Cookies Policy.
Version 1.1 · Last updated 29 June 2026
MEDUCATEED — COOKIES POLICY
Effective Date: April 10, 2026 Last Updated: June 29, 2026 Document Version: 1.1
IMPORTANT NOTICE — PLEASE READ THIS COOKIES POLICY CAREFULLY
This Cookies Policy explains in complete detail what cookies and similar tracking technologies MeducateED uses, why we use them, what data they collect, how long they persist, who has access to them, and what choices you have regarding their use. This Policy is incorporated by reference into MeducateED's Privacy Policy and Terms of Use and Service Agreement, and constitutes an integral part of MeducateED's suite of legally binding user-facing documents. By continuing to use MeducateED's website, mobile applications, or Desktop Application after having been informed of this Policy, you consent to the use of cookies as described herein, subject to the choices and controls available to you under Section 12.
1. IDENTITY OF THE OPERATOR AND SCOPE
1.1 This Cookies Policy is published by MeducateED, an educational technology enterprise registered and operating under the laws of the Arab Republic of Egypt, with its principal place of business at: 26th of July Corridor, First Al Sheikh Zayed, Giza Governorate, Egypt.
1.2 This Policy applies to all cookies and similar tracking technologies deployed on or through:
(a) The MeducateED website at https://meducateed.com and all associated subdomain paths;
(b) The MeducateED iOS mobile application (distributed via Apple App Store);
(c) The MeducateED Android mobile application (distributed via Google Play Store);
(d) The MeducateED Desktop Application for Windows, macOS, and Linux;
(e) All embedded content, forms, widgets, and third-party integrations served through the above properties, including the Corvus AI assistant widget, the Skeuomorphic Book Viewer, the Slide+ viewer, the Student Dashboard, the Disaster Tracker, and the MeducateED Open Library.
1.3 This Policy does not apply to cookies set by third-party websites that MeducateED links to, or to cookies set by third-party platforms (such as Spotify, Anghami, LinkedIn, Instagram, Facebook, or TikTok) when you interact with MeducateED's presence on those platforms. MeducateED has no control over cookies set by third parties and directs you to the relevant third party's cookie or privacy policy for information about their practices.
2. DEFINITIONS
2.1 For the purposes of this Policy:
"Cookie" means a small text file placed on your Device by a web server when you visit a website or use a web application. Cookies are stored in your browser's designated cookie storage and are transmitted back to the originating server — or to another server that recognizes the cookie — on each subsequent request.
"Cookie Consent" means the specific, informed, freely given, and unambiguous indication of agreement by a User to the placement of non-essential cookies on their Device, provided through MeducateED's cookie consent banner or mechanism.
"Device" means any computer, smartphone, tablet, smart TV, or other electronic device through which a User accesses MeducateED's Services.
"First-Party Cookie" means a cookie set directly by MeducateED (i.e., from the meducateed.com domain or any subdomain thereof), which can only be read by MeducateED.
"Local Storage" means a browser-side storage mechanism (Web Storage API) that allows web applications to store data persistently in the browser outside of the cookie mechanism. Where MeducateED uses Local Storage for purposes functionally equivalent to cookies, those uses are disclosed in this Policy.
"Persistent Cookie" means a cookie that remains stored on your Device after your browsing session ends and until it expires or is manually deleted, based on a defined expiry date set at the time of placement.
"Pixel Tag" or "Web Beacon" means a small, typically transparent image file (or a one-pixel image) embedded in a webpage or email that is used to track when the page or email has been accessed. Pixel tags may be used in conjunction with cookies.
"Session Cookie" means a cookie that is stored temporarily in your browser's memory for the duration of a single browsing session and is automatically deleted when you close your browser.
"Session Storage" means a browser-side storage mechanism that stores data only for the duration of a page session and is cleared when the tab or window is closed. Where MeducateED uses Session Storage for purposes disclosed in this Policy, that use is identified as such.
"Similar Technologies" means any technology functionally equivalent or analogous to cookies that stores or accesses information on a User's Device, including Local Storage, Session Storage, IndexedDB, pixel tags, web beacons, device fingerprinting signals, and similar client-side storage or tracking mechanisms.
"Third-Party Cookie" means a cookie set by a domain other than meducateed.com — typically by a third-party service provider whose code is loaded by MeducateED's pages, such as an analytics platform, payment processor, or social media plugin.
3. WHAT ARE COOKIES AND HOW DO THEY WORK?
3.1 When you visit a MeducateED webpage, the server sends a response to your browser that may include instructions to set one or more cookies. Your browser stores those cookies and includes them in subsequent requests to the same domain or, in the case of third-party cookies, to the specified third-party domain.
3.2 Cookies serve a range of functions depending on their type. At their most fundamental level, cookies enable a server to recognize whether a request is coming from a browser that has previously visited and identify what preferences or state information was recorded. Without cookies (or a functional equivalent), every page visit would be treated as a fresh interaction with no memory of previous visits, making features such as persistent login, shopping carts, language preferences, and personalized content technically infeasible.
3.3 Cookies vary in their persistence and scope. A session cookie expires the moment you close your browser; a persistent cookie survives browser closure and remains stored until its specified expiry date or until you delete it. A first-party cookie is domain-scoped to the website that set it; a third-party cookie can be read by a different domain, enabling cross-site tracking and attribution.
3.4 In addition to cookies in the strict sense, MeducateED and its service providers use Local Storage, Session Storage, and pixel tags for purposes that are functionally equivalent or complementary to cookies. All such uses are disclosed in this Policy and governed by the same consent framework as cookies.
4. CATEGORIES OF COOKIES AND SIMILAR TECHNOLOGIES USED BY MEDUCATEED
MeducateED uses the following categories of cookies and similar technologies. The category determines both the legal basis for placement and whether User consent is required.
