This page lists what chleb.ai puts in your browser and who puts it there. Every entry below was read from a browser session against this site: the cookie jar, local storage and session storage were listed before any choice was made, after Reject, and after Accept all, and the network requests were recorded each time. Nothing on this page is a description of what we intend to do. It is what the site did.
What this page covers
It covers the public website at chleb.ai. It does not cover the client portal at app.chlebholdings.com, external payment pages, or the tools we run for a client inside their own account. Those have their own notices. Our Privacy Policy covers what happens to information after you send it to us.
The short version
Chleb AI sets no cookies of its own on this site. We store two small items in your browser: your answer to the cookie banner, and a note that you closed the booking prompt. Neither is sent to us, and neither identifies you.
If you enable Inquiry source, we also keep a short-lived note in this tab to attach to an inquiry. The footer's Google Preferred Sources control also loads as described below. The remaining storage tables describe HighLevel, the platform behind our chat widget and our booking calendar. None of it loads until you say yes, or until you press the button that starts it.
Strictly necessary
These are on for everyone, because without them the site cannot remember your choice or respect that you closed something. They stay in your browser and are never transmitted.
| Name | Where it lives | Set by | What it does | How long it lasts |
|---|---|---|---|---|
cookie-consent | Local storage | Chleb AI | Holds your answer to the cookie banner, the version of the banner you answered, and the date and time you answered it. Without it we would have to ask on every page. | Until you clear your browser data or change your answer |
chleb:booking-popup:dismissed | Session storage | Chleb AI | Remembers that you closed the booking prompt, so it does not reappear while you keep reading. | Until you close the tab |
Optional inquiry source
This has its own switch in Cookie settings and starts off. Turning on chat or the calendar alone does not turn it on. Earlier choices about those tools stay in place and do not authorize this note. A Global Privacy Control signal keeps Inquiry source off.
| Name | Where it lives | Set by | What it does | How long it lasts |
|---|---|---|---|---|
chleb:inquiry-source:v1 | Session storage | Chleb AI | Keeps the entry page path, referring hostname and available campaign source, medium and name. It saves no form answers or browsing history and generates no visitor ID. It is sent only with a form submission. | Used for up to 30 minutes from entry. Removed on the next check after expiry, on withdrawal, or when the tab session ends. |
The time limit does not restart as you browse. If you reject this option or storage is unavailable, forms still work with the context available on their current document. We cannot reconstruct an earlier referral that was not retained. An unchanged retry keeps its original inquiry context so it can be reconciled with the first attempt.
Google Preferred Sources
The footer's Preferred Sources control loads Google's publisher script when a page opens. Google receives web-request information for that load. This existing control is separate from the optional chat/calendar and Inquiry source choices. If you use it, Google handles your source preference under its privacy policy. The entry-context note above is not passed to this control by our code.
Chat and booking tools
One category, one switch, off until you turn it on. It covers the HighLevel chat widget in the corner of the page and the HighLevel booking calendar. Turning it off means the chat widget does not load at all. You can still call us, use the contact form, and open the booking calendar in a new tab.
| Name | Where it lives | Set by | What it does | How long it lasts |
|---|---|---|---|---|
__cf_bm | Cookie on leadconnectorhq.com | Cloudflare, for HighLevel | Tells HighLevel's servers that the chat requests are coming from a browser rather than a bot. | About 30 minutes |
__cf_bm | Cookie on filesafe.space | Cloudflare, for HighLevel | The same check on the host that serves the widget's images. | About 30 minutes |
v2_history, v2_session_history, v2_contact_session_session_id and v3_first_session_event, each ending in our HighLevel account id | Local storage | HighLevel chat widget | Keeps your chat open across pages: what was already said, which conversation you are in, and whether this is your first visit to the widget. | Until you clear your browser data |
i18n.en-us | Session storage | HighLevel chat widget | The widget's own English wording. | Until you close the tab |
The widget also reports a session to HighLevel's own attribution service when it loads. That is HighLevel's measurement of its own widget, and it happens only after you accept.
Accepting is what puts these hosts on the page, and they are the whole list, read from the network log: widgets.leadconnectorhq.com and stcdn.leadconnectorhq.com serve the widget's own code, services.leadconnectorhq.com and services.msgsndr.com are the attribution and messaging services named above, assets.cdn.filesafe.space serves its images, and fonts.bunny.net serves the typeface it draws itself in. Only the first two are ours to choose; the rest are HighLevel's widget reaching for what it needs. Before you accept, none of them is contacted.
The booking calendar
The calendar on our booking page is a HighLevel page shown inside a frame. If you have already accepted the category above, it loads with the page. If you have not, the frame shows a short explanation and a button, and nothing is requested until you press it. Pressing that button loads the calendar for that visit only. It does not change your stored answer and it does not start the chat widget.
| Name | Where it lives | Set by | What it does | How long it lasts |
|---|---|---|---|---|
__cf_bm | Cookie on leadconnectorhq.com | Cloudflare, for HighLevel | The same bot check, for the calendar page that runs inside the frame. | About 30 minutes |
Whatever the calendar page itself stores | Inside HighLevel's frame | HighLevel | The calendar is HighLevel's page, not ours. Loading it also makes that page request files from Google Fonts, Google Cloud Storage and Meta. We do not control what those requests carry, and we do not receive their contents. | Set by HighLevel and those providers, not by us |
The voice demo
The voice demo starts only when you press it and give your browser permission to use the microphone. Pressing it loads a media library from jsDelivr, opens a session with HighLevel, and connects the audio through Retell AI. Your browser sends the page address, the page title, the referring address and identifiers generated for that one call. Those identifiers are not written to your browser and are not reused. The demo stores nothing in your browser and stops when you end it or leave the page.
Forms
The contact form and revenue calculator do not save your entered answers in browser storage. The optional Inquiry source note above contains entry context only. What forms send when you submit them, and where it goes, is described in the Privacy Policy.
Hostname hints
The page asks your browser to look up the addresses of api.leadconnectorhq.com, widgets.leadconnectorhq.com and formsubmit.co early, so that if you do use those features they are quicker. A lookup is a name resolved by your own network. No request is sent to those hosts, nothing is stored, and they learn nothing about your visit.
What we do not use
There is no analytics product on this site. No Google Analytics, no Google Tag Manager, no Meta pixel of our own, and no product of that kind from any other vendor. We do not use cookies for advertising, we do not build profiles, we do not track you across other websites, and we do not fingerprint your device. If that changes, this page changes first and the banner asks again.
One caveat we would rather state than hide: the calendar page HighLevel serves inside the booking frame loads Meta's event script. That is inside HighLevel's page, not ours, and it is one reason the frame waits for your say-so.
Changing or withdrawing your answer
You can change your mind at any time, and it takes effect straight away. Rejecting after accepting stops the widget from loading again. Turning off Inquiry source removes its note from this tab and stops using context restored from it for new inquiries. Anything HighLevel already stored is cleared with your browser's own site-data controls, because it lives on their domains rather than ours.
Every browser also lets you block or delete cookies and site data for a specific site. Blocking storage for chleb.ai will clear your saved answer, so the banner will ask again on your next visit.
If your browser sends a Global Privacy Control signal, we treat it as a rejection and load nothing, and the banner stays out of your way. You can still turn the chat and booking tools on yourself from the cookie settings above.
Changes to this page
When the set of third parties on the site changes, we re-run the browser audit these tables come from, publish the new tables, raise the version number on the banner, and ask again. A raised version means an earlier answer no longer applies, because it was an answer to a different question.
Contact
Chleb Holdings LLC (DBA Chleb AI) · Tampa, FL, United States
Questions about anything on this page: email chleb@chleb.ai with the subject line "Cookies", or call (813) 694-8671.