Hosted in the Netherlands · GDPR-aligned · Free migration from your current host
Legal

Cookie Policy

This Cookie Policy explains how Maxinodes (“we”, “us”, “our”) uses cookies and similar technologies on maxinodes.com and its subdomains: our website, the Client Area at my.maxinodes.com, our analytics host at stats.maxinodes.com, and our Help Centre at support.maxinodes.com, which is operated for us by Zendesk, Inc. It sits alongside our Privacy Policy, which describes more fully how we handle personal data. Where this policy refers to “you” or “your”, it means any visitor to our site, whether or not you are a Customer.

We want to be straightforward about this: on our website and in the Client Area, beyond the strictly-necessary cookies that make them work, nothing loads until you agree to it, and we never sell your browsing data. Our Help Centre is the partial exception and we say so in section 3 rather than hiding it: it runs on Zendesk’s platform, which sets its own cookies as the page loads. It carries our banner too, and the same choice applies there — but the banner arrives after those cookies do, and cannot take them back. With your consent we load privacy-friendly, self-hosted analytics, a live-chat widget, and advertising measurement that tells Meta (Facebook and Instagram) when one of our ads led to a visit or a sign-up. We will not pretend that last one is harmless: it is genuine advertising technology operated by a third party, which is exactly why it stays switched off unless you switch it on. When you first visit, a consent banner lets you accept, reject, or choose per purpose; nothing non-essential runs until you opt in, and you can change your mind at any time using the Cookie settings button below. This policy explains exactly what we set and the choices you have.

1. What cookies are

A cookie is a small text file that a website asks your browser to store on your device. When you return to the site, your browser sends the cookie back, which lets the site recognise your session, remember choices you have made, or keep you securely signed in. Cookies cannot run programs or carry viruses, and they cannot read other files on your device.

Cookies are usually classified in two ways:

  • By who sets them. A first-party cookie is set by the website you are visiting (in our case, maxinodes.com). A third-party cookie is set by a different domain — for example an analytics or advertising provider embedded in a page. The Meta advertising cookies described below sit awkwardly across that line: they are written on our own domain, so your browser treats them as first-party, but the data they carry is read by Meta. Apart from those, the only third-party storage we permit on maxinodes.com is the Zendesk chat widget, and only if you allow live chat. Our Help Centre at support.maxinodes.com is a separate case: it runs on Zendesk’s own platform, and Zendesk — together with the network provider it puts in front of that site — sets its own cookies there. Those are listed in section 4.
  • By how long they last. A session cookie is temporary and is deleted when you close your browser. A persistent cookie remains for a set period, or until you delete it.

Where this policy refers to “cookies”, it also covers similar technologies that store or read information on your device for comparable purposes. These include browser localStorage and sessionStorage, IndexedDB, pixels, tags, software development kits, and device or browser fingerprinting. The same rules and consent principles in this policy apply to all of them, regardless of the specific technology used.

2. Categories of cookies

To make choices clearer, cookies and similar technologies fall into four categories, which match the toggles in our consent banner. We describe each in plain English below. Strictly necessary is always on; analytics, live chat and marketing run only if you opt in. We use one marketing technology — the Meta pixel and its server-side equivalent — and it is described below.

Strictly necessary

These cookies are essential for the website and Client Area to work. They do things like keep you signed in, protect forms and sign-in requests against cross-site request forgery, and remember the steps you have completed in a checkout or order — and they remember which language you are reading the site in, and the cookie choices you make here. Without them, core features simply will not function. Because they are essential to deliver a service you have asked for, these cookies do not require consent under EU and Irish law — but we still tell you about them here.

Functional / preferences

These are not essential but make the site more useful — in practice, running our live-chat widget so you can message us. We load them only after you opt in to the relevant category, and you can withdraw at any time.

Analytics

These help us understand how visitors use the site — which pages are useful and where things break — in aggregate, to improve it. Ours is self-hosted Matomo: it is cookieless, anonymises IP addresses, never tracks you across other sites, and is never shared with advertisers. Its measurement script runs only if you opt in to analytics.

Marketing

These cookies are used to measure the effectiveness of advertising campaigns and, on the advertising network’s side, to build a profile of your interests and show you advertising across different websites. We use one such tool: the Meta pixel, which lets us see which visits and sign-ups came from our Facebook and Instagram ads so we stop paying to advertise to people who have already found us. It is loaded only if you opt in to the Marketing category, and if you do not, it is never downloaded at all.

