ArchPublic

Privacy

What we store in your browser, which third parties are involved, and the choices you have.

Overview

This page describes the cookies, browser storage, and third-party services The Arch Public uses on thearchpublic.com, and the choices you have about them — including your right under the California Consumer Privacy Act (CCPA/CPRA) to opt out of the sharing of your personal data. To exercise that right, use Do Not Share My Personal Data. We also honor the Global Privacy Control (GPC) browser signal automatically.

Cookies we set

These first-party cookies make the site work. They are not shared with third parties:

  • site-access — grants entry past the pre-release password gate. Expires after 7 days.
  • privacy-opt-out — records your “do not share” preference for 12 months. Set when you opt out on this page or when your browser sends the GPC signal.
  • sb-* — your sign-in session (Supabase authentication). Kept while you are signed in.
  • imp-marker / imp-jti — set only during an administrator support session on your account, so the session is visibly marked and time-bounded.

Browser storage

We keep a few interface preferences in your browser’s local storage. They never leave your device:

  • archpub_asset_class — your selected product view (All / Crypto / Stocks / ETF).
  • archpub_live_prices_order — how you ordered the live prices panel.
  • paid-esign-dismissed — remembers, for the current tab session only, that you dismissed an agreement-signing prompt.

Advertising tags

Our public pages (never the signed-in dashboard) load two advertising tags: the Meta Pixel and the Google Ads tag. They report your visit — page viewed, and technical details such as IP address and browser — to Meta and Google for ad measurement and attribution, and they may set their own cookies governed by those companies’ privacy policies. This is the “sharing” the CPRA gives you the right to stop: opt out here and neither tag loads at all, including the no-JavaScript tracking image.

Embedded video

Some pages embed YouTube videos in YouTube’s privacy-enhanced mode (youtube-nocookie.com), which does not use viewing activity for personalized ads. Video thumbnails are proxied through our own servers, so your browser does not contact YouTube until a video plays. When one does play — automatically as you scroll, or by your click if you have opted out — YouTube may collect playback data under Google’s privacy policy.

Booking links

Scheduling a call with our concierge team follows an outbound link to HubSpot Meetings or Google Calendar. Those pages are operated by HubSpot and Google respectively; their privacy policies apply from the moment you land there. We load nothing from either service on our own pages.

Your rights

California residents have the right to opt out of the sale or sharing of personal information — exercise it at Do Not Share My Personal Data or by enabling Global Privacy Control in your browser — as well as rights to know, correct, and delete personal information we hold. To exercise those, email [email protected] from the address on your account so we can verify the request. We do not use the tracking described here on signed-in dashboard pages.