| [ Web Proxy ] |
| Viewing: https://stripe.com/en-mx/cookie-settings | [Back] [Original] |
|
Domain
|
Type
|
Duration
|
|
|---|---|---|---|
|
__ps_did
Stores a unique anonymous device ID (pscrb_). Used to recognize returning browsers for analytics and attribution. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 1 year |
|
__ps_fva
Stores the timestamp (in milliseconds) of the first visit. Used to measure customer journey duration and return frequency. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 1 year |
|
__ps_lu
Stores the first landing page URL where the user entered the site. Used for attribution and analytics. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 1 year |
|
__ps_r
Stores the first referrer URL (the original source that brought the user to the site). Used for first-touch attribution. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 1 year |
|
__ps_slu
Stores the session landing page URL for the current visit. Refreshed each session. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 30 minutes |
|
__ps_sr
Stores the session referrer for the current browsing session. Used for session-level attribution. Set by Podscribe's advertising measurement pixel. |
.stripe.com | Third party | 30 minutes |
|
__Secure-webchat_qualification
Stores your qualification to chat directly with a Stripe sales representative. |
.stripe.com | First party | 1 week |
|
_cfduid
Used by Zoominfo websights to identify what companies are visiting our website and are interested in using Stripe |
.stripecdn.com, .stripe.com, .go.stripe.global | First party | 1 year |
|
_fbp
Used for Stripe's marketing teams to optimize advertising on Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 3 months |
|
_ga
Enriches web analytics and form submissions with firmographic data, controlled by a Clearbit script. |
.stripe.com, .stripe.events, .go.stripe.global | Third party | 1 year |
|
_gac_gb_G-SEKFWD1C9J
Provides information on the marketing campaign originally clicked on to get to Stripe.com. |
.stripe.com, .go.stripe.global | Third party | 60 days |
|
_ga*
Automatically created by a Google Analytics script to track a user's page views and clicks with a unique ID, without revealing who you are. |
.stripe.com, .stripe.events, .go.stripe.global, .portal.stripe.partners, .onelink.com | Third party | 60 days |
|
_gcl_au
Stores Google Marketing campaign information. Used to determine when you click an ad and later visit the linked site. |
.stripe.com, .go.stripe.global | Third party | 3 months |
|
_guid
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 1 day |
|
_ldbrbid
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on LINE and visits to our ad partners' websites |
.line.me, .stripe.com, .go.stripe.global | Third party | 6 months |
|
_ly_c
This cookie is used by Yahoo Japan ads to measure click ID. |
.yahoo.co.jp | Third party | 90 days |
|
_ly_r
This cookie is used by Yahoo Japan ads to to measure event on the website domain. |
.yahoo.co.jp | Third party | 90 days |
|
_ly_su
This cookie is used by Yahoo Japan ads to measure a unique identifier within the website domain. |
.yahoo.co.jp | Third party | 90 days |
|
_mkto_trk
Set by our marketing automation platform, Marketo, to track how marketing email recipients use Stripe's websites, measure campaign effectiveness, and show you more relevant content. |
.stripecdn.com, .stripe.com, .go.stripe.global | Third party | 2 years |
|
_pxhd
Used by Zoominfo websights to identify what companies are visiting our website and are interested in using Stripe |
.stripecdn.com, .stripe.com, .go.stripe.global | First party | 1 year |
|
_rdt_uuid
Reddit uses cookies to improve your browsing experience, remember your preferences, and help keep the site secure. Some cookies are essential for site functionality, while others support analytics and personalized content. |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 90 days |
|
_uetmsclkid
A Microsoft click identifier cookie that stores information about a Microsoft ad click so we can measure what happens after you click one of our ads. It is a first-party cookie set on this site's domain and is used to improve the accuracy of conversion tracking in Microsoft Advertising, in line with your cookie preferences. |
.stripe.com | First party | 90 days |
|
_uetsid
A Microsoft cookie that stores a session ID and related session details to understand how your browser interacts with the site during a single visit. It is used by the UET tag for session-based measurement and advertising analytics, in line with your cookie preferences. |
.stripe.com | First party | 24 hours |
|
_uetvid
A Microsoft cookie that stores a unique, pseudonymized visitor ID and related details so the UET tag can recognise returning browsers over time. It is used as a first party cookie for advertising measurement and audience management, in line with your cookie settings. |
.stripe.com | First party | 13 months |
|
_ycla_aw
This cookie is used by Yahoo Japan ads to deliver retargeted advertising. |
.yahoo.co.jp | Third party | 90 days |
|
aam_uuid
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 30 days |
|
AMCV_*
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 1 year |
|
AnalyticsSyncHistory
Created by LinkedIns tracking script and used by LinkedIn to track the last time analytics data was synced. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 30 days |
|
bcookie
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 2 years |
|
c_user
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.clearbit.com, .facebook.com, .go.stripe.global, .stripe.com, .stripe.events | Third party | 1 year |
