Last updated: 1 July 2026 · Effective: 1 July 2026
Cookies are small text files placed on your device when you visit a website. They are widely used to make websites work correctly, to remember your preferences, and to provide security. Rafiki uses cookies to keep you securely signed in to your account.
Rafiki uses essential and functional cookies for the platform. Public marketing, booking, and storefront pages also load Google AdSense; Google and its partners may use advertising cookies or similar technologies to serve and measure ads. AdSense is excluded from operational pages such as dashboards, POS, inventory, login, checkout, and private tracking pages.
| Cookie Name | Type | Purpose | Expiry |
|---|---|---|---|
| rafiki_auth_token | Essential | Stores your authentication token to keep you signed in. Readable by client-side JavaScript for API calls. | Session (or 7 days with "remember me") |
| rafiki_auth_token_mid | Essential | HttpOnly mirror of the auth token for server-side route protection. Not accessible to JavaScript. | Session (or 7 days) |
| rafiki_refresh_token | Essential | HttpOnly long-lived token used to renew your session without requiring re-login. Never exposed to JavaScript. | 30 days |
| rafiki_user | Essential | Stores basic user profile information (name, role) to display in the dashboard without an extra API call. | Session (or 7 days) |
We do not place advertisements in authenticated or transactional workflows. On public pages, Google may process information such as the page visited, approximate location, device, and ad interaction to provide, measure, and personalize advertising in accordance with its policies. You can manage personalized advertising through Google Ads Settings.
Essential cookies are required for signing in and using the platform. You can control advertising personalization separately through your browser settings or Google Ads Settings.
You can manage cookies through your browser settings:
To sign out and clear your Rafiki session cookies, use the "Sign Out" option in the platform dashboard.
Rafiki supports offline use through a browser Service Worker and local cache. When you install the Rafiki PWA, the browser stores certain assets and data locally for offline POS operation. This local storage is separate from cookies and is managed by your browser's storage API. You can clear this data through your browser's site settings.
We will update this Cookie Policy if we change the cookies we use. Updates will be notified in the platform and by email at least 14 days in advance for material changes.
For questions about this Cookie Policy, email [email protected].