We also send the same events to Meta from our own server (Meta calls this the Conversions API), because browser-based measurement is frequently blocked and, for a payment that confirms minutes after you close the tab, there is no browser left to report it. This is the same information about the same events — it is not a way of tracking you when you have said no. Server-side events are sent only where we have recorded your consent, and never otherwise.

3. What we use today

As at the date at the top of this page:

  • Strictly-necessary cookies (always on). First-party cookies required to run the website and Client Area — a session cookie and a security / CSRF cookie — plus a small cookie that remembers your consent choice so we do not have to ask on every page, and one that remembers which language you are reading the site in. The content-delivery and security edge in front of our own websites (Microsoft Azure Front Door) sets no cookies of its own; it does log request data, and our Privacy Policy explains what it records and where. These cookies need no consent under EU and Irish law.
  • Analytics (only with your consent). Self-hosted Matomo, used to measure aggregate traffic. It is cookieless and anonymises IP addresses, never tracks you across other sites, and is never shared with advertisers — and its measurement script loads only after you opt in to the analytics category. If you reject or ignore the banner, it never runs.
  • Live chat (only with your consent). The Zendesk chat widget, so you can message us. It loads — and sets its cookies and similar storage — only after you opt in to the live-chat category. If you opt in, it shares your IP address and browser details with Zendesk, Inc., a Delaware corporation established in the United States, which handles support conversations on our behalf. Your conversation, and the contact record it creates, currently sit in Zendesk’s Europe (Ireland) region, but we have not obtained a contractual commitment to that region and Zendesk reserves the right to move account data between its regions; personal data reaches the United States in any event, through Zendesk’s own operations and the United States sub-processors it uses to run the service. Our Privacy Policy and our Subprocessors page set out the safeguards we rely on for that. If you do not opt in, the widget is not loaded at all.
  • Advertising measurement (only with your consent). The Meta pixel, plus equivalent events sent from our server, used to measure whether our Facebook and Instagram advertising works. If you opt in, this shares your IP address, browser details, the pages you view and, where you have given it to us, a scrambled (hashed) form of your email address with Meta Platforms Ireland Ltd, which acts as a joint controller with us for this and may transfer data outside the EU. It sets the _fbp and _fbc cookies listed below. If you reject or ignore the banner, none of it runs.
  • Our Help Centre is a separate platform. support.maxinodes.com is run for us by Zendesk, Inc. on its own infrastructure. Zendesk, and the network provider it puts in front of that site, set their own cookies when you visit it — they are listed in section 4. Our consent banner does run there, and it records the same choice as this one, so a decision made on any of our three sites applies to all of them. But what it can act on there is narrower: it holds the chat widget back until you allow live chat, and deletes Meta’s _fbp and _fbc if you decline marketing. It cannot stop the cookies the platform sets for itself — Zendesk’s Help Centre session, Zendesk’s own measurement of that site, and Cloudflare’s bot protection all load with the page, before any of our code runs. We would rather say that plainly than let you assume the banner covers more than it does. Those you can still control in your browser (see section 6).
  • No third-party fonts. We self-host our fonts on our website and in the Client Area, so loading a page there does not send your IP address to any third-party font service. This does not extend to the Help Centre, which loads its assets from Zendesk.

You can review or change these choices at any time using the Cookie settings button near the top of this page. The Client Area at my.maxinodes.com applies the same consent choice and sets its own strictly-necessary session and security cookies to keep you signed in and protect your account.

One consequence of sharing cookies across our subdomains. Our consent record (mx_consent), your language choice (mx_lang) and — if you allowed marketing — Meta’s _fbp cookie are all stored for .maxinodes.com and every subdomain of it. That is what lets one choice cover our website and the Client Area, but it also means your browser attaches those three cookies to every request for our Help Centre at support.maxinodes.com, so Zendesk receives them. Nothing on the Help Centre reads or acts on your consent record, and we do not use the language cookie for anything else; but an advertising identifier reaching a support platform is worth telling you about rather than leaving you to find it.

4. The cookies set on our sites

The table below lists the cookies and similar storage set across the sites this policy covers. The strictly-necessary ones are always present; the live-chat cookies appear only after you opt in to live chat, and the Meta advertising cookies only after you opt in to marketing. Our own analytics is cookieless, so it has no entry here. The last two rows are different in kind: they are set on our Help Centre by Zendesk and by the network provider in front of it, not by us, and they load with the page — before the banner we put on that site can run, which is why it cannot gate them. Exact technical names can change between releases of the software that powers our site, so where a name may vary we describe the cookie by its function.

