Legal

Cookie Policy

This policy explains what cookies are, which ones planckdefense.com uses, and how you can control them. Effective August 2026.

We keep this policy short because the list of cookies it covers is short. This site exists to describe our services and let you contact us. It does not run advertising, it does not profile visitors, and it does not follow you to other websites. The sections below describe exactly what runs in your browser when you visit planckdefense.com and why.

What Cookies Are

A cookie is a small text file that a website asks your browser to store on your device. On a later request, your browser sends the cookie back to the site that set it, which lets the site recognize your session or remember a preference. Cookies set by the site you are visiting are called first-party cookies. Cookies set by another domain whose content is loaded into the page, such as a font or content delivery service, are called third-party cookies.

Related mechanisms such as localStorage, sessionStorage, and pixels are often grouped under the same term. Where this policy says cookies, it covers those technologies as well.

How We Use Cookies

Sparingly. This site is largely static HTML and CSS. Our pages do not require login, carry no shopping cart, and hold no personalized state, so there is very little a cookie could do for us. In concrete terms:

  • We set no advertising or marketing cookies of any kind.
  • We perform no cross-site tracking and load no social media widgets or embedded trackers.
  • We run no analytics cookies. If that ever changes, we will update this policy first and say so plainly.
  • Any cookie present when you browse this site is either strictly necessary for the site to function and stay online, or set by one of the third-party services described below.

We do not use cookies to build visitor profiles, and we do not sell or share browsing data with anyone.

Types of Cookies

Cookie policies commonly sort cookies into four buckets: strictly necessary, preferences, statistics, and marketing. Only the first bucket applies here.

  • Strictly necessary cookies. These support core delivery of the site, for example security filtering and load distribution performed by our hosting and content delivery layer. They cannot be switched off through a consent banner because the site cannot be served safely without them, which is also why you will not see a consent banner on this site.
  • Everything else. We deliberately avoid preference, statistics, and marketing cookies. A page that describes penetration testing should not itself be an exercise in surveillance.

Third-Party Services

Two external services are involved in delivering this site, and each can technically set or read its own cookies or receive standard request metadata such as your IP address and user agent:

  • Google Fonts. Our typefaces are served from fonts.googleapis.com and fonts.gstatic.com. When your browser fetches a font file, that request goes to Google, and Google receives the request metadata and may apply its own cookie practices under its own privacy policy. We do not receive any data from this exchange.
  • Hosting and content delivery. The site is served through a hosting and content delivery provider whose edge network may set strictly necessary cookies for security purposes such as bot mitigation, denial-of-service protection, and traffic routing. These cookies identify malicious automation, not people, and are governed by that provider's own privacy policy.

What this means in practice: neither service is used by us to track you, but both operate infrastructure outside our direct control. If you prefer that no request reach Google, blocking third-party requests in your browser or through an extension will do so; the site remains readable with fallback system fonts.

Managing Cookies in Your Browser

Every major browser lets you inspect, restrict, and delete cookies. Because this site sets nothing beyond the strictly necessary layer described above, blocking cookies here will not degrade your experience. Typical options include:

  • Blocking all third-party cookies, which modern versions of Firefox and Safari do by default.
  • Clearing cookies and site data for a single site or for all sites, from your browser's privacy settings.
  • Browsing in a private or incognito window, which discards cookies when the window closes.
  • Using content-blocking extensions to stop requests to specific third-party domains entirely.

The exact menu path varies by browser and version, so consult the privacy or security section of your browser's settings or its built-in help.

Do Not Track

Some browsers send a Do Not Track header or a Global Privacy Control signal with each request. There is no settled standard for honoring these signals, but on this site the question is moot: we do not track visitors whether or not the signal is present. You receive the same treatment either way, which is no behavioral tracking at all.

Changes to This Policy

If our use of cookies changes, for example if we ever introduce an analytics tool, we will revise this page before the change takes effect and update the effective date shown above. Material changes will be described in plain language at the top of the policy. We will not quietly add tracking behind an unchanged document.

Contact

Questions about this policy, or about how we handle data more broadly, can be sent to [email protected]. Our privacy practices are described in the Privacy Policy, and our handling of client data during engagements is covered under Trust & Data Handling.