Last updated: 22 September 2026
This page explains the cookies and similar technology (like local storage) that arbostar.com uses, what they're for, and how to control them. It's part of our Privacy Policy, which covers how we handle personal data more broadly.
What cookies are
Cookies are small text files a website stores on your device. They let a site remember things between visits or page loads — like whether you're logged in, or which ads led you here. "Similar technology" includes local storage, which works the same way but is stored differently by your browser.
Your choice depends on where you're browsing from
If you're in the EEA, UK, Switzerland, or Quebec: non-essential cookies (analytics and advertising) only load after you actively accept them in our cookie banner. If you reject them or close the banner without choosing, only strictly necessary cookies run.
Everywhere else: non-essential cookies may load by default when you arrive, and you can opt out using the controls below.
In both cases, you can change your mind at any time.
Cookies we use
Built from live scans of arbostar.com, arbostar.com/pricing, and the book-a-demo page (run in September 2026 as a UK visitor and as an Ontario visitor, when every tag loads). "First party" means the cookie is set on the arbostar.com domain; "third party" means it's set on the named provider's own domain.
Strictly necessary
| Name |
Provider |
Purpose |
Lifetime |
Party |
__cf_bm | Cloudflare (on behalf of Calendly, Capterra) | Bot detection / protects the booking and review widgets from automated abuse | ~30 minutes | Third party |
_cfuvid | Cloudflare (Calendly) | Distinguishes individual users behind a shared network for bot protection on the booking widget | Session | Third party |
m | Stripe (loaded via Calendly's booking widget) | Fraud detection for the payment step within Calendly's own flow | At least 13 months (measured: 400 days, the longest a browser allows) | Third party |
arbostar_en_cookie_consent, arbostar_de_cookie_consent, arbostar_fr_cookie_consent, arbostar_es_cookie_consent (local storage) | ArboStar (own site) | Remembers your Accept/Reject choice in the cookie banner, per language edition of the site | 12 months | First party |
arbostar_en_cookie_consent_at, arbostar_de_cookie_consent_at, arbostar_fr_cookie_consent_at, arbostar_es_cookie_consent_at (local storage) | ArboStar (own site) | Records the date of your consent choice, so we can ask again after 12 months | 12 months | First party |
arbostar_geo (session storage) | ArboStar (own site) | Country/region looked up from your IP address on our own server; used to decide whether the cookie banner applies to you and to show the nearest office | Until the browser tab is closed | First party |
last_submitted_form | ArboStar (own site) | Remembers that you already submitted a form, so it isn't shown again and can be pre-filled | Session | First party |
testcookie | ArboStar (own site) | Momentary check that cookies are enabled in your browser, only used as a fallback in older browsers | Session | First party |
_GRECAPTCHA | Google reCAPTCHA | Spam and abuse protection on forms | 6 months | Third party |
rc::a (local storage), rc::c (session storage) | Google reCAPTCHA | Tells people and bots apart on forms | rc::a until cleared, rc::c until the tab is closed | Third party (stored under google.com, inside the reCAPTCHA frame) |
Analytics
| Name |
Provider |
Purpose |
Lifetime |
Party |
_ga, _ga_VPSH0SJNKF, _ga_BER67KCWVW | Google Analytics (GA4, two properties: G-VPSH0SJNKF and G-BER67KCWVW) | Distinguishes visitors and sessions to measure site usage | Up to 2 years | First party (set on arbostar.com) |
_clck, _clsk | Microsoft Clarity | Session/behaviour analytics (heatmaps, session replay) — Clarity's own cookie list confirms these are first-party | _clck ~1 year, _clsk ~1 day | First party |
_cltk (session storage) | Microsoft Clarity | Keeps the Clarity session together while the tab is open | Until the tab is closed | First party |
CLID, SM, MUID, MR, ANONCHK | Microsoft Clarity | Same as above, set on Microsoft's own domain — Clarity's own documentation lists these five by name (CLID, ANONCHK, MR, MUID, SM) | Up to ~13 months (ANONCHK/SM are short-lived markers) | Third party |
snowplowOutQueue_ct_js-tracker_post2 (local storage) | Capterra (Snowplow-based tracker) | Tracks visits arriving from Capterra listings/reviews | Until cleared | First party (local storage on arbostar.com) |
Advertising
| Name |
Provider |
Purpose |
Lifetime |
Party |
_gcl_au, _gcl_ls (local storage) | Google Ads | Links ad clicks to conversions | Up to 90 days | First party |
test_cookie, IDE | Google / DoubleClick | Ad measurement and remarketing | test_cookie ~15 min, IDE ~13 months | Third party |
_uetsid, _uetvid | Microsoft Advertising (UET) | Tracks ad conversions and remarketing audiences | _uetsid ~24 hours, _uetvid ~13 months | First party (also mirrored to local storage) |
MUID, MR, SRM_B | Bing/Microsoft Advertising | Ad measurement across bing.com and bat.bing.com | MUID, SRM_B ~13 months, MR ~7 days | Third party |
_rdt_uuid | Reddit Pixel | Ad conversion tracking | Up to 90 days | First party |
_rdt_cfg (session storage) | Reddit Pixel | Holds the pixel's settings while the tab is open | Until the tab is closed | First party |
