GDPR Compliant Cookie Policy

How the different cookies we place enhance the browsing experience.

We use cookies to help your site run effectively and provide the best experience for your visitors. Use this guide to learn more about the cookies placed by Squarespace and third-party services and how to disable them. 

This guide doesn't cover the cookies Squarespace uses on visitors to our websites or users of our web or mobile apps. To learn more about our use of cookies, including cookies we use on squarespace.com and our web and mobile apps, visit our Cookie Policy and Privacy Policy.

What are cookies?

Cookies are small pieces of data that websites store on a device. Cookies can improve your visitors’ browsing experience because they help websites remember preferences and understand how people use different features. Squarespace places two kinds of cookies on visitors’ browsers:

  • Necessary cookies so visitors can navigate and use key features on your site. 

  • Non-essential, or analytics and performance cookies, that collect information on your behalf about how visitors interact with your site.

To learn more, review our Cookie Policy.

Necessary and required cookies

Squarespace uses some necessary cookies that vary from site to site depending on the features it uses. For example, necessary and required cookies help these features work:

Name, Purpose, type, and duration

_acloggedin

  • Supports login by Acuity Scheduling client if the client has an account

  • Cookie

  • January 1, 2025

_client_acloggedin

  • Supports login by Acuity Scheduling client if the client has an account

  • Cookie

  • January 1, 2025

_dd_cookie_test

  • Tests if cookies are supported

  • Cookie

  • Expires instantly

_dd_s

  • Tracks browser errors

  • Cookie

  • Four hours

_dd_site_test

  • Tests if cookies are supported

  • Cookie

  • Expires instantly

_grecaptcha

  • Helps reduce spam in Acuity Scheduling

  • Local storage

  • No expiry

_ssid

  • Remembers devices for anti-fraud purposes

  • Cookie

  • Four years

CART

  • Shows when a visitor adds a product to their cart

  • Cookie

  • Two weeks

CHECKOUT_WEBSITE

client_username

  • Remembers a logged in Acuity Scheduling client's username between visits

  • Cookie

  • One year

clientUser

  • Stores the Acuity Scheduling client's username, OAuth2 Access Token, and OAuth2 Refresh Token. This cookie is required for functionality of logged-in clients

  • Cookie

  • 30 days

Commerce-checkout-state

  • Stores state of checkout while the visitor is completing their order in PayPal

  • sessionstorage

  • Session

Crumb

hasCart

  • Tells Squarespace that the visitor has a cart

  • Cookie

  • Two weeks

Locked

  • Prevents the password-protected screen from displaying if a visitor enters the correct site-wide password.

  • Cookie

  • Session

orderStatusSessionToken

  • Authenticates a visitor who logs into an order status page.

  • Cookie

  • One year

PHPSESSID

  • Securely authenticates a visitor during their checkout in Acuity Scheduling

  • Cookie

  • One month

RecentRedirect

  • Prevents redirect loops if a site has custom URL redirects. Redirect loops are bad for SEO.

  • Cookie

  • 30 minutes

remember_client

  • Remembers Acuity Scheduling client’s login details if they have an account

  • Cookie

  • 365 days

siteUserCrumb

SiteUserInfo

SiteUserSecureAuthToken

  • Authenticates a visitor who logs into a customer account

  • Cookie

  • Three years

squarespace-announcement-bar

  • Prevents the announcement bar from displaying if a visitor dismisses it

  • localstorage

  • Persistent

squarespace-likes

  • Shows when you've already "liked" a blog post

  • localstorage

  • Persistent

squarespace-popup-overlay

  • Prevents the promotional pop-up from displaying if a visitor dismisses it

  • localstorage

  • Persistent

squarespace-video-player-options

ss_cookieAllowed

  • Remembers if a visitor agreed to placing analytics cookies on their browser if a site is restricting the placement of cookies

  • Cookie

  • 30 days

ss_sd

Test

  • Investigates if the browser supports cookies and prevents errors

  • Cookie

  • Session

TZ

  • Enables a Acuity Scheduling client’s appointments to display correctly based on their time zone preferences.

  • localstorage

  • Persistent

Cross-site request forgery (CSRF)

CSRF is an attack vector that tricks a browser into taking unwanted action in an application when someone’s logged in.

Analytics and performance cookies

We use analytics and performance cookies to collect information on your behalf about how visitors interact with your site. Storing these cookies is how we populate the data you find in Squarespace analytics, such as traffic sources, unique visitors, and cart abandonment.

Cookie Name

Duration

Purpose

ss_cid

Two years

Identifies unique visitors and tracks a visitor’s sessions on a site

ss_cpvisit

Two years

Identifies unique visitors and tracks a visitor’s sessions on a site

ss_cvisit

30 minutes

Identifies unique visitors and tracks a visitor’s sessions on a site

ss_cvr

Two years

Identifies unique visitors and tracks a visitor’s sessions on a site

ss_cvt

30 minutes

Identifies unique visitors and tracks a visitor’s sessions on a site

Check your cookies

For the most common browsers, you can:

  • Review which cookies are active in your browser’s settings.

  • Clear cookies from your browser or device, either globally or from a specific website.

For help locating cookies on your device, visit your browser's documentation: