Skip to main content
AI BlueprintAI Blueprint
How it WorksBlueprint OutputsWho is it forPricingFAQ
LoginStart from Idea
Start from Idea
← Back to AI Blueprint
LEGAL DOCUMENT

Cookie Policy

Cookies and browser storage used by AI Blueprint, their purposes and durations, and your controls.

Effective
30 August 2026
AI Blueprint is operated by CV DNA Konsultan, registered at Jl. Arabika 8 Blok AA 1 No. 9, RT.001/RW.005, Pondok Kopi, Duren Sawit, Jakarta Timur, DKI Jakarta 13460, Indonesia. At this version, we do not enable third-party analytics, advertising pixels, or cross-site marketing cookies.
01Essential-cookie inventory02Browser-storage inventory03Security attributes04Google and Midtrans05Analytics and marketing06Changing or withdrawing choices07Changes and contact
01

Essential-cookie inventory

Name/patternTypeDomain/providerPurposeCategoryDurationPartyStatus
__Host-authjs.csrf-tokenCookieaiblueprint.web.id / Auth.jsPrevent forged authentication requestsEssentialRefreshed with the authentication flowFirstRequired
__Secure-authjs.callback-urlCookieaiblueprint.web.id / Auth.jsReturn the user to the requested page after sign-inEssentialUntil sign-in completes or it is clearedFirstRequired
__Secure-authjs.session-token (may be split into multiple cookies)HttpOnly cookieaiblueprint.web.id / Auth.jsMaintain an encrypted/signed login sessionEssentialUntil session expiry, logout, or revocationFirstRequired after sign-in
__Secure-authjs.pkce.code_verifier, __Secure-authjs.state, __Secure-authjs.nonceTemporary HttpOnly cookieaiblueprint.web.id / Auth.jsProtect Google OAuth; created only when Google is selectedEssentialUntil the flow completes or expiresFirstRequired for Google OAuth
control_room_session_v1HttpOnly cookieaiblueprint.web.id / AI BlueprintSeparate back-office Control Room sessionEssentialUp to 8 hours, logout, or revocationFirstRequired for staff
Google cookies on Google domainsCookieaccounts.google.com / GoogleGoogle sign-in after the user chooses GoogleEssential for selected flowGoogle policyThirdOptional—Google OAuth only
Midtrans cookie/storage on Midtrans domainsThird-party cookie/storageapp.midtrans.com / MidtransDisplay and secure checkout after the user opens itEssential for selected flowMidtrans policyThirdOptional—checkout only
Hosting routing/security cookie, if setCookieHosting infrastructureRouting, TLS, abuse mitigation, and reliabilityEssentialSession or configured infrastructure durationFirstRequired if set by platform
02

Browser-storage inventory

The current product code does not store Blueprint drafts or conversation content in browser storage. Work data is stored server-side after a request is accepted.

KeyTypeDomain/providerPurposeCategoryDurationPartyStatus
ai-blueprint-themelocalStorageaiblueprint.web.id / AI BlueprintTheme preferencePreferenceUntil changed or storage is clearedFirstActive
aiblueprint-ui-localelocalStorageaiblueprint.web.id / AI BlueprintPublic-interface languagePreferenceUntil changed or storage is clearedFirstActive
ai-blueprint.workspace-localelocalStorageaiblueprint.web.id / AI BlueprintWorkspace languagePreferenceUntil changed or storage is clearedFirstActive
aiblueprint-langlocalStorageaiblueprint.web.id / AI BlueprintLanguage-preference compatibilityPreferenceUntil changed or storage is clearedFirstActive
ai_blueprint_cookie_consent_v1localStorageaiblueprint.web.id / AI BlueprintPolicy version, categories, and choice timestampEssential/preferenceUntil policy changes or storage is clearedFirstActive
03

Security attributes

In production, sensitive Auth.js cookies use Secure/Host prefixes and server-only session/transient cookies use HttpOnly, Secure, and SameSite appropriate to the flow. control_room_session_v1 uses HttpOnly, Secure, SameSite=Lax, path /, an eight-hour maximum, and server-side revocation. localStorage preferences are JavaScript-readable and are not HttpOnly. Logout and relevant security events invalidate sessions server-side.

04

Google and Midtrans

Choosing Google OAuth or opening Midtrans checkout may let their domains set cookies under their own policies. AI Blueprint cannot read cookies available only on a third-party domain.

05

Analytics and marketing

Analytics and Marketing are off and those optional scripts are not loaded. Because no optional processing is active, we do not show a deceptive Accept All button. Essential cookies operate independently so sign-in and security work.

06

Changing or withdrawing choices

Open Cookie Settings in the footer at any time. Saving records the version and time on this device. You may also clear browser storage. Blocking essential cookies can break login, Google OAuth, request security, or checkout.

07

Changes and contact

If new analytics, marketing, or storage is added, the policy and dialog will be updated before activation and consent obtained where required. Requests can be submitted without signing in through hello@aiblueprint.web.id or the Contact page. Do not send passwords, API keys, OTPs, or full payment details.

TermsPrivacyRefundCookieRetentionSubprocessors
Legal or privacy question?hello@aiblueprint.web.idThis document is product contract information, not legal advice for your circumstances.
AI BlueprintAI Blueprint

An AI-powered platform that helps you turn raw app ideas into structured blueprints.

Product

How it WorksBlueprint OutputsPricingFAQ

Company

ContactSecurity

Legal

Terms & ConditionsRefund PolicyPrivacy PolicyCookie PolicyRetention PolicySubprocessors
© 2026 CV DNA Konsultan · AI Blueprint
hello@aiblueprint.web.id
Jl. Arabika 8 Blok AA 1 No. 9, RT.001/RW.005, Pondok Kopi, Duren Sawit, Jakarta Timur, DKI Jakarta 13460, Indonesia