4.1 STRICTLY NECESSARY COOKIES
Legal Basis: Legitimate interests / contractual necessity. Consent is not required for strictly necessary cookies. These cookies cannot be disabled without materially impairing the ability to use the Services.
Purpose: Strictly necessary cookies are those whose operation is technically essential to the delivery of the Services that you have explicitly requested. Without these cookies, the services you have requested cannot be provided.
What they do:
| Cookie / Storage Key | Type | Expiry | Purpose |
|---|---|---|---|
meducateed_session | First-party session cookie | Session (expires on browser close) | Maintains your authenticated login session across pages. Contains an encrypted session token that the server uses to identify your Account. Deleted automatically when you log out or close your browser. |
meducateed_auth_token | First-party persistent cookie | 30 days (rolling refresh on activity) | Persistent authentication token for the "Stay logged in" feature. Allows your browser to re-authenticate without re-entering credentials on your next visit. Only set when you actively select the "Remember me" or "Stay logged in" option. |
csrf_token | First-party session cookie | Session | Cross-Site Request Forgery (CSRF) protection token. Required to validate that form submissions and API requests originate from an authenticated session on meducateed.com rather than from a malicious external site. Essential security measure. |
student_id_session | First-party session cookie | Session | Stores your authenticated Student ID in session scope for the purpose of rendering the Student ID watermark on Book Viewer and Slide+ content. Not stored persistently. Cleared on session end. |
corvus_rate_limit | First-party persistent cookie | 1 hour (rolling) | Stores the IP-linked rate limit counter for the Corvus AI assistant (30 messages per hour). Required to enforce fair use limits. Contains only a numerical counter and a timestamp; contains no personal data. |
cookie_consent_preferences | First-party persistent cookie | 12 months | Stores your cookie consent choices (accepted/declined per category) as expressed through the consent banner. Required to honor your preferences on subsequent visits without repeating the consent request. |
platform_locale | First-party persistent cookie | 12 months | Stores your selected interface language and region preference so that the platform renders in your preferred locale on subsequent visits. |
cart_session | First-party session cookie | Session | Stores the contents of your purchase session (selected products, applied coupon codes, and checkout progress) while you navigate the checkout flow. Cleared on purchase completion, session expiry, or browser close. |
lms_progress_sync | Local Storage (Desktop Application only) | Persistent until cleared | Stores offline progress synchronization state in the Desktop Application's local storage, enabling the sync of study progress to MeducateED's servers when internet connectivity is restored after an offline session. |
4.2 FUNCTIONAL COOKIES
Legal Basis: Legitimate interests (where necessary for service delivery) or User consent (where optional). Functional cookies that are not strictly necessary require your consent before being set.
Purpose: Functional cookies enable enhanced functionality and personalization. They remember choices you have made or preferences you have set and allow the platform to deliver a more personalized and convenient experience.
What they do:
| Cookie / Storage Key | Type | Expiry | Purpose |
|---|---|---|---|
ui_theme_preference | First-party persistent cookie | 12 months | Stores your interface theme preference (e.g., light mode / dark mode), if a theme toggle is offered. Enables the platform to render in your preferred visual mode on every visit without prompting. |
video_playback_settings | Local Storage | Persistent until cleared | Stores your preferred video playback settings, including playback speed, caption language preference, caption on/off state, and audio volume level. Ensures your preferences are applied automatically every time you start a new video. |
notification_dismissed | First-party persistent cookie | 30 days | Records which platform-level notifications or banners you have dismissed, to prevent them from reappearing on subsequent visits within the dismissal period. |
corvus_chat_context | Session Storage | Session (cleared on tab close) | Stores the current conversation history of your active Corvus AI session in your browser's Session Storage for continuity within a single browsing session. Not transmitted to MeducateED's servers for persistent storage. Cleared automatically when you close the tab. |
dashboard_layout | Local Storage | Persistent until cleared | Stores your Student Dashboard layout preferences (e.g., widget arrangement, pinned modules, collapsed sections) so your customized dashboard view is restored on login. |
qbank_filter_state | Session Storage | Session | Stores the filter and sort state you applied to the Question Bank (e.g., subject filter, difficulty filter, flagged-only view) for the duration of your session, so you do not lose your filter configuration while navigating between questions. |
last_accessed_module | First-party persistent cookie | 7 days | Stores a reference to the last course module or question bank session you were active in, enabling a "Continue where you left off" prompt on your next login. |
accessibility_settings | Local Storage | Persistent until cleared | Stores any accessibility preferences you have set through the platform's accessibility controls, including font size adjustments, high-contrast mode selection, reduced motion override, and caption styling preferences. |
4.3 ANALYTICS AND PERFORMANCE COOKIES
Legal Basis: User consent required before placement. Where consent is not given, these cookies will not be set.
Purpose: Analytics cookies collect information about how Users interact with the MeducateED platform, which pages they visit, how long they spend on content, what actions they take, and where they encounter technical errors. This data is used exclusively for the purposes described in Section 4.5 of the Privacy Policy and Section 7.1(i) of the Privacy Policy, including product improvement, content quality optimization, A/B testing, performance monitoring, and business intelligence.
Important: Analytics cookies collect data about your behavior in aggregate form or in pseudonymized form. MeducateED's first-party analytics are processed entirely within MeducateED's controlled infrastructure. Where third-party analytics platforms are used, MeducateED implements IP anonymization and data sharing restrictions as described below.