|
csv
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 6 months |
|
datr
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 2 years |
|
dpr
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 1 week |
|
edgebucket
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 15 months |
|
fr
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 3 months |
|
GPS
Used so that other Google properties can show you more relevant ads. |
.youtube.com | Third party | 30 minutes |
|
guest_id
Used by Stripe's marketing teams to optimize advertising on Twitter and track conversions. |
.twitter.com, .stripe.com, .go.stripe.global | Third party | 2 years |
|
guest_id_ads
Used by Stripe's marketing teams to optimize advertising on Twitter and track conversions. |
.twitter.com, .stripe.com, .go.stripe.global | Third party | 2 years |
|
guest_id_marketing
Used by Stripe's marketing teams to optimize advertising on Twitter and track conversions. |
.twitter.com, .stripe.com, .go.stripe.global | Third party | 2 years |
|
IDE
Facilitates remarketing on other websites with the DoubleClick ad network. |
.doubleclick.net | Third party | 2 years |
|
imt
Remembers how you entered Stripe's website to help our marketing teams set goals and measure campaign performance. |
stripe.com, stripecdn.com | Local storage | N/A |
|
li_oatml
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 1 month |
|
li_sugr
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 3 months |
|
liap
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 1 year |
|
lidc
Created by LinkedIns tracking script and used by LinkedIn to remarket website visitors via LinkedIn. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global, .stripe.events | Third party | 24 hours |
|
lissc
Created by LinkedIns tracking script and used by LinkedIn to provide device characteristics and user activity indicators across page views. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 6 months |
|
loid
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 6 months |
|
m-ans_frontend_early_version
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 2 years |
|
m-b
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 2 years |
|
m-b_lax
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 2 years |
|
m-b_strict
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 2 years |
|
m-s
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 2 years |
|
m-tz
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 1 year |
|
m-uid
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Quora and visits to our ad partners' websites. |
.stripe.com, .go.stripe.global, .stripe.events | Third party | 22 months |
|
MR
A Microsoft cookie that records a simple on/off flag. It is created when you visit Microsoft properties or when the UET tag sends data to Microsoft, and it is used for measurement and matching. |
.stripe.com | Third party | 13 months |
|
MSPTC
A Microsoft cookie that stores a pseudo-anonymized visitor ID used by the UET tag to recognize unique visitors and support privacy-aware features in the browser. It is used for measurement and audience management and respects your cookie settings. |
.stripe.com | Third party | 13 months |
|
muc_ads
Used by Stripe's marketing teams to optimize advertising on Twitter and track conversions. |
.t.co, .stripe.com, .go.stripe.global | Third party | 2 years |
|
MUID
A Microsoft cookie that stores a unique browser identifier (GUID) when you interact with Microsoft services or when our UET tag sends a beacon. It helps recognise returning browsers for advertising, measurement and personalised ads and is used according to your cookie preferences. |
.stripe.com | Third party | 13 months |
|
over18
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 18 months |
|
personalization_id
Used by Stripe's marketing teams to optimize advertising on Twitter and track conversions. |
.twitter.com, .stripe.com, .go.stripe.global | Third party | 2 years |
|
recent_srs
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 2 years |
|
sb
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 2 years |
|
sdsc
Set by LinkedIn on the careers pages and is used for the 'Apply with LinkedIn' function. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 1 year |
|
session_tracker
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | session |
|
sp_adid
Spotify sets this cookie to enable tracking of users and non-users across domains. |
spotify.com, stripe.com | Third party | 1 year |
|
sp_landing
Spotify sets this cookie to implement audio content from Spotify on the website and also registers information on user interaction related to the audio content. |
spotify.com, stripe.com | Third party | 1 year |
|
sp_t
Spotify sets this cookie to implement audio content from Spotify on the website and also registers information on user interaction related to the audio content. |
spotify.com, stripe.com | Third party | 1 year |
|
spin
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 2 years |
|
spl
Session cookie used by splashthat for identification of visitors to event marketing pages that they host. |
.stripe.events | Third party | 1 year |
|
token_v2
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Reddit and visits to our ad partners' websites |
.reddit.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 2 years |
|
TTD_PID
This pixel enables Madison Logic to track site visit behavior by account for improved campaign reporting. |
.adsrvr.org | Third party | 12 months |
|
tuuid
Used for advertising services provided by Demandbase products. |
