Cookie and device storage notice · Version 1.0 · 26 August 2026

Cookies and device storage

This notice explains the small data files used to keep members signed in, protect forms and remember learning activity.

No advertising cookies. The Academy does not currently use third-party advertising pixels or sell browser activity for advertising.

Essential sign-in cookies

When a member signs in, the Academy sets secure session cookies for access and session renewal. They are HTTP-only, restricted to the Academy, sent using secure transport on the live site and used to authenticate the member. The access cookie is short-lived; the renewal cookie can remain for up to 30 days unless you sign out or clear it.

Browser storage

The Learning Hub uses local storage to remember learning progress, course reading, scenario attempts, assessment history, certificates and onboarding choices on that browser. Session storage may remember a temporary interface choice until the tab or session ends. Signed-in learning activity may also be synchronised to the secure member record so it can be restored.

Security services

Cloudflare Turnstile may process device, browser, network and interaction signals when a protected form is used to distinguish legitimate activity from automated abuse. Hosting and security infrastructure may also use essential technical controls needed to deliver and protect the site.

Your controls

You can sign out to clear Academy session cookies and use browser settings to delete cookies or site storage. Blocking essential cookies will prevent member login. Clearing browser storage may remove device-only progress or preferences that have not synchronised to the member account.

Changes

If optional analytics or advertising technology is introduced, this notice and any required choice mechanism will be updated before that use begins.