beTweet uses a single essential session cookie (betweet_session) to keep you authenticated. This cookie is HTTP-only (not accessible to JavaScript), uses the SameSite=Lax attribute for CSRF protection, and is marked Secure (transmitted only over HTTPS).
The session cookie expires after 7 days of inactivity or when you log out. You can revoke all active sessions from Settings > Sessions.
beTweet does not use third-party cookies, advertising cookies, analytics cookies, or any form of cross-site tracking. We store your cookie consent preference in browser local storage — this contains no personal data and is not transmitted to our servers.