.demandbase.com, .stripe.com | Third party | 2 years |
|
tuuid_lu
Used for advertising services provided by Demandbase products. |
.demandbase.com, .stripe.com | Third party | 2 years |
|
U
Created by LinkedIns tracking script and used by LinkedIn to identify browsers. |
.adsymptotic.com, .stripe.com, .go.stripe.global | Third party | 3 months |
|
uid
This pixel is used by Madison Logic for analytics and advertising services to track visits to the site at the account level. |
.ml-attr.com | Third party | 13 month |
|
UserMatchHistory
This cookie is used by LinkedIn Ads to help Stripe measure advertising performance. |
.stripe.com, .linkedin.com, .ads.linkedin.com, .go.stripe.global | Third party | 30 days |
|
VISITOR_INFO1_LIVE
Used by YouTube to enable recommendations and analytics. Also used to detect and resolve problems with the service. |
.youtube.com | Third party | 6 months |
|
VisitorId
Used by Zoominfo websights to identify what companies are visiting our website and are interested in using Stripe |
.stripecdn.com, .stripe.com, .go.stripe.global | First party | 1 year |
|
wd
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 1 week |
|
XA
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Yahoo! Japan and visits to our ad partners' websites. |
.yahoo.co.jp, .go.stripe.global | Third party | 1 year |
|
XB
To help us deliver ads, measure their performance, and make them more relevant to you based on criteria like your activity on Yahoo! Japan and visits to our ad partners' websites. |
.yahoo.co.jp, .go.stripe.global | Third party | 20 months |
|
xs
Set by Facebook to provide device characteristics and user activity indicators when visiting stripe.com while logged into Facebook. |
.facebook.com, .stripe.com, .stripe.events, .go.stripe.global | Third party | 1 year |
|
YSC
Used to keep statistics of what videos you have seen. |
.youtube.com | Third party | session |
|
yt-remote-connected-devices
Used to store YouTube video player preferences. |
youtube.com | Local storage | N/A |
|
yt-remote-device-id
Used to store YouTube video player preferences. |
youtube.com | Local storage | N/A |
|
yt.innertube::nextId
Used by YouTube to queue the next video. |
youtube.com | Local storage | N/A |
|
yt.innertube::requests
Used to remember which YouTube videos have already been watched. |
youtube.com | Local storage | N/A |
|
Domain
|
Type
|
Duration
|
|
|---|---|---|---|
|
__cf_bm
This cookie is necessary for bot solutions to function properly. |
.zoominfo.com | First party | 30 minutes |
|
__Host-onelink_uk_banner_dismissed
Remembers that you have dismissed the Onelink UK launch banner, so it is not shown again on subsequent page loads. |
onelink.com, app.onelink.com, support.onelink.com | First party | 7 days |
|
__Host-privacy-csat
The cookie remembers if the user has previously interacted with the Privacy Portal customer satisfaction dialog in the last month. |
privacy.stripe.com | First party | 1 month |
|
__Secure-sid
Tracks activity in a browsing session across Stripe websites. |
.stripe.com, .onelink.com | First party | 30 minutes |
|
__stripe_orig_props
Remembers how you got to our website, including the URL you came from and the Stripe page you originally landed on. |
.stripe.com | First party | 1 year |
|
_cfuvid
Applies rate limits to traffic where multiple unique visitors share the same IP address. |
.zoominfo.com | First party | session |
|
_gat
Automatically created by a Google Analytics script to throttle the request rate to Google Analytics. |
.stripe.com, .stripe.events, .go.stripe.global, .portal.stripe.partners | Third party | 1 minute |
|
_gat_stripe_com
Automatically created by a Google Analytics script to throttle the request rate to Google Analytics. |
.stripe.com, .stripe.events, .go.stripe.global | Third party | 1 minute |
|
_gat_UA-12675062-14
Automatically created by a Google Analytics script to throttle the request rate to Google Analytics. |
.onelink.com | Third party | 1 minute |
|
_gat_UA-12675062-5
Automatically created by a Google Analytics script to throttle the request rate to Google Analytics. |
.stripe.com | Third party | 1 minute |
|
_gid
Automatically created by a Google Analytics script to track a users page views and clicks with a unique ID, without revealing who you are. |
.stripe.com, .go.stripe.global, .onelink.com, .portal.stripe.partners | Third party | 1 day |
|
_zitok
It's a first party cookie for maintaining a unique visitor identifier. |
b.stripecdn.com | First party | 1 year |
|
allow-unsupported-browser
Remembers your choice to use an unsupported browser so that we don't keep prompting you to switch to a supported one. |
.stripe.com | First party | session |
|
ark_in_cad_opt_out
Remembers your choice to temporarily use the old version of the connected account detail page. |
.stripe.com | First party | 1 week |
|
atlas_invite
Applies relevant promotional incentives if you signed up through an invitation link. |
.stripe.com | First party | session |
|
balances_overview_view_mode_setting
Remembers the last selected view mode on the balances overview page. |
dashboard.stripe.com | Local storage | N/A |
|
bfcm-2025-settings
Used to store the user's settings for the BFCM 2025 microsite. |
bfcm.stripe.com | Local storage | N/A |
|
billing_overview_settings.date_picker
Remembers the date range and comparison selection on the Billing Overview tabs. |
dashboard.stripe.com | Local storage | N/A |
|
biznet-landing-hero-profiles
Caches the randomly selected hero profiles shown on the Business Network landing page (1-hour TTL). |
dashboard.stripe.com | Local storage | N/A |
|
business_intents_data
