This English translation is provided for convenience. In case of any discrepancy, the Turkish version prevails and is the legally binding text.

Cookie Policy

Last updated: 22 September 2026 · Turkish version (binding)

This text describes what is stored in your browser on the webdesiz.com site and in the Webdesiz panel. The site and panel are operated by Birim Ajans Yazılım Limited Şirketi. For those who want the short answer: a few security cookies required for operation, a few browser records that remember your preferences, and Google Analytics to see visitor numbers. We do not use advertising tracking pixels.

1. What is a cookie, what is browser storage

A cookie is a small piece of text a site leaves in your browser and that is sent back with subsequent requests. Browser storage (localStorage) is a record area that stays on your device and is not sent to the server by itself. They are technically different, but because both take up space on your device we listed both item by item below.

2. Cookies we use

NameTypeDurationWhat it does
oauth_stateStrictly necessary · cookie10 minutesVerifies that the request in the Google or Facebook sign-in flow really came from you (CSRF protection). httpOnly; JavaScript cannot read it.
oauth_nextStrictly necessary · cookie10 minutesRemembers which page to return to after sign-in, so you get back to what you were doing.
meta_oauth_stateStrictly necessary · cookieFor the duration of the connection flowA signed security value used while connecting your Meta ad account. Prevents someone else from connecting an account on your behalf.
webdesiz-site-langPreference · cookie1 yearThe site language preference (Turkish or English). Written when you click the language link in the header, so the home page no longer redirects based on your browser language. Carries no identity.
_ga and those starting with _ga_Measurement · third-party cookie (Google)Period set by Google, 2 years by defaultUsed by Google Analytics to count visitors uniquely and see which pages are read. How to switch it off is explained in the section below.

Without the first three, the sign-in and ad account connection flows do not work securely, which is why we call them strictly necessary. None of them tracks you across sites.

3. What we keep in your browser

KeyDurationWhat it does
meta-saas-authUntil you sign outYour session. Your sign-in details and access token are kept here so you do not have to sign in again on every page. Deleted when you sign out.
webdesiz-langUntil you change itThe panel language preference. Remembers whether you use Turkish or English.
webdesiz-ad-chats-v1Until a successful transfer or until you clear site data (legacy version only)Ad assistant conversations left in the browser by the old version. Webdesiz does not show them automatically or upload them to your account. They are taken to the server only if you explicitly confirm the conversations are yours and choose to transfer them; after a successful transfer this old record is deleted. New conversations are not written to this key.
meta-saas-checklist-closedUntil you change itSo the setup steps list does not appear again if you closed it.
pixelBannerDismissedUntil you change itSo the pixel warning strip does not open again if you closed it.

These records stay only in the browser you signed in with. They do not carry over when you sign in from another device.

4. Measurement: Google Analytics

We use Google Analytics 4 (gtag.js) on the site, to see which pages are read, how many visitors come and where people get stuck. For this Google leaves the _ga cookies listed above in your browser, and device, browser and approximate location information is sent to Google during your visit.

If you do not want this there are two ways: you can block third-party cookies in your browser’s cookie settings, or install Google’s Analytics opt-out add-on. Neither affects how the panel works.

5. What we do not use

  • No advertising pixel. No Meta pixel code (fbq), Google Ads remarketing tag or similar ad tracking code runs on our site. We do not follow you with ads elsewhere because we saw you on our site.
  • No heat maps or session recording. We do not use any tool such as Hotjar or Clarity that records your screen.
  • Fonts come from our own server. Site fonts are served with the application; your browser does not request a third-party site to get fonts.
  • We do not sell cookies to anyone. We do not build advertising profiles with this data or pass it to third parties.

You may see a tag named facebook-domain-verification in the page source. This is not a tracking code; it is a one-line verification proving to Meta that the domain belongs to us. It leaves no cookie and collects no data.

6. The pixels you manage in the panel are a separate matter

Webdesiz lets you connect and control your Meta pixels. Those pixels run on your own site, measure the conversions of your ads and are not the subject of this policy. Responsibility for those pixels and the obligation to inform your visitors belong to you.

7. You are in control

  • You can delete cookies or block them for this site from your browser settings. If you block the strictly necessary cookies you may not be able to sign in.
  • To clear browser storage you can use your browser’s “clear site data” option. This deletes the old browser chat record and your preferences; the current chat history in your account stays on the server and can be deleted from the Ad Assistant panel.
  • When you sign out of the panel, your session record (meta-saas-auth) is deleted from your browser.

8. Changes and contact

If we add a new tool we change this page and the update date at the top. You can send questions about cookies and personal data to destek@webdesiz.com. How personal data is processed is in the Privacy Policy and KVKK Notice.