_fbp | Meta Pixel (Facebook/Instagram ads) | Identifies your browser to Meta so a form submission can be attributed to the Facebook or Instagram ad that brought you here | 90 days, renewed on each visit | First party (set by the pixel script running on arbostar.com) |
_fbc | Meta Pixel (Facebook/Instagram ads) | Stores the Facebook click ID (fbclid) from the ad link you followed, for the same attribution purpose | 90 days | First party |
lastExternalReferrer, lastExternalReferrerTime (local storage) | Meta Pixel | Remembers which outside site sent you here, and when, for the same attribution purpose | Until cleared | First party |
__oppref, __obref | OpenAI Ads pixel (ChatGPT ad conversions) | __oppref stores the attribution identifier from the landing-page link; __obref is a random per-browser reference. Both let OpenAI measure whether a ChatGPT/OpenAI ad led to a lead or booking | __oppref 30 days, __obref 365 days | First party (set by the pixel script running on arbostar.com, per OpenAI's own developer documentation) |
oaiq_cs:[id] (session storage) | OpenAI Ads pixel | Keeps the pixel's session while the tab is open | Until the tab is closed | First party |
__cf_bm, _cfuvid | Cloudflare (on behalf of OpenAI's pixel servers) | Bot protection on OpenAI's pixel servers | ~30 minutes / session | Third party |
_twsid, _twpid | X/Twitter Pixel | Ad conversion tracking | ~13 months | First party |
guest_id, guest_id_ads, guest_id_marketing, personalization_id, muc_ads | X/Twitter | Ad measurement and personalisation, set on twitter.com/t.co when the X pixel loads | About 13 months or longer (measured: 400 days, the longest a browser allows) | Third party |
Set by Calendly inside the booking widget
The demo-booking pages show Calendly's scheduler in a frame. Calendly sets these cookies on its own domain and decides itself whether to ask: if you have not accepted cookies on our site, we do not tell Calendly that you did, so Calendly shows its own cookie choice where the law requires one. See Calendly's cookie notice for details.
If you're in the UK, the EEA, or Quebec, Calendly's own consent tool (OneTrust) asks you before it runs any of its analytics cookies — including the Google Analytics and Google Ads rows below — regardless of the choice you made in our banner. Elsewhere, Calendly may run them by default.
Before you make any choice, the scheduler also runs a few security checks that set no cookie at all: a device-fingerprint check (dfp.calendly.com) and Stripe's own anti-fraud script (m.stripe.network) to screen out abusive bookings, Google's reCAPTCHA to block spam submissions, and Google Identity Services (accounts.google.com) to offer a "Sign in with Google" shortcut in the booking form. These run for every visitor, in every region, because Calendly treats them as security measures rather than analytics or advertising — none of them stored a cookie in our tests.
| Name |
Provider |
Purpose |
Lifetime |
Party |
OptanonConsent | Calendly (OneTrust) | Stores your cookie choice for Calendly | 1 year | Third party |
__cf_bm, _cfuvid | Calendly (Cloudflare) | Bot protection for the scheduler (also listed under Strictly necessary) | ~30 minutes / session | Third party |
_ga, _ga_VPSH0SJNKF | Google Analytics (our property, run by Calendly's analytics integration) | Counts demo bookings in our statistics | ~13 months | Third party |
_gcl_au | Google Ads (run by Calendly's analytics integration) | Links a demo booking to the ad that brought you | 90 days | Third party |
m | Stripe (inside Calendly) | Fraud detection for Calendly's payment step (also listed under Strictly necessary) | At least 13 months (measured: 400 days, the longest a browser allows) | Third party |
Functional
| Name |
Provider |
Purpose |
Lifetime |
Party |
gist_id_[workspace_id] | Gist | Assigns an anonymous ID to your browser so the chat widget can recognise you across page views | 12 months | First party (set on arbostar.com) |
gist_identified_[workspace_id] | Gist | Records whether you've identified yourself to the chat widget (for example, by giving your email) | 12 months | First party (set on arbostar.com) |
chatDetails, gist-state, trackPageViewIntervals (local storage) | Gist | Keep the chat widget's state, your open conversation and the pages you viewed, so the chat can pick up where you left off | Until cleared | First party |
gt-session-id, gtSessionId (session storage) | Gist | Identify the current chat session | Until the tab is closed | First party |
calendlyUrlParams (session storage) | ArboStar (own site) | Keeps the details of the Calendly booking you just made (your name, email and phone, date/time, host, booking ID, and any campaign or ad click IDs in the link) so the quiz on the thank-you page can send them with your answers, even if you reload the page | Until you close the tab | First party |
calendly_conversion_sent_[booking ID] (local storage) | ArboStar (own site) | Marks that the "demo booked" event for one specific Calendly booking has already been sent, so it isn't counted twice | Until cleared | First party |
thankYouCalendlyQuizCurrentSlide (local storage) | ArboStar (own site) | Remembers which question of the short post-booking quiz you're on | Until cleared | First party |
