Cookie Policy

Which cookies AI Rap Duo sets, what each one does, and how to control them

2026/09/30

Introduction

This Cookie Policy explains how AI Rap Duo (https://airapduo.app) uses cookies and similar technologies such as browser local storage. We do not use cookies to show you ads on other websites, and we do not sell cookie data.

What Are Cookies

Cookies are small text files a website stores in your browser. They let the site remember that you are signed in, keep your settings, and understand how the site is used.

Cookies We Use

Essential

These are needed for the site to work. They cannot be switched off without breaking sign-in or payment.

  • Sign-in session (better-auth.session_token, better-auth.session_data, with a __Secure- prefix on HTTPS): keep you signed in after you log in with Google or an email link, and protect your account from forged requests.
  • Stripe checkout: when you buy a plan or credit pack, you complete payment on a Stripe page. Stripe sets its own cookies there to process the payment and prevent fraud. See Stripe's privacy policy.

Abuse Prevention

  • Device identifier (visitor_id, registration_fingerprint, up to 1 year and 7 days respectively): when you sign in or sign up, your browser computes an identifier from device characteristics. We use it only to stop the same person from creating many accounts to collect free credits.
  • Time zone (visitor_tz, 1 year): your browser's time zone, used together with the above to detect abuse and estimate your region.

Preferences

  • Language (NEXT_LOCALE): remembers your language choice.
  • Theme (active_theme, 1 year): remembers your display theme.
  • Draft in browser storage (IndexedDB, up to 24 hours): if you pick photos and a stage before signing in, your browser keeps them as a draft so they are still there after you sign in. The draft stays on your device and is not sent to us until you generate.

Analytics

  • PostHog (cookies and local storage starting with ph_): helps us understand which pages and features are used and where errors happen. On our production website, PostHog may also record sessions (clicks, scrolling and page changes) so we can find and fix problems. See PostHog's privacy policy.
  • Visit and source (_fv, _attr_source, _attr_landing, _attr_landing_locale, up to 1 year): a random visitor ID and the page and website you first arrived from, so we can see which pages lead people to sign up.
  • Ad click ID (gclid, 90 days): only if you arrive from a Google ad, to measure whether that ad led to a sign-up. It is set only when we run Google Ads.

Managing Cookies

You can delete or block cookies in your browser settings:

  • Chrome: Settings > Privacy and security > Third-party cookies / See all site data and permissions
  • Firefox: Settings > Privacy & Security > Cookies and Site Data
  • Safari: Settings > Privacy > Manage Website Data
  • Edge: Settings > Cookies and site permissions

If you block essential cookies, you will not be able to sign in, generate videos or make purchases.

We will update this page when we add or remove cookies, and change the date below.

Contact Us


Last updated: September 30, 2026