What they do:
| Cookie / Storage Key | Provider | Type | Expiry | Purpose |
|---|---|---|---|---|
_ga | Google Analytics (GA4) | Third-party persistent cookie | 2 years | Google Analytics primary identifier cookie. Distinguishes unique users and sessions. Contains a randomly generated identifier (not personally identifiable). Used to count visits and track traffic sources for aggregate analytics reporting. IP anonymization is enabled, meaning the last octet of your IP address is masked before transmission to Google. |
_ga_[MEASUREMENT_ID] | Google Analytics (GA4) | Third-party persistent cookie | 2 years | Session state storage for Google Analytics 4. Stores session-level data for the current analytics session. Works in conjunction with _ga. |
_gid | Google Analytics (GA4) | Third-party persistent cookie | 24 hours | Distinguishes users for a 24-hour analytics session window. Complements _ga for intraday analytics. |
_gat | Google Analytics (GA4) | Third-party persistent cookie | 1 minute | Throttling cookie. Used to limit the rate of requests to Google Analytics collection servers. Does not contain personally identifiable information. |
meducateed_evt | MeducateED (first-party) | First-party persistent cookie | 90 days | MeducateED's proprietary event tracking cookie. Records a pseudonymized session identifier linked to platform event logs (page views, feature interactions, video engagement events, question bank sessions). Used for internal analytics only. Not shared with third parties. Pseudonymized identifier cannot be reversed to identify a specific individual without access to MeducateED's internal mapping table, which is held under restricted access. |
meducateed_ab | MeducateED (first-party) | First-party persistent cookie | 30 days | A/B test variant assignment cookie. Records which variant of an active product experiment has been assigned to your session, ensuring you see a consistent version of any tested feature throughout the experiment period. Contains only a variant identifier code; no personal data. |
hj_* (Hotjar, if enabled) | Hotjar | Third-party persistent cookie | 365 days | Hotjar session analytics. Collects anonymized heatmap, scroll map, and session recording data for UX research purposes. MeducateED configures Hotjar with IP masking enabled and suppresses recording of any input fields and authentication areas. Only enabled if MeducateED activates Hotjar on specific pages for defined UX research periods. |
mp_* (Mixpanel, if enabled) | Mixpanel | Third-party persistent cookie | 1 year | Product analytics event tracking. Records feature interaction events and user journey data for cohort analysis and funnel reporting. Mixpanel is used in pseudonymized mode; MeducateED does not transmit personally identifiable data fields to Mixpanel. |
Third-Party Analytics Opt-Out: You may opt out of Google Analytics tracking at any time by installing the Google Analytics Opt-out Browser Add-on available at https://tools.google.com/dlpage/gaoptout. You may opt out of Hotjar tracking at https://www.hotjar.com/legal/compliance/opt-out. You may opt out of Mixpanel tracking at https://mixpanel.com/optout.
4.4 PAYMENT AND TRANSACTION COOKIES
Legal Basis: Contractual necessity. Set only when you initiate a purchase transaction. Cannot be disabled during an active checkout session.
Purpose: These cookies are set by MeducateED's Payment Processors (PayPal and Stripe) and by MeducateED's own checkout infrastructure — including its Local Payment Method checkout flow for InstaPay, Vodafone Cash, and Fawry — to facilitate secure payment processing, fraud detection, and transaction verification.
What they do:
| Cookie / Storage Key | Provider | Type | Expiry | Purpose |
|---|---|---|---|---|
| PayPal session and fraud detection cookies | PayPal | Third-party cookies (various names) | Session to 13 months (varies by cookie) | PayPal sets a range of cookies when its payment interface is loaded, including session management cookies, fraud risk assessment cookies, and A/B test assignment cookies. These are governed by PayPal's Cookie Policy, available at https://www.paypal.com/uk/webapps/mpp/ua/cookie-full. MeducateED does not control the specific cookies set by PayPal. |
| Stripe session and fraud detection cookies | Stripe | Third-party cookies (various names, including __stripe_mid, __stripe_sid) | 1 year (__stripe_mid); Session (__stripe_sid) | Stripe sets cookies to detect fraud, link payment sessions, and maintain checkout state during payment processing. __stripe_mid (machine identifier) persists for 1 year; __stripe_sid (session identifier) is a session cookie. These are governed by Stripe's Privacy Policy, available at https://stripe.com/privacy. |
checkout_intent_id | MeducateED (first-party) | First-party session cookie | Session | Stores the MeducateED-side payment intent identifier for the current checkout session, used to correlate the payment processor confirmation with the correct pending order on MeducateED's platform. Cleared on purchase completion or session expiry. |
local_payment_order_ref | MeducateED (first-party) | First-party session cookie | Session (up to 24 hours) | Where you select a Local Payment Method (InstaPay, Vodafone Cash, or Fawry), stores the order reference for your in-progress local payment so that the transaction reference number you submit can be matched to the correct order. Contains only the order reference identifier; no banking credentials. Cleared on successful verification, purchase completion, or expiry of the payment window. |
4.5 BEHAVIORAL MONITORING AND CONTENT PROTECTION TECHNOLOGIES
Legal Basis: Express consent (given by platform use, per Section 43 of the Terms of Use) and legitimate interests (protection of Intellectual Property Rights). These technologies are integral to MeducateED's anti-piracy infrastructure and operate across all authenticated sessions.
Purpose: As disclosed in full in Section 43 of the Terms of Use and Section 33 of the Privacy Policy, MeducateED operates behavioral monitoring systems that collect Behavioral Monitoring Data for anti-piracy, content protection, and platform security purposes. The following technologies are used in connection with this monitoring.