Name Provider Purpose Duration Type
Session cookie Maxinodes (first party, maxinodes.com) Maintains your browsing session and keeps you securely signed in to the website and Client Area. Essential for navigation, ordering and account access. Session (deleted when you close your browser, or sooner on sign-out) Strictly necessary
CSRF-protection cookie Maxinodes (first party, maxinodes.com) Holds a security token that protects forms and sign-in and ordering requests against cross-site request forgery (CSRF). Essential for security. Session Strictly necessary
Consent-preferences cookie (mx_consent) Maxinodes (first party, .maxinodes.com) Remembers the cookie choices you made in our consent banner, so we apply them and don’t ask again on every page. Shared between maxinodes.com and the Client Area at my.maxinodes.com, so one choice covers both. Because it is stored for .maxinodes.com and its subdomains, your browser also sends it to our Help Centre, where it is neither read nor acted on. Up to 6 months Strictly necessary (records your consent)
Language cookie (mx_lang) Maxinodes (first party, .maxinodes.com) Remembers which language version of the site you are reading, so links without a language prefix take you to the right language and the choice carries across to the Client Area. Set on every visit, before and regardless of any consent choice, because it is needed to deliver the site in the language you chose. Being stored for .maxinodes.com and its subdomains, it is also sent to our Help Centre. Up to 12 months Strictly necessary
Live-chat cookies and storage (e.g. __zlcmid) Zendesk, Inc. (our support platform) Set only after you opt in to the Live chat category, to run your conversation and let you continue it if you move between pages or return later. Not set unless you allow live chat. Up to 180 days (or until you clear it) Functional (live chat) — consent required
Client Area session & security cookies Maxinodes (first party, my.maxinodes.com) Set by the billing and account portal to keep you signed in to your account and to protect account and billing actions. Essential to operate the Client Area. Session Strictly necessary
Essential local storage Maxinodes (first party) Where used, browser localStorage / sessionStorage that supports core site functionality (for example holding a value needed for a single visit). No analytics or marketing data is stored. Cleared on sign-out or when you clear site data Strictly necessary
Meta advertising cookie (_fbp) Meta Platforms Ireland Ltd (written on .maxinodes.com by Meta’s script) Set only after you opt in to Marketing. Gives your browser a random identifier so Meta can tell that a visit, an enquiry or a sign-up came from one of our Facebook or Instagram ads. Not set unless you allow marketing. Meta’s script stores it for .maxinodes.com and its subdomains, so once it exists your browser also sends it to our Help Centre, where Zendesk receives it. Up to 90 days (often much shorter in Safari) Marketing — consent required
Meta click cookie (_fbc) Meta Platforms Ireland Ltd (written on .maxinodes.com by Meta’s script) Set only after you opt in to Marketing, and only if you reached us by clicking one of our ads. Stores the click identifier from that ad so the visit can be matched to it. Not set unless you allow marketing. Up to 90 days (often much shorter in Safari) Marketing — consent required
Help Centre bot-management cookies (__cf_bm, _cfuvid) Zendesk, Inc., through the network provider (Cloudflare) it puts in front of our Help Centre Set when you visit our Help Centre at support.maxinodes.com, to tell human visitors apart from automated traffic and filter abusive requests. Not set on maxinodes.com or in the Client Area, and not set by us: they belong to the platform our Help Centre runs on. __cf_bm about 30 minutes; _cfuvid for as long as your browsing session lasts Set on our Help Centre by Zendesk — loads with the page, so our banner there cannot gate it
Help Centre session, measurement and search storage (_help_center_session, _zdshared_user_session_analytics, recentSearches) Zendesk, Inc. (our support platform) Set when you visit our Help Centre. They keep your Help Centre session, let Zendesk measure how the Help Centre is used, and remember your recent knowledge-base searches in your browser. That measurement is Zendesk’s own and is separate from our cookieless Matomo analytics. Session, except recent searches, which stay until you clear site data Set on our Help Centre by Zendesk — loads with the page, so our banner there cannot gate it

Our own analytics deliberately sets no cookies on our website or in the Client Area, so it has no row here (see section 3); Zendesk’s separate measurement of the Help Centre is in the table above. Should we introduce any further non-essential cookie on the surfaces our banner controls, we will list it here — with its name, provider, purpose, duration and type — before relying on your consent to set it.

