Essential browser storage
Cookie notice
Effective 24 August 2026 · Version 1.0
Essential session cookie
The staff portal uses a secure session cookie after successful authentication. It is HttpOnly, Secure in non-local environments and SameSite=Strict. It is required to keep the workspace protected and is removed during sign-out.
Operational storage
The application may use short-lived browser or platform storage needed for security, routing and reliability. It must not store plaintext passwords or tenant authority in client-controlled storage.
Analytics and third parties
No public promise is made that future institution deployments will use identical analytics. Any non-essential analytics or third-party technology must undergo privacy review and, where required, consent configuration before activation.
Questions and formal requests
Email compliance@duruj.io for privacy and data-subject matters, or sales@duruj.io for institutional enquiries. Contract notices must use the address specified in the applicable agreement.