit www.allaboutcookies.org for comprehensive information about cookies and how to manage them across different browsers and devices.
  • Your Online Choices: EU residents can visit www.youronlinechoices.eu for information about behavioral advertising and opt-out options for participating advertising companies.
  • Network Advertising Initiative: U.S. residents can visit www.networkadvertising.org to learn about online advertising practices and exercise opt-out choices for participating networks.
  • Browser Privacy Settings: Consult your specific browser's help documentation for detailed instructions on privacy settings and cookie management options.