Cookie policy
This policy explains which cookies and similar technologies Kanlane uses, what they are for and how you can manage them. It complies with article 22.2 of Spanish Law 34/2002 (LSSI-CE) and the guidance of the Spanish Data Protection Agency (AEPD).
1. What cookies and local storage are
Cookies are small files that a website stores on your device. Kanlane, like almost every modern web application, mostly uses other equivalent browser technologies: local storage (localStorage), browser databases (IndexedDB) and the service worker cache. In this policy we refer to all of them as "cookies".
2. What we use, in short
- Technical storage only. It is essential so that you can sign in, use the application and have it remember what you choose (language, theme, open project…).
- No analytics, advertising or tracking cookies, our own or third-party.
- No third parties following you. Fonts are served from this same site and no advertising script is loaded.
Technical storage, and storage that keeps an option you have chosen, is exempt from the duty to ask for consent (art. 22.2 LSSI-CE), which is why nothing is blocked while waiting for your answer. Even so, we give you control: you can at any time, and if in the future we added something that does require consent (such as analytics), it would not be turned on without your permission.
3. What exactly we store
Every item is first-party (Kanlane stores it in your browser) and belongs to the technical category or to personalisation you have chosen. None is shared with third parties or used to identify you outside the application.
| Name | Type | What it is for | Duration |
|---|---|---|---|
firebaseLocalStorageDb (key firebase:authUser…) | IndexedDB, created by Firebase Authentication (Google) | Keeping you signed in. | Until you sign out. |
firestore/… | IndexedDB, created by Cloud Firestore (Google) | A local copy of your data so that it loads quickly and you can work offline. | Until you sign out (it is deleted when you do). |
workhub_session | localStorage | Remembering that you had already signed in on this browser, to show the right loading screen. | Until you sign out. |
tablero_local_db | IndexedDB | Storing your data in guest mode and in local mode. | Until you clear the browser's data. |
workhub_guest | localStorage | Remembering your guest name. | Until you leave guest mode. |
workhub_lang, workhub_lang_adopted | localStorage | The language you have chosen. | Persistent (until you delete it). |
workhub_theme, workhub_accent, workhub_accent_v, workhub_nav | localStorage | The theme (light or dark), the accent colour and where you want the navigation (on the side or at the top). | Persistent. |
workhub_project, tablero_tab | localStorage | The last project and section you had open. | Persistent (workhub_project is deleted when you sign out). |
workhub_hidden_…, workhub_cal_mode, workhub_task_mode | localStorage | The columns you have hidden, the calendar view (month, week or day) and the task view (board or list). | Persistent. |
workhub_reminders, workhub_reminded | localStorage | Your reminder settings and the notices already shown, so they are not repeated. | Persistent (notices already shown, 10 days). |
workhub_gh_token | localStorage | Access to GitHub, only if you connect the integration. It never leaves your browser for our servers: it is only sent to the GitHub API. | Until you remove it in Settings. |
workhub_cloud_backup_key:… | localStorage | Encryption key for your account's backups, only if you turn them on. The key is not sent to Firebase. | Until you turn backups off on this browser or clear its data. |
workhub-backup-history | IndexedDB | Keeping up to seven local versions per project. | Until you delete a version or the browser's data. |
workhub-keys | IndexedDB | Encryption key for projects with "Full encryption", so that you are not asked for the encryption password every time. The key cannot be copied out of the browser and is not sent to our servers. | Until you sign out; if you tick "This device is trusted", until you forget it from the project or clear the browser's data. |
workhub_consent | localStorage | Storing your decision about this cookie policy. | 12 months. |
workhub-shell-…, workhub-runtime | Service worker cache | Storing the application's files and Firebase's so that it opens faster and works offline (installable application). | Until there is a new version or you clear the site's data. |
4. Third parties
- Google (Firebase and reCAPTCHA Enterprise/App Check). When you open the application to sign in, the browser downloads Firebase's code from
www.gstatic.comand reCAPTCHA Enterprise's fromwww.google.com, and talks to Google's servers. App Check uses reCAPTCHA to process technical signals from the browser and stop automated access; to do so, Google may store a technical cookie (_GRECAPTCHA) on its own domain. It is a security measure, not analytics or advertising, and so it does not depend on the cookie notice. None of this is loaded in guest mode. The session and data storage in the table above is used to keep you signed in, protect access and keep your data. - Google and GitHub when signing in. If you choose to sign in with Google or GitHub, those companies may use their own cookies in their sign-in window. They are governed by their policies, not by this one.
- Cloudflare. It hosts the website. If its security protections are turned on, it may use a technical cookie (for example,
__cf_bm) to tell legitimate traffic from bots; it is not used to identify you or for advertising.
5. Your consent and your preferences
The first time you visit we show you a notice so that you can choose. You can accept, reject what is not essential or set the categories. Rejecting does not take any feature away from you: what is essential keeps working because the law does not require your consent for it.
| Category | Status | Description |
|---|---|---|
| Technical and personalisation you have chosen | Always on | Everything in the table in section 3. Without them you cannot sign in or have your options remembered. |
| Analytics and measurement | Not used · off | Kanlane does not use any today. If one were ever added, it would only be turned on if you accept it. |
| Advertising | Not used | Kanlane does not show advertising or use advertising cookies. |
We keep your choice for 12 months and will ask you again after that time, if we change something relevant or if you clear the site's data. You can change or withdraw it whenever you like with the "Cookie settings" button you will find at the bottom of every legal page, on the sign-in screen and in Settings → Privacy.
6. How to delete or block cookies from your browser
You can also delete the site's storage or block it from your browser. Bear in mind that, if you do, you will have to sign in again and your preferences will be lost; and, in guest mode, so will the data that is only in the browser, so export a backup first. Official guides:
7. Changes to this policy
If we change the cookies we use, we will update this page and the date above and, if your consent is needed, we will ask you for it again. More information about how we process your data is in the privacy policy.