Stores product recommendations that are used during Dashboard onboarding. |
.stripe.com | First party | 1 hour |
|
china_info_notification_dismissed
This cookie records that you have closed (dismissed) a China-specific informational notice shown on the site. It is used only to remember that choice so the same notice is not shown again during the same browser session. It does not contain your name or contact details to perform this function. |
.stripe.com | First party | session |
|
cid
Tracks browsing activity across the site, including whether you interacted with advertisements. |
.stripe.com, .onelink.com | First party | 3 months |
|
color-scheme
Remembers whether you want a light or dark color scheme in the API reference. |
.stripe.com | First party | 6 months |
|
connect.growth.recommendations.amount_filter
Remembers the user's recommendation amount filter preference on the Connect Growth recommendations page. |
dashboard.stripe.com | Local storage | N/A |
|
connect_overview_settings
Remembers the date range, comparison and granularity selection on the Connect Overview page. |
dashboard.stripe.com | Local storage | N/A |
|
crypto.wallet_prefs
Used to remember user crypto wallet preferences. |
crypto.stripe.com, crypto.onelink.com | Local storage | N/A |
|
dashboard.nav-collapsed
Stores the collapsed/expanded state of the dashboard navigation. |
dashboard.stripe.com | Local storage | N/A |
|
dashboard.recent-metadata-keys
Stores recently used metadata keys for input suggestions in the payments list metadata filter. |
dashboard.stripe.com | Local storage | N/A |
|
dashboard.setup-guide-closed
Stores the closed/opened state of the dashboard setup guide. |
dashboard.stripe.com | Local storage | N/A |
|
dashboard.setup-guide-collapsed
Stores the collapsed/expanded state of the dashboard setup guide. |
dashboard.stripe.com | Local storage | N/A |
|
developers.apps.detail.permissionMigrationCallout.dismissed
Remembers whether you dismissed the permission migration callout notice on the app details page. |
dashboard.stripe.com | Local storage | N/A |
|
disable_cmd_f_override
Disables the Cmd/Ctrl + F shortcut in Stripe's API reference. Uses the browser's default behavior instead to search the page. |
.stripe.com | First party | 6 months |
|
docs.prefs
Remembers preferences that you selected in our docs. |
.stripe.com, .dev.stripe.me | First party | 6 months |
|
double_cmd_f_uses
Tracks your use of the Cmd/Ctrl + F shortcut in Stripe's API reference. If you already use it or have opted out a certain number of times, we stop suggesting it. |
.stripe.com | First party | 6 months |
|
eid
Used for A/B testing Stripe Checkout features. Remembers which experiment you're in. |
.checkout.stripe.com | First party | 2 months |
|
ev
Controls which variant of Stripe sites you see when were experimenting with the site's look and feel. This ensures you will get a consistent experience. |
.stripe.com | First party | 2 months |
|
expanded-topics
Remembers which topics are expanded in Stripe's API reference between page refreshes. |
.stripe.com | First party | 6 months |
|
express_theme_preference
Remembers the user selected theme preference in the express dashboard. |
connect.stripe.com | Local storage | N/A |
|
gh_src
Measures the effectiveness of our job listings outside of Stripe's websites. |
.stripe.com | First party | 2 years |
|
glance-cobrowse-storage
Remembers if a tab in dashboard has an active screenshare session, and conditionally loads screensharing assets. |
dashboard.stripe.com | Session storage | session |
|
glance_ssn_info
This cookie is used by a third party to track and rejoin any active support screensharing sessions |
dashboard.stripe.com, dev.stripe.me | Third party | 8 hours |
|
has_intentionally_selected_curl
Remembers whether you explicitly chose to view docs with curl. |
.stripe.com | First party | 6 months |
|
invite
Remembers that you signed up via a promotional invitation link so that Stripe applies the relevant discounts even if you don't sign up right away. |
.stripe.com | First party | 6 months |
|
keyboard_shortcuts
Stores the user's preference for enabling or disabling keyboard shortcuts in the dashboard. |
dashboard.stripe.com | Local storage | N/A |
|
lang
Remembers which programming language is selected for the code examples in Stripe's docs. |
.stripe.com | First party | 6 months |
|
list_view_spotlight_last_dismissed
Stores the last date that the Dashboard list view spotlight was dismissed so it is shown at most once per day across list views. |
dashboard.stripe.com | Local storage | N/A |
|
lsid
Serves as a fallback for the cid cookie. |
stripe.com, .onelink.com | Local storage | N/A |
|
merchant
To prevent fraud, enables Stripe to determine the merchant ID in the Stripe Dashboard. |
.stripe.com | First party | session |
|
payment_method_settings.connect
Remembers the last viewed payment method configuration on the Connect payment method settings page. |
dashboard.stripe.com | Local storage | N/A |
|
payment_method_settings.direct
Remembers the last viewed payment method configuration on the payment method settings page. |
dashboard.stripe.com | Local storage | N/A |
|
payment_methods_settings_platform
Remembers the last viewed platform on your payment methods settings page. |
.stripe.com | First party | 6 months |
|
personalizations
For new features and A/B testing, remembers which version of the docs you're in so that we show you the right UI and features. |
support.stripe.com | Local storage | N/A |
|
recent-views
Remembers your last few visits to the Stripe docs, including the page and timestamp, to help you pick up where you left off. |
