ZITADELZZITADEL
Powered by
TomasPT
ZITADELβ€’8mo agoβ€’
6 replies
TomasP

UserAgent cookie GDPR compliance

Currently, Zitadel uses two cookies:

- zitadel.csrf
- zitadel.useragent

We understand that the zitadel.csrf cookie is required to ensure a secure login flow. However, the second cookie appears to be used for session storage.

Are you considering this cookie to be required or functional? If it is functional (i.e., optional), it should be possible to prevent its creation to ensure Zitadel remains GDPR compliant.

Could you please clarify this for us? (Perhaps you classify this cookie as required.)
Thank you!
ZITADEL banner
ZITADELJoin
ZITADEL - Identity infrastructure, simplified for you.
4,374Members
Resources
Recent Announcements

Similar Threads

Was this page helpful?

Similar Threads

GDPR Compliance guidance for self hosted instance
andreyAandrey / questions-help-bugs
3mo ago