What cookies are
A cookie is a small file a website stores in your browser so it can recognise your device on the next request. Some are set by us (first party) and some by other companies whose services appear on our pages (third party). Some last only until you close the browser (session) and some persist for a set period (persistent).
We also use technologies that are not strictly cookies but do a similar job, including local storage in your browser and scripts that read device characteristics for fraud prevention. This policy covers all of them, and calls them cookies for short.
Your choices
Strictly necessary cookies always run, because without them you cannot sign in and we cannot keep the service secure. Everything else is your choice.
- In the UK, the EEA and Switzerland, nothing optional runs until you choose. We ask on your first visit, and rejecting takes exactly one click, just like accepting.
- Elsewhere, analytics and attribution run by default and you can switch them off whenever you like, using the settings below or the Cookie settings link in the footer. Strictly necessary cookies are the only ones that cannot be switched off anywhere.
- You can change your mind at any time, using the settings below, the Cookie settings link in the footer, or the Your Privacy Choices page.
- Global Privacy Control. If your browser or an extension sends the GPC signal, we treat it as an instruction to switch off analytics and marketing, and as an opt out of sharing, without you doing anything else.
We work out which of the two applies to you from the country your network provider reports. When we cannot place a visitor at all, we treat them as though they are in the UK or the EEA and ask first.
Your choice is stored for six months, after which we ask again. Changing your mind is always available from the Cookie settings link in the footer.
Strictly necessary
These make the site work and keep it secure. They cannot be switched off, and under UK and EU law they do not require consent.
| Name | Set by | Purpose | Duration |
|---|---|---|---|
| session_id | EarnX | Keeps you signed in. Signed and not readable by scripts | 30 days, extended while you stay active |
| earnx_consent | EarnX | Remembers your cookie choices so we stop asking | 6 months |
| google_oauth_state, code_verifier, google_oauth_session_id | EarnX | Security for the Google sign-in redirect. Prevents request forgery | 10 minutes |
| discord_oauth_state, discord_oauth_session_id, discord_oauth_intent, discord_oauth_giveaway | EarnX | Security and context for the Discord sign-in redirect | 10 minutes |
| g_csrf_token | Set by Google sign-in as its request forgery token | Session | |
| verisoul_session_id | EarnX | Carries the anti-fraud session reference through sign-in | 10 minutes |
| __cf_bm, cf_clearance | Cloudflare | Bot detection and challenge results for the whole site | 30 minutes and up to 1 year |
| Cloudflare Turnstile | Cloudflare | The invisible challenge on the sign-up and sign-in forms | Session |
| ex_compat, ex_tc_fp | EarnX | Only on the tracking check page. Tests whether your browser blocks cookies, which is the usual reason an offer fails to credit | 10 minutes and 60 seconds |
Preferences
These remember settings you chose. They are first party and contain no cross-site identifier.
| Name | Set by | Purpose | Duration |
|---|---|---|---|
| NEXT_LOCALE | EarnX | The language you chose | 1 year |
| DETECTED_LOCALE | EarnX | The language we guessed from your country, so we only suggest once | 24 hours |
| LOCALE_SUGGESTION_DISMISSED | EarnX | You closed the language suggestion banner | 7 days |
| earnx_currency | EarnX | Your display currency and the rate used | 30 days |
| earnx_intended_offer | EarnX | The offer you clicked before signing up, so we can take you back to it | 30 minutes |
Analytics
These tell us how the site is used so we can improve it. They run only with your consent in the UK and EEA, and can be switched off anywhere.
| Name | Set by | Purpose | Duration |
|---|---|---|---|
| Google Tag Manager (GTM-MCNF3BGV) | Loads our measurement tags. Blocked entirely until you consent | Varies by tag | |
| _ga, _ga_*, _gid, _gat | Google Analytics | Distinguishes visitors and sessions to produce usage statistics | Up to 13 months |
Attribution and marketing
These record where a visit came from, so that we pay the right partner when somebody they sent us signs up, and so we know which channels are worth running. They do not build an advertising profile about you and they are not sold on.
| Name | Set by | Purpose | Duration |
|---|---|---|---|
| earnx_ft, earnx_lt | EarnX | First and last touch: which site or campaign brought you here, and which page you landed on. No personal data and no cross-site identifier | 400 days |
| referrer_id | EarnX | Which user referred you, so their referral bonus is credited | 30 days |
| aff_link | EarnX | Which affiliate partner referred you, so their commission is credited | 30 days |
| earnx_marketing_click | EarnX | Which paid campaign a click came from, so the partner is paid correctly | Set per campaign, typically 30 days |
Third party services
Some parts of the site load content from other companies, which may set their own cookies under their own policies.
- Offer and survey walls. When you open one it is embedded, or you are sent, straight to the provider, and your account identifier goes with you so completions credit back to you. What each provider sets is governed by their own cookie policy, and you can see which one you are on from the address it loads. The set of providers changes over time.
- Offer artwork. Offer images are loaded from the partner catalogues that supply them.
- Google sign-in. Google's sign-in script runs on the sign-in screen.
- Chat media. GIFs and stickers in chat are served from Klipy's content network. Your search terms go to them without your account identity attached.
- Flags and icons. Country flags in the language picker load from flagcdn.com.
- Ad-block detection. We check whether an ad blocker is running, because blockers are the most common reason an offer does not credit. The check requests a known advertising script and a known analytics URL and records only whether they were blocked. It sets no advertising cookie and collects nothing about you.
Fonts are served from our own servers, so no request goes to a font provider.
Local storage
We keep a few interface preferences in your browser's local storage rather than in a cookie: things like whether the sidebar and the chat panel are open, which room you were last in, and whether you are browsing offers for desktop, iOS or Android. Chat message content is deliberately not stored. These preferences never leave your device, they contain no personal information, and clearing your browser data removes them.
Managing cookies in your browser
You can block or delete cookies in your browser settings, and most browsers have a private mode that discards them when you close the window. Blocking everything will break parts of EarnX: you will not stay signed in, and offers frequently fail to credit, because the partner cannot match the completion back to your account.
If offers are not crediting, the tracking check page in the app will tell you whether your browser or an extension is the cause.
Changes
We keep this page up to date as the cookies we use change. The version and date at the top tell you which text is current. If we add a category or materially change what a category does, we ask for your choice again.
Questions: contact@earnx.gg.