What they do:
| Cookie / Storage Key | Type | Expiry | Purpose |
|---|---|---|---|
meducateed_session_sig | First-party persistent cookie | 90 days | Behavioral session signature cookie. Stores a cryptographic hash derived from session-level behavioral signals (device fingerprint components, interaction pattern hash) for the purpose of detecting anomalous sessions that deviate from the established behavioral baseline for a given Account. Not personally identifiable in isolation; meaningful only in conjunction with server-side session records. |
meducateed_wm | First-party persistent cookie | Duration of Subscription | Watermark delivery authentication token. Used in conjunction with the Student ID watermark rendering system to confirm that the Student ID watermark delivery request originates from an authenticated session. Prevents third parties from spoofing watermark-delivery requests. |
meducateed_dpr_flag | Session Storage | Session | Digital Rights Protection flag. Set during sessions in which the User accesses DRM-protected content (Book Viewer, Slide+). Stores a session-scoped flag that enables the content delivery system to apply the appropriate protection level and watermarking configuration for the authenticated User. Cleared on session end. |
| Client-side behavioral event log | Local Storage (Desktop Application only) | Rolling 24-hour buffer | In the Desktop Application, a rolling 24-hour buffer of behavioral event data (cursor events, keyboard events, clipboard events) is maintained in the application's local storage and transmitted periodically to MeducateED's servers as part of normal session synchronization. This buffer is encrypted at rest and is not accessible to other applications on the device. |
4.6 SOCIAL AUTHENTICATION COOKIES
Legal Basis: Contractual necessity (when you choose to use Social Authentication). Only set when you actively initiate Social Authentication. Consent to Social Authentication is given by choosing to use it.
Purpose: When you choose to authenticate via a Social Auth Provider (Google Sign-In, Apple Sign in with Apple, or Meta Facebook Login), those providers load their own authentication scripts and may set cookies or tokens in your browser as part of the OAuth 2.0 authentication flow.
What they do:
| Provider | Cookie / Token | Expiry | Purpose |
|---|---|---|---|
Google Sign-In cookies (G_AUTHUSER_H, G_ENABLED_IDPS, and others) | Varies (session to persistent) | Set by Google's identity service when you initiate Google Sign-In. Used to manage the Google OAuth 2.0 authorization flow, verify your Google account identity, and return an authorization token to MeducateED. Governed by Google's Privacy Policy: https://policies.google.com/privacy. | |
| Apple | Apple Sign In tokens | Session | Apple Sign In uses token-based authentication. Apple may set session-scoped tokens in your browser during the authentication flow. Governed by Apple's Privacy Policy: https://www.apple.com/legal/privacy. |
| Meta (Facebook) | Facebook Login cookies (fr, datr, xs, c_user and others) | 90 days to 2 years (varies by cookie) | Set by Facebook's authentication service when you initiate Facebook Login. Facebook sets both session management cookies and its own tracking cookies (particularly fr and datr) as part of its identity service. You can review and manage Facebook cookies through your Facebook account settings. Governed by Meta's Data Policy: https://www.facebook.com/privacy/policy. Note: MeducateED advises that Facebook Login results in the most extensive set of third-party cookies being set; if you wish to minimize third-party cookie exposure, MeducateED recommends using Google Sign-In or email/password authentication. |
LinkedIn OAuth / OpenID Connect session cookies (li_gc, bcookie, lidc, and others) | Session to 2 years (varies by cookie) | Set by LinkedIn's identity service when you initiate Sign in with LinkedIn. Used to manage the LinkedIn OAuth 2.0 / OpenID Connect authorization flow and return an authorization token to MeducateED. Governed by LinkedIn's Cookie Policy: https://www.linkedin.com/legal/cookie-policy. | |
| Microsoft | Microsoft identity platform session cookies (ESTSAUTH, ESTSAUTHPERSISTENT, and others) | Session to persistent (varies by cookie) | Set by Microsoft's identity platform when you initiate Sign in with Microsoft. Used to manage the Microsoft OAuth 2.0 authorization flow and return an authorization token to MeducateED. Governed by Microsoft's Privacy Statement: https://privacy.microsoft.com/privacystatement. |
4.7 EMBEDDED CONTENT AND MEDIA COOKIES
Legal Basis: User consent required. These cookies are only set if you interact with embedded third-party media content on MeducateED's website.
Purpose: Where MeducateED embeds third-party content on its pages — including embedded Spotify podcast players on the Blog or media pages — those third-party platforms may attempt to set their own cookies.
What they do:
| Provider | Cookie Purpose | Governed By |
|---|---|---|
| Spotify (embedded podcast player) | Spotify may set session and analytics cookies when its embedded player widget is loaded on MeducateED's Blog or media pages. | Spotify Privacy Policy: https://www.spotify.com/legal/privacy-policy |
| YouTube (if embedded video content is used) | If MeducateED embeds any YouTube video content, YouTube will set cookies (including VISITOR_INFO1_LIVE, YSC, and PREF) when the player loads. MeducateED uses YouTube's "privacy-enhanced mode" embedding (youtube-nocookie.com) where YouTube content is embedded, which prevents YouTube from setting tracking cookies unless you interact with the player. | Google/YouTube Privacy Policy: https://policies.google.com/privacy |
Note: MeducateED prefers to host its own video content through its proprietary platform infrastructure and minimizes the embedding of third-party media players. Where third-party players are used, MeducateED selects privacy-enhanced embedding modes and discloses this in the relevant page context.
4.8 MARKETING AND RETARGETING COOKIES
Legal Basis: User consent required. These cookies are only set with your explicit, prior consent given through the cookie consent banner. If you decline marketing cookies, none of the technologies in this category will be activated.
Purpose: Marketing and retargeting cookies are used to: (a) measure the effectiveness of MeducateED's digital marketing campaigns; (b) enable platforms to show MeducateED advertisements to users who have previously visited the MeducateED website (retargeting); and (c) attribute conversions (registrations and purchases) to specific marketing channels or campaigns.