.stripe.com | First party | 1 year |
|
register_login_redesign
Toggles a frontend experiment treatment triggered from the register/login page |
dashboard.stripe.com | Session storage | session |
|
register_login_redesign
Used to enable a visual redesign of certain dashboard pages such as register and login. |
dashboard.stripe.com | Local storage | N/A |
|
sca_migration_not_started_alert_actioned
Temporarily hides the reminder to update your integration for Strong Customer Authentication. |
.stripe.com | First party | 7 days |
|
sdp.export_plan_tab_order
Stores the user's preferred ordering of export plan tabs on the Data Pipeline delivery dashboard. |
dashboard.stripe.com | Local storage | N/A |
|
site_sid
Anonymously provides device characteristics and user activity indicators across stripe.com to help us improve our site. |
.stripe.com | First party | 2 hours |
|
skip_mismatched_country_check
Sometimes a user accesses a country-specific version of the docs that doesn't match the location of their IP address. Remembers that you closed the notification in this case so that we don't keep prompting you to switch countries. |
.stripe.com | First party | session |
|
skip_tfa_interrupt
Remembers your preference to skip two-factor authentication so that we don't show it the next time you log in. |
.stripe.com | First party | 30 days |
|
universal_chat_cta_card_dismissed
Stores whether the user has dismissed the universal chat CTA card, so it is not shown again during the same browser session. |
.stripe.com | Session storage | session |
|
user
To prevent fraud, enables Stripe to determine the user in the Stripe Dashboard. |
.stripe.com | First party | session |
|
user_last_activity_ts
Used to store the last activity timestamp of the user. |
connect.stripe.com, support.stripe.com | Local storage | N/A |
|
verification-session-create--verification-flow-toggle--value
Remembers the last chosen option for VerificationSession creation on the Identity pages. |
dashboard.stripe.com | Local storage | N/A |
|
workbenchState
Remembers the state of Workbench, such as the last active tab, sizing, etc. |
dashboard.stripe.com | Session storage | session |
|
workbenchState
Remembers the state of Workbench, such as the last active tab, sizing, etc. |
dashboard.stripe.com | Local storage | N/A |
|
*_dismissed
Remembers whether you dismissed a notice on support.stripe.com. |
support.stripe.com | Local storage | N/A |
|
Domain
|
Type
|
Duration
|
|
|---|---|---|---|
|
1
Tests whether sessionStorage is available in the browser or whether fallback mechanisms are needed for basic functions. |
m.stripe.network | Session storage | session |
|
__Host-arct_token
Stores the account recovery cancel token |
dashboard.stripe.com | First party | session |
|
__Host-auth_token
Authenticates your identity & grants you authorization for Stripe V2 APIs. |
dashboard.stripe.com, docs.stripe.com, marketplace.stripe.com, support.stripe.com, access.stripe.com, invoicedata.stripe.com | First party | 90 days |
|
__Host-cliauth_token
Lets you log in to the Stripe CLI with your Stripe account from the command line. |
dashboard.stripe.com | First party | 30 minutes |
|
__Host-delegated_support_auth
This cookie is used to authenticate the user for creating support cases via delegated authentication |
support.stripe.com | First party | 24 hours |
|
__Host-has_recently_requested_netsuite_connector_*
Used to remember whether a merchant has requested to install the Stripe Netsuite Connector app. |
marketplace.stripe.com | First party | 7 days |
|
__Host-has_recently_requested_salesforce_cpq_connector_*
Used to remember whether a merchant has requested to install the Salesforce CPQ Connector app. |
marketplace.stripe.com | First party | 7 days |
|
__Host-has_recently_requested_sap_connector_*
Used to remember whether a merchant has requested to install the Stripe SAP Connector app. |
marketplace.stripe.com | First party | 7 days |
|
__Host-LinkSession
Stores consumer credentials to provide a one click payment experience at checkout. |
checkout-cookies.stripe.com, merchant-ui-api.stripe.com | First party | 1 year |
|
__Host-oauth_acf_secret
Used to enhance security in OAuth authentication flows |
dashboard.stripe.com | First party | 10 minutes |
|
__Host-oauth_code_verifier
Used to enhance security in OAuth authentication flows |
dashboard.stripe.com | First party | 16 minutes |
|
__Host-oauth_it_token
Indicates when two-factor authentication is required, for SCA compliance. |
dashboard.stripe.com | First party | 16 minutes |
|
__Host-oauth_registration_token
Used to reference temporarily stored data during 2-step OAuth registration process |
dashboard.stripe.com | First party | 10 minutes |
|
__Host-oauth_security_token
Used to enhance security in OAuth authentication flows |
dashboard.stripe.com | First party | 16 minutes |
|
__Host-saml_auth_result
Stores details about the most recent single sign-on based login, such as timestamp, and status, which are used to detect when a the saml re-authentication flow succeeds. |
dashboard.stripe.com | First party | 60 seconds |
|
__Host-sandbox_assignment
Tracks anonymous sandbox assignments. |
docs.stripe.com, dashboard.stripe.com | First party | 1 week |
|
__Host-session
Determines your identity when authenticating to the Stripe Dashboard (so that you can log in to the right account). |
support.stripe.com, support-conversations.stripe.com, stripe.com, dashboard.stripe.com, connect.stripe.com, express.stripe.com, marketplace.stripe.com, docs.stripe.com, access.stripe.com, workbench.stripe.com, invoicedata.stripe.com, manage.stripe.com, billing.stripe.com, pay.stripe.com | First party | 90 days |
