Pull to refresh
Legal policy

Cookie and Local Storage Policy

How authentication and preference data are stored in your browser.

Effective date
July 28, 2026
Legal owner and jurisdiction
His And Her Workout, an independently operated online service · United States
Questions about this policy or how it applies to your account? Send us a message.

Cognito authentication storage

AWS Amplify stores your Cognito session in browser local storage so sign-in can survive reloads and browser restarts. Short-lived access tokens authorize API requests. The refresh token may be valid for up to 3650 days, but logout, global logout, revocation, account changes, browser controls, or Cognito policy can end the session sooner.

Security

Protected API calls send a Cognito bearer access token. State-changing requests are restricted to exact approved website origins. Authentication storage is not used for advertising or cross-site tracking.

Device appearance

The interface follows your device light or dark appearance setting. The initial service does not use advertising or analytics cookies.

Retention and controls

Settings can sign out this browser or request global Cognito logout. Clearing site data removes the local Cognito session and signs you out. Cognito tokens expire or are revoked according to the account security policy; production security logs associated with authentication are retained for up to 90 days.