What they do:
| Cookie / Pixel | Provider | Type | Expiry | Purpose |
|---|---|---|---|---|
Meta Pixel (_fbp, _fbc) | Meta (Facebook/Instagram) | Third-party persistent cookie | 90 days | The Meta Pixel is a JavaScript snippet loaded on specified MeducateED pages (typically enrollment landing pages and post-purchase confirmation pages) that sends event data to Meta's servers for the purpose of: measuring conversions from Meta advertising campaigns; building custom audiences for retargeting; and optimizing Meta ad delivery to users likely to enroll. _fbp identifies the browser; _fbc records the click identifier from a Meta ad. Both are pseudonymized identifiers. You can opt out of Meta retargeting through your Facebook Ad Preferences at https://www.facebook.com/ads/preferences. |
_gcl_au (Google Ads conversion) | Third-party persistent cookie | 90 days | Google Ads conversion cookie. Set by Google's advertising tag (Google Tag Manager / gtag.js) to measure conversions from Google Search and Display advertising campaigns. Records a pseudonymized click identifier linking a paid search click to a conversion event (e.g., a completed registration or purchase). Used purely for campaign attribution; not used to build personal advertising profiles. | |
LinkedIn Insight Tag (li_fat_id, lidc) | Third-party persistent cookie | 30 days to 1 year | The LinkedIn Insight Tag enables MeducateED to track conversions from LinkedIn advertising campaigns and build retargeting audiences of LinkedIn members who have visited the MeducateED website. li_fat_id is a first-party user-level identifier; lidc facilitates load balancing. Only active if MeducateED runs LinkedIn advertising campaigns. You can opt out of LinkedIn retargeting through your LinkedIn Ad Settings at https://www.linkedin.com/psettings/guest-controls. | |
TikTok Pixel (_ttp, tt_pixel_session_index) | TikTok | Third-party persistent and session cookies | 13 months (_ttp); Session | TikTok advertising conversion and retargeting pixel. Measures conversions from TikTok campaigns and builds TikTok audience segments of MeducateED website visitors. Only active if MeducateED runs TikTok advertising campaigns. You can opt out of TikTok interest-based advertising through TikTok's privacy settings. |
Important: MeducateED does not permit advertising platform cookies to be used for purposes beyond campaign attribution and retargeting for MeducateED's own advertising. MeducateED does not operate as an advertising network and does not serve third-party advertisements on its platform.
4.9 CORVUS AI ASSISTANT TECHNOLOGIES
Legal Basis: Legitimate interests / contractual necessity for rate limiting; User consent for analytics. No personal data is stored in Corvus-related cookies.
What they do:
| Cookie / Storage Key | Type | Expiry | Purpose |
|---|---|---|---|
corvus_session_history | Session Storage | Session (cleared on tab close) | Stores the full conversation history of the current Corvus session in browser Session Storage for continuity of conversation within a single tab. Not transmitted to MeducateED's servers for persistent storage. Automatically cleared when the tab is closed. Contains only the text of messages exchanged in the current session. |
corvus_rate_counter | First-party persistent cookie | 1 hour (resets each hour) | IP-linked rate limit counter enforcing the 30-message-per-hour limit for the Corvus AI assistant. Contains only a numerical count and a timestamp. Contains no personal data. |
4.10 DISASTER TRACKER TECHNOLOGIES
Legal Basis: Strictly necessary for map rendering; legitimate interests for performance caching.
What they do:
| Cookie / Storage Key | Type | Expiry | Purpose |
|---|---|---|---|
| Leaflet.js / Mapbox GL tile cache | Local Storage | Rolling cache, cleared periodically | Map tile data cached locally in the browser's Local Storage by the Disaster Tracker's mapping library (Leaflet.js or Mapbox GL) to improve map rendering performance and reduce bandwidth usage. Contains only map tile image data; no personal data. |
disaster_filter_state | Session Storage | Session | Stores your currently selected Disaster Tracker filters (event type, geographic region, severity level) for the duration of your session. Cleared when you close the tab. |
eonet_data_cache | Session Storage | Session (up to 15 minutes server-side refresh) | Client-side cache of the most recently fetched NASA EONET event data, updated at intervals of approximately 15 minutes. Reduces redundant API calls. Contains only public NASA EONET event data; no personal data. |
5. SIMILAR TECHNOLOGIES — PIXEL TAGS AND WEB BEACONS
5.1 In addition to cookies and browser storage mechanisms, MeducateED may use pixel tags (also called web beacons or tracking pixels) in its email communications and on certain pages of the website. Pixel tags are small, typically single-pixel transparent images embedded in a webpage or HTML email.
5.2 Email open tracking. MeducateED may embed a pixel tag in transactional and marketing emails to detect when an email has been opened and viewed. This information is used to: (a) confirm delivery and receipt of transactional notifications (such as purchase confirmations and account notifications); and (b) measure the open rate and engagement of marketing communications for campaign optimization. The pixel tag transmits a signal to MeducateED's server when the email is opened and the image is loaded, which records a timestamp and the recipient identifier. You can prevent email pixel tracking by disabling automatic image loading in your email client.
5.3 Conversion pixel tags. Where MeducateED uses marketing platforms (Meta Pixel, Google Ads, LinkedIn Insight Tag, TikTok Pixel — as described in Section 4.8), those platforms load a pixel tag on specified conversion pages (such as the post-purchase confirmation page) that fires a conversion event to the respective advertising platform's servers. These pixels are only active if you have consented to marketing cookies.
6. DEVICE FINGERPRINTING AND NON-COOKIE TRACKING
6.1 In addition to cookies and Similar Technologies, MeducateED's behavioral monitoring and anti-piracy systems collect certain device and environment signals that, in combination, may constitute a device fingerprint — a probabilistic identifier that distinguishes your Device from others based on its technical characteristics. The signals collected may include: user agent string (browser and OS version); screen resolution and color depth; installed browser plugins (where detectable); language and locale settings; time zone offset; Do Not Track header value; WebGL renderer and vendor strings; Canvas fingerprint signals; and audio context fingerprint signals.
