Cookie & Device Notice
Spec Part G6: this notice covers the web client (marketing site and the (app) doctor web client) and any device identifiers used by the mobile app.
Essential cookies
We set two cookies once you sign in: dapp_session, an httpOnly cookie holding your session token (never readable by any script, on this site or any other), and dapp_user, a small non-sensitive cookie used only to render your verification status without an extra request. Neither is used for advertising or cross-site tracking. Both are strictly necessary for the product to function and are not subject to a cookie-consent banner under applicable guidance for essential/security cookies.
Device identifiers
The mobile app may read a device identifier for session security and fraud prevention (e.g. binding a session to a device, per spec Part H5 security architecture). Device identifiers are never sold and are never used to target patients.
Your choices
Because these cookies are essential to authentication, the only way to opt out is to not sign in. You can clear them at any time by signing out or clearing your browser's site data for this domain.