Document 03 // Session Architecture
SYSTEM PREFERENCES
SAQIP™ — Cookie & Session Security Policy · Operated by SWAPN
VERSION SYS-2026.1
EFFECTIVE 01 JAN 2026
SCOPE ALL SAQIP PLATFORM SESSIONS
AUTHORITY SWAPN OPERATIONS COUNSEL
TRACKING_STATUS: NONE THIRD_PARTY_ADS: DISABLED DATA_BROKERING: PROHIBITED SESSION_SECURITY: ACTIVE COOKIE_COUNT: MINIMAL

Notice: This document forms part of the SAQIP™ Technical Protocols and serves as a technical appendix to the SWAPN Master Service Agreement.

§ 1.0

Operational Philosophy — Minimal Footprint Protocol

SAQIP is an environmental intelligence platform, not a consumer data product. Our operational philosophy with respect to browser-side data collection is governed by the Minimal Footprint Protocol: SAQIP deploys only those cookies and session storage mechanisms that are strictly necessary for the technical operation of the Platform. No tracking, profiling, or behavioural analytics infrastructure is deployed on the SAQIP Platform.

SAQIP does not operate an advertising business model. The Platform is sustained exclusively through institutional subscription revenue. There is, accordingly, no commercial rationale — and no operational architecture — for tracking individual user behaviour, profiling subscriber activity, or sharing session data with third-party commercial partners.

ZERO COMMERCIAL TRACKING GUARANTEE

SAQIP does not sell, share, or commercially transfer any session data, usage analytics, or behavioural signals to third-party advertisers, data brokers, or commercial analytics platforms. This is an unconditional operational guarantee, not a configurable preference.

§ 2.0

Cookie Inventory & Terminal State Management

The following cookies are deployed by the SAQIP Platform. This inventory is exhaustive. No cookies beyond those listed are set by SWAPN's first-party platform infrastructure.

FIRST-PARTY ONLY NO CROSS-SITE TRACKING NO ANALYTICS COOKIES NO ADVERTISING COOKIES STRICTLY NECESSARY: ALL
§ 3.0

Third-Party Non-Disclosure Protocol

SAQIP's Platform architecture is designed to eliminate third-party data exposure at the session level. The following protocols are in permanent effect:

3.1 // No Third-Party Scripts for Commercial Purposes

SAQIP does not load third-party JavaScript from advertising networks, commercial analytics platforms, social media tracking pixels, or data broker infrastructure. Platform functionality is delivered exclusively through SWAPN-controlled infrastructure and openly licensed open-source libraries (MapLibre GL, Chart.js, Lucide Icons), which do not collect or transmit user data.

3.2 // No Advertising Partnership

SAQIP has no commercial relationship with any digital advertising network, demand-side platform, or programmatic advertising intermediary. No subscriber session data, usage patterns, environmental intelligence queries, or institutional identity signals are transmitted to advertising technology infrastructure under any circumstances.

3.3 // No Data Brokering

SWAPN does not engage in data brokering — the commercial sale, lease, or exchange of subscriber session data, institutional profiles, or usage analytics to third-party data marketplace operators. This prohibition applies regardless of whether the data is identifiable, pseudonymised, or aggregated.

SYSTEM_QUERY: audit cookies --scope third-party --type advertising
Third-party advertising cookies: 0
Commercial tracking pixels: 0
Data broker transmissions: 0
STATUS: CLEAN // NO_COMMERCIAL_TRACKING
§ 4.0

Subscriber Preference Controls

Because SAQIP deploys only strictly necessary cookies, there is no opt-out mechanism required for the cookies listed in Section 2.0 — they are essential for the authenticated, secure operation of the Platform. Disabling these cookies will impair or prevent Platform functionality.

Institutional subscribers who wish to review current cookie settings, request a technical audit of SAQIP's session architecture, or raise concerns about browser-side data handling may direct inquiries to the Governance Console. Browser-level cookie controls remain available through the subscriber's institutional browser configuration and are respected by the SAQIP Platform where technically feasible without compromising session security.

Note on Local Storage: SAQIP may use browser localStorage exclusively to retain non-sensitive Terminal display preferences (e.g., selected data view tab) between sessions for authenticated subscribers. This data does not contain personal information, is never transmitted to SWAPN servers as a distinct data operation, and can be cleared at any time through standard browser controls.