SUNNY VALLEY CYBER SECURITY INC.
(d.b.a. Zenarmor)
COOKIE POLICY
Last Updated: August, 2026
Scope
How Your Choice Is Taken
- Consent first. In the European Economic Area, the United Kingdom, Switzerland, Iceland, Türkiye and Canada, nothing beyond the strictly necessary cookies is stored or read until you choose. Analytics, functional and marketing cookies stay off until you turn them on, and the analytics and advertising scripts themselves are not loaded until then either.
- Opt out. Everywhere else, analytics and campaign-measurement cookies are set from your first visit and the banner tells you so. You can switch them off at any time, and we stop.
Global Privacy Control
Cookies We Set
Advertising Identifiers and Pixels
Third-Party Providers
Managing Cookies in Your Browser
- Google Chrome: https://support.google.com/chrome/answer/95647
- Mozilla Firefox: https://support.mozilla.org/en-US/kb/enable-and-disable-cookies-website-preferences
- Microsoft Edge: https://support.microsoft.com/en-us/microsoft-edge/delete-cookies-in-microsoft-edge-63947406-40ac-c3b8-57b9-2a946a29ae09
- Safari: https://support.apple.com/guide/safari/manage-cookies-sfri11471/mac
- Network Advertising Initiative (NAI): http://optout.networkadvertising.org/
- Digital Advertising Alliance (DAA): http://optout.aboutads.info/
Data Sharing
Changes to This Cookie Policy
Contact Us
- Email: privacy [at] zenarmor.com
- Address: Sunny Valley Cyber Security Inc., 10080 N. Wolfe Rd., Suite SW3-200, Cupertino, California 95014 United States
This Cookie Policy explains how Sunny Valley Cyber Security Inc. ("we," "us," or "our") uses cookies and similar technologies on www.zenarmor.com and info.zenarmor.com. The cookies described below are set on the .zenarmor.com domain, which means they are also readable by our other subdomains, including dash.zenarmor.com, where your account lives. Other properties we operate publish their own policies.
This policy describes what this website actually sets. Where a cookie is placed by a third-party provider, we name the provider and link to its own notice rather than restating it.
Which of the two rules below applies to you is decided from the country your connection resolves to. If we cannot determine it, we apply the stricter one.
Your choice is stored in the cookie_consent_v2 cookie for 365 days, together with which of the two rules was in force when you made it. You can change or withdraw it whenever you like through the Cookie Settings link in the footer of every page. Withdrawing marketing consent deletes the campaign and click-identifier cookies listed below.
If your browser sends a Global Privacy Control (GPC) signal, we treat it as an instruction to stop marketing-related storage. GPC is honoured in every country, not only where the law requires it, and it overrides a permission you gave us earlier: while the signal is set, the campaign and click-identifier cookies are not written and any existing ones are deleted. The marketing control in our preferences dialog shows as off and cannot be switched on while the signal is present.
We do not act on the older "Do Not Track" (DNT) header, which has no agreed meaning across browsers.
| Name | Category | Purpose | Retention |
|---|---|---|---|
| cookie_consent_v2 | Essential | Stores the cookie choice you made, when you made it, and under which of the two rules above. | 365 days |
| utm_id, utm_source, utm_medium, utm_campaign, utm_content, utm_term | Marketing | The campaign parameters your visit arrived with, so that a later sign-up can be attributed to the campaign that produced it. | 90 days |
| gclid, gbraid, wbraid, fbclid, li_fat_id, rdt_cid, msclkid, _fbc | Marketing | The advertising click identifier your visit arrived with — Google Ads, Google app campaigns, Meta, LinkedIn, Reddit and Microsoft Advertising respectively. They let us report a conversion back to the platform that served the ad. | 90 days |
| za_signup_intent | Essential | Records that you followed a free-trial link, so the sign-up page can open the right form. | 1 hour |
We also keep one entry in your browser's local storage, za_country, holding the two-letter country your connection resolved to. It exists so that the check described in section 2 is not repeated on every page, and it expires after 24 hours. It contains no identifier and is never sent to us.
We do not embed a Meta, LinkedIn, Reddit or X pixel in this website's own code. What we do instead is read the click identifier that the advertising platform appends to the link you followed — the eight names in the table above — and store it as a first-party cookie, so that a sign-up can be matched back to the ad without the platform tracking you across our pages. Where a click identifier is present we also build the _fbc value Meta expects from it.
Advertising tags can also be delivered through Google Tag Manager. When Marketing is off, we send Google's consent signal with advertising storage, advertising user data and ad personalization all set to denied, and tags that support Google consent mode honour it.
When a new set of campaign parameters arrives, the previous set is deleted first, so what is stored always describes a single visit rather than a mixture of several.
The following providers may set their own cookies when the matching category is allowed. Their retention periods and processing are governed by their own notices.
| Provider | Category | What it does |
|---|---|---|
| Google Tag Manager and Google Analytics | Analytics | Page and traffic measurement. Loads only once analytics is allowed. |
| Microsoft Clarity | Analytics | Session recording and heatmaps. Loads only once analytics is allowed, and is told to stop if you withdraw. |
| HubSpot | Analytics and Essential | Page-view tracking tied to our CRM records, under analytics. The contact and application forms on this site are also rendered by HubSpot and are strictly necessary for them to work. |
| Zendesk | Functional | The live support chat widget. Loads only if you turn functional cookies on. |
| Cloudflare | Essential | Delivery of this website and Turnstile bot protection on our forms. |
A comprehensive and up-to-date list of our processors is available on our Third-Party Service Providers page here.
The controls described in section 2 are the fastest way to change what this site stores. You can also block or delete cookies in your browser, though doing so may stop parts of the site working.
The providers named above process the data their cookies collect on our behalf and are contractually obliged to protect it and to use it only for the purposes we specify. Where you have allowed marketing cookies, the click identifier stored on your device may be sent back to the advertising platform that served the ad, so that it can attribute the conversion. We do not sell your personal data.
We update this policy when what the site stores changes. The date at the top of this page shows when it was last revised. Where a change requires your consent, we will ask for it again rather than treat your continued use of the site as agreement.
If you have any questions about our use of cookies or this Cookie Policy, please contact us at: