Cookie Policy

The two cookies this site sets, and what the widget stores on your visitors' devices.

event Last updated 27 July 2026 public Governed by the laws of India

Who this is

The operator behind SparrowAI

Operated by
Abhinav Kumar Shukla
an individual (sole proprietor) operating under the trade names SparrowAI and LeftNote
Service
SparrowAI
sparrowai.leftnote.com
Address
Shri Shukla Niwas, Anchal Road, Pahar Toli, Hehal, Ranchi, Jharkhand, 834005, India
Contact
dev.leftnote@gmail.com

In this document, "we", "us" and "SparrowAI" mean Abhinav Kumar Shukla. "You" means the person or organisation holding a SparrowAI account. "Your visitors" means the people who use the chat widget on your website — they are your users, not ours.

1. The short version

sparrowai.leftnote.com sets two cookies, both strictly necessary for signing in and for keeping forms secure. We set no advertising cookies, no tracking cookies and no analytics cookies, and we do not share cookie data with anyone.

Separately, the chat widget stores one value in the browser's local storage on your visitors' devices. That is not a cookie, but you should know about it — section 4 explains why it matters to you.

2. Cookies this website sets

Cookie Purpose Lasts Type
sessionid Keeps you signed in and remembers which account a request belongs to. Without it you would be logged out on every page. It also carries one-off status messages such as "Message sent". Until you sign out or it expires Essential
csrftoken Security. Proves that a form submission came from our page and not from another site acting in your name. 1 year Essential

In production both are sent only over HTTPS, and the session cookie cannot be read by JavaScript.

Both are strictly necessary, so we do not ask for consent to set them — there is no version of a login that works without them. If you block them, you can still read this site but you cannot sign in.

3. Analytics — no cookie at all

We count page views and where visitors arrived from, so we know which pages are worth keeping. The analytics run on our own servers — your visit is not sent to a third-party analytics or advertising company.

What that means for your data:

  • Nothing is stored on your device. No cookie, no local storage entry, no identifier of any kind.
  • Your IP address is never written to disk.
  • So that one person is not counted twice in a day, a one-way hash is derived from your IP address and browser user-agent using a secret that is discarded and regenerated every day. It cannot be reversed back to you, and yesterday's hash cannot be matched to today's.
  • No profile is built, and nothing follows you to another website.

That is why this site shows no cookie banner and has no analytics opt-out toggle: consent rules are triggered by storing or reading something on your device, and this stores nothing.

The one exception is referral links: if you arrive on a URL containing a ref code, we record that code with your IP address and browser user-agent so we can credit whoever referred you. That is a server-side log entry, not a cookie. See the Privacy Policy.

4. What the chat widget stores on your visitors' devices

This section matters if you are a SparrowAI customer, because it happens on your website, not ours.

When the widget loads, it generates a random identifier and saves it in the browser's local storage under the key sparrowai_session_id. Its only job is to keep one conversation coherent, so the chatbot can tell that a follow-up question belongs with the question before it.

  • It is a random value. It contains no name, email, IP address or anything derived from the person.
  • It is readable only by your own website, and cannot be used to track anyone across other websites.
  • It is not stored alongside the saved chat record on our servers.
  • Clearing the browser's site data removes it, and a fresh one is generated on the next visit.
  • The widget sets no cookies on your website.

If your website shows a cookie or consent banner, mention this local storage entry in it. Several consent regimes cover any storage on a visitor's device, not just cookies, and your visitors are your responsibility — see the Acceptable Use Policy.

5. Third-party cookies you may pick up

Two flows hand you over to another company, which sets its own cookies under its own policy. We cannot read those cookies.

  • Signing in with Google. Google sets cookies on its own domains to authenticate you. Governed by Google's privacy policy.
  • Paying. Razorpay's checkout sets cookies needed to process the payment and to detect fraud. Governed by Razorpay's privacy policy.

Neither is set unless you actively choose to sign in with Google or to make a payment.

6. Controlling cookies

Every major browser lets you view, block and delete cookies and clear local storage, usually under Settings → Privacy. Blocking the two essential cookies above will prevent you from signing in to SparrowAI. Clearing local storage on a site running our widget simply starts the visitor's next chat fresh.

We do not currently show a cookie banner, because we set no cookie that requires consent. If that ever changes, this page will be updated first.

Grievance redressal

If anything in this policy has not been honoured, or you are unhappy with how your data or your payment has been handled, write to our Grievance Officer. We acknowledge every complaint within 2 working days and aim to resolve it within 30 days.

Grievance Officer

Abhinav Kumar Shukla

dev.leftnote@gmail.com

Shri Shukla Niwas, Anchal Road, Pahar Toli, Hehal, Ranchi, Jharkhand, 834005, India

mail Raise it through your account

Changes to this policy

We may update this page as the service changes or the law does. The "last updated" date at the top always reflects the current version. If a change materially reduces your rights we will email the address on your account before it takes effect. Continuing to use SparrowAI after a change means you accept the updated terms.