thankYouCalendlyQuizAnswers (local storage) | ArboStar (own site) | Stores your answers to the post-booking quiz (your name, email, and phone are deliberately left out of what's saved here) | Until cleared | First party |
quizCurrentSlide (local storage) | ArboStar (own site) | Remembers which question of the site survey you're on | Until cleared | First party |
quizAnswers (local storage) | ArboStar (own site) | Stores your answers to the site survey — this includes your name, email, and phone number if you entered them | Until cleared | First party |
talkToArboristQuizCurrentSlide (local storage) | ArboStar (own site) | Remembers which question of the "talk to an arborist" quiz you're on | Until cleared | First party |
talkToArboristQuizAnswers (local storage) | ArboStar (own site) | Stores your answers to the "talk to an arborist" quiz — this includes your name, email, and phone number if you entered them | Until cleared | First party |
pdf_generator_profile (local storage) | ArboStar (own site) | Saves your company name, email, phone, and currency from the invoice/estimate generator tool, so they're pre-filled next time you use it — this is personal/company contact data | Until cleared | First party |
roi_user_review (local storage) | ArboStar (own site) | Saves the name (optional), rating, and comment you submit through the ROI calculator's feedback form, so your review shows immediately on the page — includes your name if you gave one | Until cleared | First party |
countdownReferralDeadline (local storage) | ArboStar (own site) | Stores the deadline for a referral-offer countdown timer so it stays consistent if you reload the page | Until cleared | First party |
marketingBannerSeen, tornadoBannerSeen, stormSeasonBannerSeen (local storage) | ArboStar (own site) | Records that a particular sticky promotional banner has already been shown to you, so it isn't shown again | Until cleared | First party |
chosenEasterPrize (local storage) | ArboStar (own site) | Stores the prize randomly assigned to you by an on-page "easter egg" game, so the same prize keeps showing on repeat visits | Until cleared | First party |
globe_clients_counter (local storage) | ArboStar (own site) | Stores a slowly-incrementing number used to animate a "clients served" counter on the page | Until cleared | First party |
arbostar_roi_seen (local storage) | ArboStar (own site) | Remembers that you've clicked the ROI calculator link, so its "new" badge stops showing | Until cleared | First party |
The Gist chat widget loads with the page and sets these cookies straight away, without waiting for you to open the chat. If you're in the EEA, UK, Switzerland or Quebec, it only loads after you accept cookies.
Video players (YouTube)
Some of our pages embed YouTube videos. The video player itself isn't loaded until you either accept cookies or press "Play video" on the notice shown in its place. Once you do, YouTube (Google) sets the cookies below in your browser and receives data from the player, handled under Google's own privacy policy.
| Name |
Provider |
Purpose |
Lifetime |
Party |
VISITOR_INFO1_LIVE, VISITOR_PRIVACY_METADATA, __Secure-YNID, __Secure-ROLLOUT_TOKEN | YouTube (Google) | Recognise your browser, remember your privacy settings, and estimate your connection speed for the player | ~6 months | Third party |
YSC | YouTube (Google) | Counts video views and keeps playback settings for this visit | Until you close the browser | Third party |
IDE | Google / DoubleClick | Ad measurement linked to the video player (also listed under Advertising) | ~13 months | Third party |
yt-icons-last-purged, ytidb::LAST_RESULT_ENTRY_KEY (local storage) | YouTube (Google) | The player's own working data | Until cleared | Third party (stored under youtube.com, inside the player) |
Marketing / attribution
Set only after you accept cookies, if you're in the EEA, UK, Switzerland, or Quebec; may load by default elsewhere, per the choice explained above.
If you don't accept, or you haven't chosen yet, neither cookie is written: this was confirmed on the live site with a visitor recognised as browsing from the UK, and, separately, with a real Swedish IP address.
| Name |
Provider |
Purpose |
Lifetime |
Party |
cookies_utm_keys | ArboStar (own site) | Stores the campaign parameters of the ad or link that brought you here (e.g. utm_source, utm_medium, utm_campaign, utm_term, utm_content, gclid, msclkid, referral code), so that if you later submit a form, it can be attributed to that campaign | 30 days | First party |
userPageHistory (local storage) | ArboStar (own site) | Records the pages you viewed in this browser, attached to a form you submit, for campaign attribution | Until cleared | First party |
Where this list comes from
The tables above reflect cookies and storage observed in live automated scans of our pages in September 2026, Calendly's own published cookie rules, and each other vendor's own published documentation. They do not capture every cookie a script might set under different conditions (for example, after you interact with chat or complete a booking) — if you spot something not listed here, let us know at info@arbostar.com and we'll add it.
More information
For how we use the data these cookies collect, and your broader rights over your personal data, see our Privacy Policy.