6.2 Device fingerprinting signals are collected exclusively for the anti-piracy, security, and content protection purposes described in Section 43 of the Terms of Use and Section 33 of the Privacy Policy. They are not used for commercial profiling, advertising, or cross-site tracking. Fingerprint data is linked to your authenticated Account and is retained in accordance with the Behavioral Monitoring Data retention schedule in Section 33.4 of the Privacy Policy.
6.3 MeducateED does not use device fingerprinting to circumvent your cookie preferences or to track you across websites outside the MeducateED platform.
7. DURATION OF COOKIES
7.1 Cookies used by MeducateED fall into two duration categories:
(a) Session cookies — stored only in your browser's temporary memory for the duration of a single browsing session and automatically deleted when you close your browser. Session cookies are used for authentication state, CSRF protection, and in-session feature state.
(b) Persistent cookies — stored on your Device until their specified expiry date or until you delete them manually. Persistent cookies are used for remembered login, consent preferences, analytics identifiers, and marketing attribution. The specific expiry period for each persistent cookie is stated in the tables in Section 4.
7.2 The expiry periods for each cookie are set out in the tables in Section 4. Where a cookie's expiry period is described as "rolling" or "refreshed on activity," this means that the expiry date is reset from the moment of your most recent interaction, so the cookie persists for the stated duration after your most recent platform visit rather than from the original placement date.
8. HOW MEDUCATEED USES COOKIE DATA
8.1 Data collected through cookies and Similar Technologies is used by MeducateED for the following purposes:
(a) Service delivery and authentication — maintaining your login session, preserving your preferences, and enabling the features and functionality of the platform;
(b) Content protection and anti-piracy — detecting and investigating behavioral patterns inconsistent with legitimate academic use and consistent with content capture, piracy, or credential sharing, as described in detail in Section 43 of the Terms of Use;
(c) Platform analytics and improvement — understanding how the platform is used, identifying areas for improvement, conducting A/B testing, monitoring performance, and generating business intelligence, as described in Section 7.1(i) of the Privacy Policy;
(d) Personalization — remembering your preferences, settings, and progress to deliver a consistent and personalized platform experience;
(e) Payment and transaction processing — facilitating secure checkout sessions and fraud detection through Payment Processor cookies;
(f) Marketing measurement and attribution — measuring the effectiveness of MeducateED's digital advertising campaigns and attributing enrollments and purchases to the correct marketing channels, subject to your consent; and
(g) Legal compliance and security — maintaining audit trails and session records sufficient to investigate and respond to security incidents, intellectual property violations, regulatory enquiries, and legal proceedings.
9. WHO HAS ACCESS TO COOKIE DATA
9.1 MeducateED. All first-party cookies are accessible only by MeducateED and can only be read by servers on the meducateed.com domain.
9.2 Third-Party Service Providers. Third-party cookies (as identified in Section 4) are set by and accessible to the specified third-party provider. MeducateED shares data with these providers through the cookie mechanism only for the purposes described in this Policy, and all third-party service providers are contractually bound by data processing agreements prohibiting them from using the data for any purpose other than providing the stated service to MeducateED.
9.3 Analytics Providers. Where MeducateED uses third-party analytics platforms (Google Analytics, Hotjar, Mixpanel), cookie data collected through those platforms is transmitted to and processed by those providers on MeducateED's behalf. MeducateED configures all analytics platforms with data minimization settings (IP anonymization, data sharing restrictions, no cross-site tracking) to the maximum extent available on each platform.
9.4 No Sale of Cookie Data. MeducateED does not sell, rent, or license cookie data to any third party for their own commercial purposes. Cookie data collected by MeducateED's first-party systems is used exclusively for the purposes described in this Policy.
9.5 Legal Disclosure. MeducateED may disclose cookie data to law enforcement authorities, courts, or regulatory bodies where required by applicable Egyptian law, a court order, or a lawful regulatory request.
10. COOKIES AND DATA PROTECTION LAWS
10.1 MeducateED's use of cookies is governed by Egyptian Data Protection Law No. 151 of 2020 and its implementing regulations. For Users located in the European Union or European Economic Area, MeducateED also applies the requirements of the EU Cookie Law (as implemented by the ePrivacy Directive and national implementing legislation) and the EU General Data Protection Regulation (GDPR) where applicable.
10.2 Strictly necessary cookies do not require consent under Egyptian law or the EU Cookie Law, as they are technically essential for the delivery of the service explicitly requested by the User.
10.3 All other cookie categories (functional, analytics, payment-adjacent, behavioral monitoring, social authentication, marketing, and embedded content) require prior, informed, specific, and freely given consent, which MeducateED obtains through its cookie consent mechanism described in Section 11.
10.4 Do Not Track. Some browsers transmit a "Do Not Track" (DNT) header signal to indicate a preference against tracking. MeducateED acknowledges DNT signals and treats them as a preference indicator. Where a DNT signal is detected, MeducateED will apply the most restrictive non-essential cookie configuration by default, equivalent to the User having declined all non-essential cookies through the consent banner. Note that DNT is not a universally standardized protocol and its effectiveness depends on the support of third-party service providers.
10.5 Global Privacy Control. MeducateED respects the Global Privacy Control (GPC) signal, a browser-level mechanism for communicating a User's preference not to be tracked. Where a GPC signal is detected, MeducateED treats it as equivalent to a withdrawal of consent for analytics and marketing cookies.
11. COOKIE CONSENT MECHANISM
11.1 Consent Banner. When you first visit the MeducateED website (or after clearing your cookies), a cookie consent banner will be displayed that informs you of MeducateED's use of non-essential cookies and requests your consent. The banner presents clear options to:
(a) Accept all cookies — consent to all categories of non-essential cookies described in this Policy;
(b) Accept only necessary cookies — decline all non-essential cookies while permitting only strictly necessary cookies to be placed;
(c) Customise preferences — open a granular consent management panel where you can accept or decline each cookie category individually; or
(d) Decline all — decline all non-essential cookies in a single action.
11.2 Granular Control. The cookie preferences panel enables you to manage consent at the category level, choosing independently whether to accept or decline:
- Functional cookies
- Analytics and performance cookies
- Marketing and retargeting cookies
- Embedded content cookies (Social Authentication cookies are treated as strictly necessary when you actively choose Social Authentication)
- Behavioral monitoring technologies (note: this category cannot be disabled for authenticated sessions, as it is integral to the platform's content protection obligations; however, it can be declined for unauthenticated browsing sessions)
11.3 Consent is Freely Given. Accepting non-essential cookies is not a condition of accessing MeducateED's Services. You may use the platform with only strictly necessary cookies enabled. Declining non-essential cookies may affect your experience in limited ways (for example, A/B test variants will not be assigned, and marketing attribution will not be tracked), but will not prevent you from accessing any paid Content, question banks, or other core Services.
11.4 Consent Record. When you provide cookie consent, MeducateED records: (a) the categories of cookies you accepted; (b) the date and time of consent; and (c) the version of this Cookies Policy in force at the time of consent. This record is stored in the cookie_consent_preferences cookie on your device and in a server-side consent log associated with your Account (if you are logged in). Consent records are retained for three (3) years for compliance verification purposes.
11.5 Consent Renewal. Your cookie consent preferences are stored for twelve (12) months. After this period, MeducateED will re-present the consent banner to confirm or update your preferences. You may also update your preferences at any time through the Cookie Preferences link available in the footer of every MeducateED page.
11.6 Consent for Minor Users. Where MeducateED has reason to believe that a User is under the age of sixteen (16), MeducateED will not activate non-essential cookies or analytics technologies for that User's session without verifiable parental consent.
12. YOUR COOKIE CHOICES AND OPT-OUT RIGHTS
12.1 Cookie Preferences Panel. You may update your cookie consent choices at any time by clicking the "Cookie Preferences" link in the footer of any MeducateED page. This will reopen the cookie preferences panel, where you can review and update your current choices for each cookie category.
12.2 Browser-Level Cookie Management. You may also manage or delete cookies directly through your browser's settings. All major browsers provide mechanisms to:
(a) View currently stored cookies by domain; (b) Delete individual cookies or all cookies for a specific domain; (c) Block future cookies from a specific domain; (d) Block all third-party cookies; or (e) Delete all cookies when the browser is closed.
The following links provide guidance on managing cookies in the most commonly used browsers:
- Google Chrome: https://support.google.com/chrome/answer/95647
- Mozilla Firefox: https://support.mozilla.org/en-US/kb/clear-cookies-and-site-data-firefox
- Apple Safari (macOS): https://support.apple.com/guide/safari/sfri11471/mac
- Apple Safari (iOS): https://support.apple.com/en-gb/HT201265
- Microsoft Edge: https://support.microsoft.com/en-us/microsoft-edge/delete-cookies-in-microsoft-edge
- Opera: https://help.opera.com/en/latest/web-preferences/#cookies
Please note: Deleting or blocking strictly necessary cookies will impair or prevent your ability to log in and use the MeducateED platform. MeducateED accepts no responsibility for any reduction in functionality arising from your decision to block strictly necessary cookies.
12.3 Mobile Application Cookie Management. MeducateED's iOS and Android mobile applications do not use browser cookies. They use equivalent app-side storage mechanisms (device storage APIs). These can be managed through the application settings within each app or by uninstalling and reinstalling the application. Note that reinstalling will clear all locally stored session and preference data.
12.4 Third-Party Analytics Opt-Outs.
| Platform | Opt-Out Mechanism |
|---|---|
| Google Analytics | https://tools.google.com/dlpage/gaoptout (browser add-on) |
| Hotjar | https://www.hotjar.com/legal/compliance/opt-out |
| Mixpanel | https://mixpanel.com/optout |
| Meta (Facebook/Instagram) advertising | https://www.facebook.com/ads/preferences |
| Google Ads | https://adssettings.google.com |
| LinkedIn advertising | https://www.linkedin.com/psettings/guest-controls |
| TikTok advertising | TikTok app > Settings > Privacy > Ads Preferences |
12.5 Industry-Wide Opt-Out Tools. You may also use the following industry-wide opt-out tools to opt out of interest-based advertising from participating companies:
- Your Online Choices (EU/UK): https://www.youronlinechoices.eu
- Network Advertising Initiative (US): https://optout.networkadvertising.org
- Digital Advertising Alliance (US): https://optout.aboutads.info
13. COOKIE DATA RETENTION
13.1 The retention period for each cookie is specified in the tables in Section 4. The following general principles govern cookie data retention:
(a) Session cookies expire automatically when you close your browser and retain no data on MeducateED's servers beyond the session.
(b) Persistent cookies expire on the date specified in their expiry attribute, or when manually deleted by the User.
(c) First-party analytics data collected via cookies (processed through MeducateED's internal analytics infrastructure) is retained for a rolling period of twenty-six (26) months from the date of collection, after which it is deleted or permanently anonymized.
(d) Third-party analytics data (Google Analytics, Hotjar, Mixpanel) is retained in accordance with the data retention settings configured by MeducateED in each platform's account settings, which MeducateED sets at the shortest available retention period that is consistent with the analytics purposes described in this Policy.
(e) Marketing attribution cookie data transmitted to advertising platforms (Meta Pixel, Google Ads, LinkedIn, TikTok) is retained by those platforms in accordance with their own data retention policies.
