Cookie Notice
Applies to ninebloom.co and related subdomains and our compliance platform. This Notice should be read alongside our Privacy Policy. Last modified: 15 September 2026.
This Cookie Notice (“Notice”) applies to your use of our website https://ninebloom.co (and related subdomains) and the Ninebloom compliance platform (collectively, “Services”) owned and operated by Ninebloom Technologies Private Limited, a company incorporated under the laws of India. For the purposes of this Notice, “we”, “us” and “our” means Ninebloom and “you” and “your” means a user of the Services. This Notice sets out what cookies we use, why we use them, and how you can manage them. You are advised to read this Notice carefully.
At a Glance — Our Cookie Approach
Unlike many websites, Ninebloom does not use cookies for analytics, advertising, personalisation, or cross-site tracking. We set only the cookies that are strictly necessary to deliver the service you asked for (signing in and using the platform). Because of this, these cookies are exempt from the consent requirement under the EU ePrivacy Directive and the GDPR, and are consistent with the Digital Personal Data Protection Act, 2023 (DPDP Act) — no cookie banner is shown.
What Cookies Are
Cookies are small text files placed on your device when you visit a website. They allow the site to remember your actions and preferences over a period of time, so you don't have to re-enter them every time you load a page. Cookies are widely used to make websites work efficiently and to provide information to site owners.
Our Cookie Approach — Strictly Necessary Only
Unlike many websites, Ninebloom does not use cookies for analytics, advertising, personalisation, or cross-site tracking. We use only the cookies that are strictly necessary to:
- authenticate you when you sign in to the Ninebloom platform;
- keep your session active and secure as you move between pages;
- recognise the device you sign in from, so we can detect and block unauthorised access to your account.
Cookies We Use
All cookies listed below are first-party cookies set by Ninebloom. We do not allow third parties to set cookies on our website or platform.
| Cookie name | Purpose | Type | Duration |
|---|---|---|---|
nb_session | Identifies your authenticated session on the platform so you stay signed in as you navigate between pages | First-party, HTTP-only, Secure | Session — expires when you sign out or close the browser |
nb_csrf | Protects forms and authenticated requests against cross-site request forgery (CSRF) attacks | First-party, HTTP-only | Session — expires when you sign out or close the browser |
nb_device_id | Stores a device fingerprint identifier used to recognise the device you sign in from, so we can flag and block sign-in attempts from unrecognised devices | First-party, Secure | 12 months — renewed each time you sign in |
About Our Device Fingerprint Cookie
The nb_device_id cookie stores an identifier derived from a combination of browser and device characteristics — such as browser type and version, operating system, screen resolution, timezone, language preference, and hardware-level signals. These characteristics are combined into a one-way identifier (a “fingerprint”) that lets us recognise whether a sign-in attempt is coming from a device you've used before.
What it is used for
- Detecting unauthorised sign-in attempts from new or unrecognised devices;
- Triggering additional verification (such as a one-time password) when a sign-in looks suspicious;
- Protecting client accounts from credential-stuffing and account-takeover attacks.
What it is not used for
- Advertising or ad targeting;
- Tracking your activity across other websites;
- Building a profile of your interests or behaviour;
- Identifying you as a specific person beyond recognising your device in the context of your Ninebloom session.
The device fingerprint on its own cannot identify you as an individual; it is tied to your authenticated session only when you sign in.
What We Don't Use
We deliberately do not use:
- Analytics cookies — We do not measure website traffic or user behaviour using cookies.
- Advertising cookies — We do not show ads and do not share data with advertising networks.
- Personalisation cookies — We do not track preferences across sessions to personalise content.
- Third-party tracking — No third party sets cookies on our website.
- Social media plugins — Our website does not embed third-party social plugins that set cookies.
Managing Cookies
You can still control or delete cookies through your browser settings:
- Google Chrome: Settings → Privacy and security → Cookies and other site data
- Mozilla Firefox: Settings → Privacy & Security → Cookies and Site Data
- Safari: Preferences → Privacy → Cookies and website data
- Microsoft Edge: Settings → Cookies and site permissions
If you delete our cookies, you will be signed out of the platform, and your next sign-in may trigger a security verification because your device will no longer be recognised.
Do Not Track and Global Privacy Control
Because we do not track you across other websites and do not use cookies for advertising or analytics, Do Not Track (DNT) and Global Privacy Control (GPC) signals from your browser do not change how our site behaves — we already do not perform the activities these signals are designed to restrict.
Changes to This Cookie Notice
We may update this Cookie Notice if we add, remove, or change the cookies we use. If we introduce any cookie that is not strictly necessary (for example, analytics), we will update this Notice and provide a consent mechanism before setting it. The “Effective” date at the top of this Notice always reflects the current version.
Contact Us
If you have questions about this Cookie Notice or how we use cookies, contact us: