NIVOMAX Cookie Use Statement
Last Updated on May 13, 2025 | 4 min read
Overview
This Cookie Use Statement applies to the NIVOMAX Web Viewer, Self-Serve Portal (SSP), and Builder, all of which are secure, authenticated applications used by our customers and their authorized end users. These platforms are accessed through SSO (Single Sign-On) and do not use any cookies for tracking, advertising, or marketing purposes.
We are committed to maintaining user privacy and transparency. This page outlines the types of cookies we use, their purposes, and why they are essential to the functioning of our applications.
Note
SSO authentication is always handled by third-party identity providers (e.g., Microsoft Azure AD, Okta, etc.), and the specific provider used may vary depending on the configuration selected by the NIVOMAX Licensee. Any cookies or tokens generated and managed by these external authentication providers are outside the scope of this statement. Users should refer to the respective identity provider’s privacy and cookie policies for more information. This document pertains exclusively to cookies created and managed by NIVOMAX applications.
What Cookies We Use
All cookies used by NIVOMAX Web Viewer, SSP, and Builder fall under the category of strictly necessary cookies. These cookies are critical to the core functionality and security of the applications. They include:
- Session Cookies: Maintain your authenticated session after login.
- Authentication Tokens: Enable secure user validation after SSO login.
- CSRF Protection Tokens: Prevent unauthorized commands and protect against cross-site request forgery attacks.
- User Context Cookies: Store UI preferences or recent actions for a smoother user experience within a session.
These cookies are created and managed solely for the purpose of enabling the secure and reliable operation of our systems.
No Marketing or Third-Party Cookies
We do not use any of the following:
- Tracking or behavioral analytics cookies
- Advertising or retargeting cookies
- Third-party embedded cookie sources (e.g., social media plugins)
Cookie Notice and User Settings
The following is the Boilerplate Cookie Notice used by default across NIVOMAX applications. This template may be customized by the deploying NIVOMAX Licensee to reflect specific distribution requirements.
General Cookie Notice (as displayed at login)
To operate with the required levels of security and functionality, the NIVOMAX platform uses strictly necessary cookies only. These cookies are essential for login, session management, and core application behavior across the platform.
We do not use any tracking, marketing, or third-party cookies.By continuing, you agree to the use of these cookies across the platform.Your preference will be remembered in your profile and is valid for six months.
[Accept and Continue] [Decline and Logout]
Each NIVOMAX Distribution includes a configurable cookie notice that must be enabled during deployment. The cookie notice informs users that strictly necessary cookies are used and offers the following options:
- Accept and Continue: Proceeds with login and application access.
- Decline and Logout: Ends the session and prevents application access.
To improve the user experience, NIVOMAX provides a profile-level cookie preference setting within the Self-Serve Portal (SSP). When enabled, this setting (which must be renewed every six months to remain valid):
- Saves the user’s cookie acceptance decision securely in their authenticated profile
- Applies across all NIVOMAX applications (e.g., Web Viewer, Builder, SSP) accessed via SSO
- Prevents the cookie notice from appearing repeatedly once consent is recorded
- Is retained independently of browser settings (e.g., clearing cache does not reset consent)
Users can review or withdraw this consent at any time via their profile settings in the SSP.
This approach is fully compliant with applicable privacy regulations, provided all cookies remain strictly necessary and no optional cookies are introduced without additional consent.
Why We Don’t Offer Cookie Opt-Out Options
All cookies in NIVOMAX Web Viewer, SSP, and Builder are strictly necessary for secure authentication and functional operation, which means:
- The system will not function if these cookies are disabled or blocked.
- It is not technically feasible to offer an “opt-out” of cookies without breaking the login or navigation process.
By logging into and using these applications, users acknowledge and accept the use of these essential cookies.
Basis and Compliance
NIVOMAX complies with major global privacy laws including:
- The General Data Protection Regulation (GDPR) applicable in the European Union
- The California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA) in the United States
- PIPEDA (Personal Information Protection and Electronic Documents Act) in Canada
- Other regional privacy and data protection laws where our users are located
Under these frameworks:
- Strictly necessary cookies do not require prior user consent.
- We are obligated to transparently disclose our cookie usage and their specific purposes.
This statement is part of our compliance strategy and is updated regularly to reflect evolving legal and operational requirements.
Contact
If you have any questions about this Cookie Use Statement or how NIVOMAX manages privacy and security, please contact us.