|
__Host-sessions_on_demand_qualified
Persists state of being able view gated video content for sessions on demand videos |
stripe.com | First party | session |
|
__Host-shopify_app_session
Set as part of the Shopify BYOG Onboarding flow to validate the oauth process |
sbyog-ppp-external.stripe.com | Third party | 24 hour |
|
__Host-stripe.customerportal.sid
Prevents attackers from taking over a customer portal session via phishing. |
billing.stripe.com | First party | 24 hours |
|
__Host-stripe.link_app.csrf
Prevents attackers from making requests that change user data to Link from other websites. |
app.onelink.com | First party | session |
|
__Host-stripe.link_support_site.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
support.onelink.com | First party | session |
|
__Host-stripe.mkt.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
stripe.com, press.stripe.com, link.com, edge.stripe.com, edge-press.stripe.com, onelink.com | First party | session |
|
__Host-stripe.paywall.token
Determines your identity so you can access purchased content or make new purchases. |
paywall.stripe.com | First party | 1 hour |
|
__Host-stripe.site.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
stripe.com | First party | session |
|
__Host-stripe.sources_redirect_site.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
hooks.stripe.com | First party | session |
|
__Host-stripe.support_site.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
support.stripe.com, edge-support.stripe.com | First party | session |
|
__Host-tax_connectors_bigcommerce_oauth_nonce
Prevents attackers from hijacking a merchant's authentication by ensuring the OAuth callback request genuinely came from the initiated login session. |
tax-connectors.stripe.com | First party | 5 minutes |
|
__Host-unauthenticated_support_identity
Identify unauthenticated users to remain connected to a live support session to enable a continuous support experience. |
support.stripe.com, support.onelink.com, support-conversations.stripe.com, edge-support-conversations.stripe.com, support-conversations.onelink.com, dashboard.stripe.com, edge-dashboard.stripe.com | First party | session |
|
__Host-upsess
User privacy-related session identifier. The cookie allows visitors who are authenticated in the Data Access Tool to visit their data report and take further action related to their data, like exporting data or requesting deletion. |
privacy.stripe.com | First party | 30 minutes |
|
__Host-webchat_state
Tracks various chat session states, chatterminated, expanded, surveysubmitted & navcooldowndate, allowing us to keep track of previous & current states of the application to drive UI interactions. |
sales-live-chat.stripe.com, stripe.com | First party | session |
|
__Host-webchat_survey
Stores post engagement session survey form data, allowing us to provide the user with the expected UI interaction upon form submission. |
sales-live-chat.stripe.com | First party | 1 week |
|
__Host-webchat_widget
Tracks current or previous chat sessions with our sales representatives, allowing you to continue chats while navigating the site or returning after leaving. |
sales-live-chat.stripe.com | First party | 1 week |
|
__Secure-1PAPISID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-1PSID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-1PSIDCC
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-3PAPISID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-3PSID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-3PSIDCC
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
__Secure-f-visitor-id
Identifier used to combat fraudulent activity across Link. |
.stripe.com, .stripecdn.com, .onelink.com | First party | 24 hours |
|
__Secure-has_logged_in
Changes the sign-in button depending on whether a browser has previously logged in. |
.stripe.com | First party | 6 months |
|
__Secure-HasLoggedIntoLinkApp
This cookie is used to keep track of whether the user has ever successfully logged into Link app in a given browser. It allows us to display correct / relevant messaging on our landing site link.com. |
.onelink.com | First party | 6 months |
|
__Secure-IsLoggedIntoLinkApp
This cookie is used to keep track of whether the user is currently logged into Link app in a given browser. It allows us to display correct / relevant messaging on our landing site link.com. |
.onelink.com | First party | 6 months |
|
__Secure-LinkSessionPresent
Indicates whether the __Host-LinkSession cookie is present. |
.stripe.com, .onelink.com | First party | 1 year |
|
__Secure-PaymentMethodSelections-PayByBank
Remembers pay by bank payment method selections when requested by the user. |
checkout-cookies.stripe.com, merchant-ui-api.stripe.com | First party | 6 months |
|
__Secure-stripe.link_app.last_link_brand
Remembers Link vs Onelink branding from the last authenticated session so logged-out requests can match that preference instead of inferring from IP alone. |
.onelink.com | First party | 24 hours |
|
__stripe_mid
Set for fraud prevention purposes and helps us assess the risk associated with an attempted transaction. Learn more about advanced fraud detection. |
.checkout.stripe.com, .onelink.com, request | First party | 1 year |
|
__stripe_sid
Set for fraud prevention purposes and helps us assess the risk associated with an attempted transaction. Learn more about advanced fraud detection. |
.checkout.stripe.com, .onelink.com, request | First party | 30 minutes |
|
_ab
Set for fraud prevention purposes and helps us assess the risk associated with an attempted transaction. Learn more about advanced fraud detection. |