(f) Behavioral monitoring cookie data is retained in accordance with the schedule set out in Section 33.4 of the Privacy Policy.
(g) Consent records (records of your cookie consent choices) are retained for three (3) years from the date of consent.
14. COOKIES AND MEDUCATEED'S MOBILE APPLICATIONS
14.1 MeducateED's native iOS and Android mobile applications do not use traditional browser cookies. Instead, they use the following device-side storage mechanisms, which are functionally equivalent to cookies for the purposes of this Policy:
(a) Secure Keychain / Keystore storage (iOS Keychain / Android Keystore) — used to store authentication tokens and session credentials securely in the device's hardware-backed secure storage. This data is encrypted and isolated from other applications.
(b) Application shared preferences / UserDefaults — used to store non-sensitive preference data, including interface settings, notification preferences, and last-accessed content state. This data persists on the device until the application is uninstalled.
(c) SQLite / Core Data local database — used to store offline content cache, study progress data, question bank response history, and other structured application data that supports offline mode and local progress synchronization.
(d) In-app analytics SDK storage — analytics SDKs embedded in the mobile applications (functionally equivalent to the web analytics cookies described in Section 4.3) may use their own internal storage mechanisms to maintain session identifiers and event queues.
14.2 You can clear all mobile application data by: (a) navigating to your device's application settings and selecting "Clear Data" or "Reset App"; or (b) uninstalling and reinstalling the application. Note that clearing application data will log you out and clear all locally cached content, requiring re-download of offline materials.
15. COOKIES IN MEDUCATEED'S EMAILS
15.1 Transactional emails sent by MeducateED (such as purchase confirmations, Account notifications, and password reset emails) may contain a pixel tag that records whether the email has been opened, as described in Section 5.2. This tracking is used solely to confirm delivery and receipt; it is not used for commercial profiling.
15.2 Marketing emails sent by MeducateED (where you have subscribed to marketing communications) may contain pixel tags for email open tracking and click-through tracking for the purpose of measuring campaign engagement and optimizing future communications.
15.3 You can prevent email pixel tracking by configuring your email client to block remote image loading. Most email clients offer this option in their privacy or security settings.
16. CROSS-DEVICE TRACKING
16.1 Where you access MeducateED's platform from multiple Devices using the same Account, MeducateED may associate usage data and behavioral monitoring data across those Devices using your Account identifier as the linking key, for the purposes of: (a) providing a consistent, synchronized platform experience; (b) detecting unauthorized Account sharing or simultaneous sessions on multiple Devices; and (c) generating cross-device analytics to understand how Users move between platforms (e.g., website to mobile app to Desktop Application).
16.2 This cross-device association is Account-based (using your authenticated user identifier) rather than cookie-based. It does not involve any third-party cross-device tracking or device graph technology.
17. COOKIES AND CHILDREN
17.1 MeducateED does not intentionally set non-essential cookies for Users under the age of sixteen (16). Where MeducateED has reasonable grounds to believe that a User is under sixteen (16), only strictly necessary cookies will be activated for that User's session, and no analytics, marketing, or behavioral monitoring cookies will be set without verifiable parental consent.
18. CHANGES TO THIS COOKIES POLICY
18.1 MeducateED reserves the right to update or modify this Cookies Policy at any time to reflect: (a) changes in the cookies and technologies MeducateED uses; (b) changes in applicable law or regulatory guidance; (c) changes in MeducateED's product and technology stack; or (d) changes in third-party service providers.
18.2 The most current version of this Policy is always available at https://meducateed.com/legal/cookies. The effective date and version number are published at the top of this document.
18.3 Where changes to this Policy are material — meaning they involve the introduction of new cookie categories, new third-party providers, new data uses, or changes to consent requirements — MeducateED will notify Users by: (a) displaying a prominent notice in the cookie consent banner on the next visit to the website; (b) sending a notification to the email address associated with your Account; or (c) both, depending on the nature of the change. Your continued use of the Services following the effective date of any material update constitutes acceptance of the updated Policy.
18.4 Where changes to this Policy require fresh consent under applicable law (for example, the introduction of a new non-essential cookie category), MeducateED will re-present the consent banner and request new consent before activating the new cookie.
19. CONTACT INFORMATION
For all enquiries, complaints, or requests relating to this Cookies Policy, MeducateED's use of cookies, or your cookie preferences and opt-out rights, please contact:
MeducateED — Cookies and Privacy Enquiries 26th of July Corridor, First Al Sheikh Zayed, Giza Governorate, Arab Republic of Egypt
| Enquiry Type | Contact |
|---|---|
| General cookie and privacy enquiries | info@meducateed.com |
| Legal and compliance matters (including regulatory correspondence) | legal@meducateed.com |
| Data subject rights requests | info@meducateed.com |
Phone: +20 155 371 3741 Website: https://meducateed.com
Cookie Preferences: To update your cookie preferences at any time, use the "Cookie Preferences" link in the footer of any MeducateED page, or visit https://meducateed.com/legal/cookie-preferences.
Account-Specific Communications: If your enquiry relates to a specific Account or transaction (for example, a query about a payment confirmation cookie or checkout session), please follow the headquarters communication requirements set out in Section 41.3 of the Terms of Use and Section 32.4 of the Privacy Policy, including providing your full legal name, your registered phone number, and any relevant supporting documents, so that MeducateED can respond within three (3) to five (5) business days.
This Cookies Policy is published in good faith to provide MeducateED's Users with complete, transparent, and legally compliant information about every tracking technology deployed on the MeducateED platform. MeducateED is committed to maintaining this Policy as an accurate and current reflection of its cookie practices at all times.
© 2022–present MeducateED. All rights reserved. MeducateED — Empowering the Next Generation of Healthcare Professionals.