Effective and last updated August 17, 2026
Cookie Notice
An exact inventory of browser storage used by the MaestroGnome private beta.
First-party cookies
| Name | Purpose | Duration and safeguards |
|---|---|---|
__Host-maestro_session | Identifies the signed-in account so invitations, private rooms, and producer permissions can be enforced. | 14 days. Secure, HTTP-only, SameSite=Lax, host-only, Path=/. |
__Host-maestro_login | Binds a Google sign-in response to the browser that started it and preserves the approved return destination. | 10 minutes, then deleted. Secure, HTTP-only, SameSite=Lax, host-only, Path=/. |
__Host-maestro_nonce | Prevents replay and substitution of Google OpenID Connect responses. | 10 minutes, then deleted. Secure, HTTP-only, SameSite=Lax, host-only, Path=/. |
__Host-maestro_return | Returns the user to the intended same-origin studio or private review after sign-in. | 10 minutes, then deleted. Secure, HTTP-only, SameSite=Lax, host-only, Path=/. |
Google may use cookies on accounts.google.com when you choose Google sign-in. Those cookies are controlled by Google, not MaestroGnome. We request only OpenID, verified email, and basic profile scopes for this login flow.
Local storage and similar technologies
| Name | Purpose | When and duration |
|---|---|---|
salsa_cookie_consent | Records only whether optional analytics was allowed or kept off, plus the choice date and notice version. | Saved when you make a choice; remains until you change it, sign out, or clear site data. |
sa_visitor | Random first-party Salsa visitor identifier used to understand repeat product use. It is not your Google ID, email, project ID, or private link. | Created only after analytics consent; removed on withdrawal, GPC enforcement, sign-out, or cleared site data. |
sa_session | Random Salsa session identifier used to group actions during one visit. | Created only after analytics consent in sessionStorage; expires after inactivity or when the tab/session storage is cleared. |
maestro-oauth-browser-binding | Random per-tab security proof that binds a Google response to the tab that began sign-in. It contains no identity or project data. | During Google sign-in only; deleted as soon as the callback begins. |
The application does not store reviewer names, comments, emails, music, video, project titles, or private links in analytics storage. Private review media uses ordinary browser caching subject to private or no-store response rules. Signing out instructs the browser to clear MaestroGnome cookies, cache, and local site storage.
Optional Salsa Analytics
Salsa Analytics measures normalized page routes and product actions only after permission. MaestroGnome removes creative content, exact timestamps, personal contact details, project names, raw IDs, and private URLs before events reach cloud.salsas.io. Allow and refuse controls have equal prominence. Global Privacy Control overrides an older permission, and withdrawal clears the optional identifiers and stops new events.