m.stripe.network | Session storage | session |
|
_forum_session
Lets you access the Stripe Atlas Community forum. |
.discuss.stripe.community | Third party | session |
|
_GRECAPTCHA
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.stripe.com | Third party | 6 months |
|
_mf
Set for fraud prevention purposes and helps us assess the risk associated with an attempted transaction. Learn more about advanced fraud detection. |
m.stripe.network | Session storage | session |
|
_px2
Set by a third party captcha platform, Human Security, to detect bot activity. |
.stripecdn.com | Third party | 1 week |
|
_px3
Associated with PerimeterX, a bot detection service, and acts as a session indicator cookie used to identify legitimate users on a website |
.zoominfo.com, .stripecdn.com | First party | 1 week |
|
_pxcts
Set by a third party captcha platform, Human Security, to detect bot activity. |
.stripecdn.com | Third party | session |
|
_pxvid
Set by a third party captcha platform, Human Security, to detect bot activity. |
.stripecdn.com | Third party | 1 week |
|
_t
Lets you access the Stripe Atlas Community forum. |
.discuss.stripe.community | Third party | 2 months |
|
act_token
Stores the account confirmation emails secret token. |
dashboard.stripe.com | First party | session |
|
APISID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
apps_oauth_state
Used to enable some OAuth workflows in the Dashboard. |
dashboard.stripe.com | Local storage | N/A |
|
art_token
Stores the account recovery token |
dashboard.stripe.com | First party | session |
|
cbt_token
When a user is confirming a bank account change, via an email link, we set this cookie to the secret token given in the email. This avoids us keeping the secret token in the url as the user moves through the process. |
dashboard.stripe.com, connect.stripe.com | First party | session |
|
connect_locale
Remembers your language preference from Connect signup and Dashboard pages so that you can read site content in your selected language. |
.connect.stripe.com, .express.stripe.com | First party | session |
|
cookie-perms
Stores a user's cookie permissions. |
.stripe.com, .stripe.dev, .go.stripe.global, .increment.com, .onelink.com | First party | 6 months |
|
country
Ensures you see the correct content (like product offerings) on stripe.com for the country you're in. |
.stripe.com, .onelink.com | First party | session |
|
dashboard.banner-dismissals
Stores the dismissal state of Dashboard banners. |
dashboard.stripe.com | Local storage | N/A |
|
dashboard.tab-context
Stores the current browser tab's Dashboard context (e.g. merchant id). |
dashboard.stripe.com | Session storage | session |
|
datadome
Set by a third party captcha platform, Datadome, to detect bot activity. |
.stripecdn.com | Third party | 1 week |
|
docs
Remembers the state of elements in docs between sessions. (IndexedDB) |
.stripe.com | Local storage | N/A |
|
easel_position
While testing Elements integrations, a developer can set the position of the test mode tool on the screen. This local storage item allows us to persist the position they selected when they refresh their page. |
js.stripe.com | Local storage | N/A |
|
easel_read_message_ids
While testing Elements integrations in testmode, tracks which developer tool notifications the developer has already viewed so the unread indicator does not reappear on page reload. |
js.stripe.com | Local storage | N/A |
|
easel_test_customer_location
While testing Elements integrations, a developer can set a test customer location to test the checkout flow from the perspective of a customer in a specific country. This local storage item allows us to persist the location they selected when they refresh their page. |
js.stripe.com | Local storage | N/A |
|
handoff
Determines your identity when authenticating to the Stripe Dashboard on stripe.com domains (so that you can log in to the right account). |
.stripe.com | First party | 25 hours |
|
HSID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
id
Set for fraud prevention purposes and helps us assess the risk associated with an attempted transaction. Learn more about advanced fraud detection. |
m.stripe.network | Session storage | session |
|
lc_token
Stores the inactive account email challenge's secret token |
dashboard.stripe.com | First party | session |
|
link.auth_session_client_secret
Provide a logged-in experience when a consumer uses Stripe-hosted payment UIs to make purchases and Crypto Onramp to purchase crypto. Provide a personalized button with last 4 card digits when a consumer sees Link in the Payment Request Button and Card Element. |
js.stripe.com, crypto-js.stripe.com, buy.stripe.com, donate.stripe.com, book.stripe.com, checkout.stripe.com, crypto.onelink.com, checkout.onelink.com, .onelink.com | Local storage | N/A |
|
link_app.subscription_card_dismissed
Stores whether the subscription card has been dismissed in Link app |
.onelink.com | Session storage | session |
|
locale
Controls the language on stripe.com to deliver a reading experience in the language you expect. |
.stripe.com, .onelink.com | First party | session |
|
logged_user
Stores the identifier of the currently logged-in user to track changes made to it; for instance, when logging out and logging in with a different user. |
dashboard.stripe.com, docs.stripe.com | Local storage | N/A |
|
m
For fraud detection. Helps Stripe assess the risk associated with an attempted transaction on the your website. Read more about advanced fraud detection. |
.m.stripe.com | First party | 2 years |
