Cookie Policy
Last updated: 11 June 2026 · M365Clarity (Stephen Bennett, sole trader)
What is a cookie?
A cookie is a small text file stored in your browser by a website. Cookies can remember your preferences, keep you logged in, or track your behaviour across sites.
M365Clarity uses your browser's localStorage — not cookies — to store your session token. localStorage is not transmitted to servers automatically the way cookies are, and it does not require consent under UK PECR.
Cookies we use
The following cookies may be set when you use M365Clarity:
| Cookie name | Provider | Purpose | Type | Duration |
|---|---|---|---|---|
__cf_bm |
Cloudflare | Bot management and fraud prevention. Set by Cloudflare to distinguish between humans and automated bots, and to protect the site from malicious traffic. | Essential | 30 minutes |
__cflb |
Cloudflare | Load balancing. Ensures requests from the same user are routed to the same data centre during a session. | Essential | Session |
esctx-* |
Microsoft | Microsoft OAuth authentication session. Set by login.microsoftonline.com during the Microsoft 365 sign-in process. These cookies are set on Microsoft's domain, not m365clarity.com, and are outside our control. | Essential | Session |
MUID |
Microsoft | Microsoft user identifier used during authentication. Set on Microsoft's domain. | Essential | 13 months |
What we do NOT use
M365Clarity does not use:
- Analytics cookies — we do not run Google Analytics, Mixpanel, Hotjar, or similar tracking tools
- Advertising cookies — we do not serve ads or use advertising networks
- Social media cookies — we have no Facebook, Twitter/X, or LinkedIn tracking pixels
- Cross-site tracking — we do not track you across other websites
localStorage (not a cookie)
When you sign in to M365Clarity, your session token is stored in your browser's localStorage under the key token. This is technically distinct from a cookie:
- It is not transmitted to servers automatically on every request
- It is not accessible to other websites
- It does not expire unless you sign out or clear your browser storage
- It does not require consent under UK PECR (Privacy and Electronic Communications Regulations)
To remove it, sign out of M365Clarity or clear your browser's site data for m365clarity.com.
Your consent choices
Because all cookies used by M365Clarity are strictly necessary for the service to function, they are exempt from consent requirements under UK PECR Regulation 6(4). You do not need to accept them — they are used automatically as part of providing the service.
We display a cookie notice on first visit to be transparent about our practices. Clicking "Accept all" or "Reject optional" both record your acknowledgement. Since we have no optional cookies, the functional outcome is the same either way.
How to control or delete cookies
You can control cookies through your browser settings:
- Chrome: Settings → Privacy and Security → Cookies and other site data
- Firefox: Settings → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Manage Website Data
- Edge: Settings → Cookies and site permissions
Note that blocking essential cookies will prevent M365Clarity from functioning correctly — specifically, the Microsoft OAuth sign-in flow will not complete.
Changes to this policy
If we introduce new cookies (for example, if we add an analytics tool), we will update this policy and re-display the consent notice. We will not introduce non-essential cookies without providing a genuine choice.
Contact
Questions about our cookie use: support@m365clarity.com