Skip to Content
Support

FAQ's

Cookie Categorizations

When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. The information does not usually directly identify you, but it can give you a more personalized web experience. Because we respect your privacy, you can choose not to allow some types of cookies. Below are the different cookie categories we use on pura.com. Blocking some types of cookies may impact your experience of the site and the services we are able to offer. Learn more about your cookie settings and management here.

Categorization Overview

Shopify banner categoryOur internal flagWhat it controls on pura.com
Strictly necessarynone (always on)Login, cart, checkout handoff, remembering the consent choice itself
PreferencesfunctionalRecorded, but no cookie depends on it yet. Turning off every category (Preferences included) stops the anonymous ID.
AnalyticsanalyticsFullStory session recording; whether the anonymous ID lives in a cookie or only for the tab session
MarketingmarketingMeta Pixel, Trade Desk ID, server-set Meta cookies, ad attribution sent to our event pipeline
Sale of datanot mappedOnly forced off in the Pura app. The website doesn't read it separately.

Strictly necessary

Required for the site to work. No consent needed.

CookieSet byPurposeDurationConsent handling
sessionFrom code: PuraSigned session holding per-visit state such as the cart referenceBrowser sessionAlways set
__pat, __pitFrom code: PuraSigned login tokens (access and identity) for signed-in customers200 daysOnly after sign-in
__prtFrom code: PuraEncrypted refresh token that keeps customers signed in200 daysOnly after sign-in
_pura_consentFrom code: PuraRemembers the visitor's cookie choices1 yearWritten when the visitor makes a choice
_pura_app_ctxFrom code: PuraMarks a visit that started in the Pura mobile app so marketing stays offBrowser sessionApp visitors only
rise_gifting_sessionFrom code: Pura (for Rise)Keeps the gift-card purchase flow together14 daysOnly when someone uses gift-card gifting
_spice_previewFrom code: PuraInternal content-preview mode for Pura staff2 hoursStaff previews only. Not set for customers.
_tracking_consentVendor, scanned: ShopifyShopify's copy of the visitor's consent choice1 yearAlways set
_shopify_essentialVendor, scanned: ShopifyEssential Shopify storefront functions1 yearAlways set
__stripe_mid, __stripe_sidVendor, scanned: StripeFraud prevention on pages that load Stripe's script1 year / 30 minNot gated. Confirm which pages load Stripe.

Preferences

Remembers choices that change how the site looks or behaves.

CookieSet byPurposeDurationConsent handling
themeFrom code: PuraRemembers light or dark display mode1 yearAlways set

Analytics

Measures how people use the site.

CookieSet byPurposeDurationConsent handling
_pura_anonFrom code: PuraAnonymous visitor ID for our own analytics and A/B tests400 daysNot set if the visitor turns off every category. Without analytics consent it's kept for the tab session only.
_pura_ga_cidFrom code: Pura (for Google Analytics)Durable copy of the Google Analytics client ID. It survives Safari's cookie limits.2 yearsSet on first visit, not gated Review
_pura_exp_qFrom code: PuraRecords which A/B tests the visitor qualified for, so they see a consistent version30 daysBuilt but not written anywhere yet. Classify it before it ships.
_ga, _ga_<ID>Vendor, scanned: Google Analytics 4Distinguishes visitors and sessions2 yearsConsent Mode defaults to granted and isn't updated on opt-out Review
fs_uid, fs_luaVendor, scanned: FullStorySession recording and replay1 year / 30 minLoads only with analytics consent. Stops immediately when consent is withdrawn.
_shopify_y, _shopify_sVendor, scanned: ShopifyShopify storefront analytics. Also forwarded to Shopify so orders are credited to the visit.1 year / 30 minManaged by Shopify's consent API

Marketing

Ad measurement, attribution and audience matching.

CookieSet byPurposeDurationConsent handling
_pura_attrFrom code: PuraStores ad click IDs from the landing URL (Google, Meta, TikTok, Reddit, Microsoft) and ad-platform IDs so a purchase is credited to the right ad400 daysClick IDs are captured even when marketing is off Review. The Meta ID inside it respects marketing consent
_fbpFrom code: Pura server and Meta PixelMeta browser ID, shared by the Pixel and server-side conversions90 daysOnly when marketing is allowed
_fbcFrom code: Pura server and Meta PixelMeta ad-click ID90 daysOnly when marketing is allowed
ttd_TDIDFrom code: Pura (for The Trade Desk)Trade Desk ID used for ad attribution7 daysOnly when marketing is allowed. Deleted immediately on opt-out.
TDIDVendor, scanned: The Trade Desk (adsrvr.org)Third-party ID set during the Trade Desk ID matchVendor setOnly when marketing is allowed
Northbeam cookiesVendor, scanned: NorthbeamMarketing attribution across ad channelsVendor setLoads for every website visitor, not gated Review

Other browser storage

Not cookies, but often disclosed alongside them.

KeyStorageSet byPurpose
_pura_ga_sid, _pura_ga_snumSession storagePuraGoogle Analytics session ID and count, used to tie events to the visit
nb__region_code, nb__currency_codeLocal storagePura (for Northbeam)Region and currency passed to Northbeam

Need more help?

Ask a different questionPura Help Center
Select a different product
Powered by MavenoidSitemap
AboutSocial ImpactCareersBlogNewsroom
Terms of ServicePrivacy PolicyYour California Privacy RightsDo Not Sell My Info