|
machine_identifier
To prevent fraud, enables Stripe to determine the computer being used on the Stripe Dashboard. |
.stripe.com | First party | 1 year |
|
ndcd
Set by Mastercard when the Stripe ACS is used to authenticate 3D-Secure payments. This cookie facilitates device detection in order to enhance fraud detection and prevention as well as to identify suspicious devices or devices that are behaving abnormally. |
.acs.touch.tech, .idcheck.acs.touchtechpayments.com, .verifiedbyvisa.acs.touchtechpayments.com | Third party | 1 year |
|
NID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
pay_sid
Stores consumer credentials such that users can stay logged in at Link Marketing, Support and Web App sites. |
.onelink.com, .dev.stripe.me | First party | 1 year |
|
pricing_session
Stores a session key and browser selections such as currency preference which are used to ensure consumers see correct pricing throughout their session that remains consistent until payment. Only applicable to users of the Stripe.js Pricing SDK. |
js.stripe.com | Local storage | N/A |
|
private_machine_identifier
Identifies the computer across login sessions and users to prevent fraud. |
.stripe.com | First party | 1 year |
|
prt_token
Stores the account password reset token |
dashboard.stripe.com | First party | session |
|
pxcts
Set by a third party captcha platform, Human Security, to detect bot activity. |
.stripecdn.com | Third party | session |
|
rc::a
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
stripe.com, www.recaptcha.net | Local storage | N/A |
|
rc::b
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
stripe.com, www.recaptcha.net | Session storage | session |
|
rc::c
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
stripe.com, www.recaptcha.net | Session storage | session |
|
rc::f
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
stripe.com, www.recaptcha.net | Local storage | N/A |
|
request_sign_key
Used to sign requests to improve the security posture. |
dashboard.stripe.com | Local storage | N/A |
|
saml_login_result
Stores details about the most recent SAML integration test, i.e., test results, status, and test request ID, which are used to display saml configuration problems. |
.stripe.com | First party | session |
|
saml_sca_success_for_*
Ensures that you've re-authenticated before performing sensitive actions in the Stripe Dashboard, as defined by SCA regulations. |
dashboard.stripe.com | First party | 30 seconds |
|
samlit_email
Identifies your email during SSO session authentication for restricted actions. |
dashboard.stripe.com | First party | 16 minutes |
|
samlit_token
Indicates when two-factor authentication is required, for SCA compliance. |
dashboard.stripe.com | First party | 16 minutes |
|
SAPISID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
scfc
Fixes bugs on our website in certain situations by forcing the browser cache to clear. |
.stripe.com | First party | 1 year |
|
SID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
SIDCC
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
site-auth
Remembers whether you're logged in to the Stripe Dashboard. |
.stripe.com | First party | session |
|
SSID
reCAPTCHA sets a necessary cookie when executed for the purpose of providing its risk analysis. |
.google.com | Third party | 1 year |
|
stripe-assistant-is-open
Tracks whether or not the Stripe Assistant drawer is open. If true, on refresh the assistant will automatically reopen. |
dashboard.stripe.com | Session storage | session |
|
stripe.appmarketplace.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
marketplace.stripe.com | First party | session |
|
stripe.climate.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
climate.stripe.com, edge-climate.stripe.com | First party | session |
|
stripe.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
.stripe.com | First party | session |
|
stripe.customerportal.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
billing.stripe.com | First party | session |
|
stripe.delegated-authentication.csrf
Prevents attackers from making requests that create multiple objects in our backend. |
delegated-authentication.stripe.com | First party | 30 minutes |
|
stripe.docs.csrf
Prevents attackers from making requests that change user data to Stripe from other websites. |
docs.stripe.com, edge-docs.stripe.com | First party | session |
|
stripe.paywall.token
Determines your identity so you can access purchased content or make new purchases. |
paywall.stripe.com | Local storage | N/A |
|
svt_token
Securely stores the support token confirmation email's secret token. |
dashboard.stripe.com, connect.stripe.com | First party | session |
|
twilio_chat_*
Local storage items that store chat state. |
dashboard.stripe.com, support.stripe.com, support.onelink.com, support-conversations.stripe.com, support-conversations.onelink.com | Local storage | N/A |
|
uis_token
Stores invite secret token needed to join the invited team |
dashboard.stripe.com | First party | session |
|
user_session_token
Stores an embedded user session key for authentication within Connect embedded elements. |
stripecdn.com | Local storage | N/A |
|
userleap.ids
Stores user identifiers and auth token used to record the users survey responses |
stripecdn.com | Local storage | N/A |
|
userleap.pageviews
Used to prevent overwhelming the services used for survey functionality. |
stripecdn.com | Local storage | N/A |
|
x-px-cookies
Set by a third party captcha platform, Human Security, to detect bot activity. |
.stripecdn.com | Local storage | N/A |
| Web Proxy Viewer | New URL | Original Page |