5. Consent and your choices

We use a consent banner to manage your choices, in line with the EU ePrivacy rules and the General Data Protection Regulation (GDPR) as applied in Ireland. The commitments below describe how it works:

  • Prior opt-in consent. We do not load any analytics, live-chat or marketing cookie or script on our website or in the Client Area until you have given prior, freely given, specific, informed and unambiguous consent by a clear affirmative action. Strictly-necessary cookies are set without consent, as the law permits. The banner described here runs on maxinodes.com, my.maxinodes.com and our Help Centre at support.maxinodes.com, and all three share one consent record. On the Help Centre it reaches less: the Zendesk and Cloudflare cookies in section 4 are set as that page loads, before it, so prior consent is not obtained for those and we do not claim it is.
  • Reject-all is as easy as accept-all. Our banner presents Reject all with the same prominence and the same number of clicks as Accept all, on the first screen. Every non-essential category is switched off by default until you turn it on.
  • No cookie wall. We never block access to our website or condition the use of our Services on your acceptance of non-essential cookies. Declining is always a real, cost-free choice.
  • Granular control. Using Manage preferences, you can consent to analytics, live chat and marketing separately rather than all-or-nothing.
  • Withdrawing consent. You can withdraw at any time, as easily as you gave it, using the Cookie settings button near the top of this page, which reopens the preferences panel. Withdrawal does not affect the lawfulness of processing carried out before you withdrew. You can also clear or block cookies in your browser at any time (see section 6).
  • We re-ask periodically. Consent does not last forever: we ask again at least every 6 months, and whenever the purposes change materially, so the consent we hold stays current. We keep a record of your consent for our own accountability.

We do use third-party storage in three places, and each provider also processes your personal data under its own terms: the Zendesk chat widget if you allow live chat, the Meta pixel if you allow marketing, and the cookies Zendesk and its network provider set on our Help Centre as that page loads, whatever you choose in the banner there. All three are named in section 4, and every provider we rely on is listed on our Subprocessors page, with where it processes data and the safeguard relied on.

6. Managing cookies in your browser

Separately from any consent choices on our site, your browser and device give you direct control over cookies and similar storage. You can usually view, block, limit or delete cookies through your browser settings, and most browsers let you refuse third-party cookies, clear stored data, or browse in a private / incognito window. The relevant controls are found in the privacy or security settings of Google Chrome, Mozilla Firefox, Apple Safari, Microsoft Edge and other browsers; mobile devices offer similar controls in their system settings.

Please note: some of the cookies we use are strictly necessary. If you block or delete those, parts of the website and the Client Area may not work correctly — for example you may be unable to sign in, stay signed in, place an Order, or complete account and billing actions. Blocking strictly-necessary cookies does not stop us providing the Services, but it may prevent your own browser from using them as intended.

7. Changes to this policy

We may update this Cookie Policy from time to time — for example if we change the cookies we use, introduce new technologies, or need to reflect changes in the law. The version in force is always the one published at this URL, with the version label and “last updated” date shown at the top and bottom of the page. If we introduce any non-essential cookie, we will update this policy and obtain your consent first, as described in section 5. We encourage you to review this page from time to time. Nothing in this policy limits your mandatory statutory rights.

What changed in this version. This version was published on August 7, 2026 to record four infrastructure changes and the transfers that follow from them: authoritative DNS for customer domains moved to an EU provider on July 26, 2026; our own websites and the Client Area were placed behind Microsoft’s global edge network and our corporate DNS moved to Azure DNS on August 4, 2026; and support moved from our own self-hosted helpdesk to Zendesk, Inc. in the United States on August 6, 2026. Customer websites were not affected by any of them and are still served directly from our servers in the Netherlands. In this policy specifically, that meant removing a bot-protection cookie row attributed to Cloudflare as our own provider — the edge that replaced it sets no cookies at all — and disclosing the cookies Zendesk and its network provider set on our Help Centre. Published with this version, and described in sections 3 and 5: our consent banner now runs on the Help Centre as well, sharing one record with our website and the Client Area. It does not reach the cookies that platform sets for itself, and we say so rather than let the banner imply otherwise. The full record is in the change history on our Subprocessors page.

Contact

Questions about cookies: privacy@maxinodes.com.

By post: Maxinodes Ltd, 1 Ballycoolin Road, Dublin 15, Ireland.

Mail sent to that address reaches our own Microsoft 365 tenant in the EU and is then forwarded into our helpdesk platform, operated by Zendesk, Inc., a Delaware corporation established in the United States. Your message, anything attached to it and our correspondence about it are stored there. Our account data is currently held in its Europe (Ireland) region, but we have no contractual commitment to that region, and the provider and its named United States sub-processors can reach that data from the United States — so it is processed outside the EEA. If you would rather your message did not pass through a third-party helpdesk — for example because it includes identity documents, or because it names someone else — write to us by post at the address above, or email billing@maxinodes.com, which reaches us directly.