Introducing AI Bundles — 17+ AI models. One key. AI Bundles — 17+ models. One key. Explore
Products
Solutions
Enterprise
Pricing
Contact Log In Sign Up
Effective September 10, 2026

Cookie Policy

This Cookie Policy describes how Divzoon utilizes cookies, local storage, session identifiers, and tracking technologies across our digital music distribution platform, developer APIs, creative tools, and enterprise services.

At Divzoon (“Divzoon”, “we”, “us”, or “our”), we believe in radical transparency, data minimization, and providing you with comprehensive control over your personal information. This Cookie Policy explains how and why cookies, pixel tags, web beacons, local storage tokens, and related technologies (collectively, “Cookies”) are deployed when you access or interact with our websites (wearediv.com and divzoon.com), applications, application programming interfaces (APIs), digital distribution pipelines, AI Bundles, White Label partner tenancies, and enterprise platforms (collectively, the “Service”).

This policy should be reviewed in conjunction with our Privacy Policy, which details how we collect, store, safeguard, and disclose personal data across our ecosystem. Where you interact with a branded distribution platform powered by Divzoon’s White Label tenancy, please note that the tenant partner operates as the independent Data Controller for your relationship, and Divzoon provides technical infrastructure as a Data Processor pursuant to our institutional Data Processing Agreements.

1. What Are Cookies and Related Technologies?

Cookies are compact data files transmitted by web servers and stored within your web browser or device memory. They allow web platforms to remember your authentication state, maintain session continuity across page transitions, preserve interface preferences, protect against malicious bot attacks, and gather aggregate diagnostic telemetry.

In addition to standard HTTP cookies, Divzoon utilizes related web storage mechanisms to deliver high-performance platform services:

HTML5 Local Storage (‘localStorage’): Persistent client-side key-value storage that remains accessible across browser sessions until explicitly cleared or programmatically revoked. We use local storage for pseudonymized telemetry identifiers and UI display preferences.
HTML5 Session Storage (‘sessionStorage’): Ephemeral client-side storage that expires immediately upon closing your browser tab or terminating your session, utilized for short-term workflow continuity.
Cryptographic Fingerprinting Tokens: High-entropy cryptographic hashes derived from hardware and network technical attributes, deployed exclusively to verify device integrity, enforce rate limits, prevent artificial streaming fraud, and satisfy statutory anti-money laundering (AML) requirements. This technical telemetry is strictly non-biometric and does not record biological characteristics or ambient acoustic data.

2. How We Categorize and Use Cookies

Divzoon operates an opt-in by design consent management framework powered by our enterprise CookieConsent v3 engine. We strictly partition all cookies into clearly defined functional categories:

A. Strictly Necessary Cookies (Technical Operational Core):
These cookies are strictly required to provide the digital platform services explicitly requested by you. They enable encrypted user authentication (div_session), mitigate Cross-Site Request Forgery attacks (div_csrf_token), and preserve your verified privacy consent choices (div_consent). Under Article 5(3) of the EU/UK ePrivacy Directive and applicable global data protection statutes, these core operational cookies are exempt from prior consent because the Service cannot technically function without them.

B. Security & Fraud Prevention Cookies (Legitimate Interest Basis):
This category comprises our cryptographic device integrity token (__div_fp). This token operates automatically upon accessing the platform as an essential security safeguard to identify unauthorized multi-account operations, mitigate artificial streaming manipulation, and protect creator royalties from coordinated fraud syndicates. Rather than relying on an unscrutinized blanket consent exemption, this processing is conducted on the lawful basis of Legitimate Interests under GDPR Article 6(1)(f) and Section 7 of this Policy. This token processes strictly non-biometric device-level technical parameters and does not constitute biological identification. You maintain the statutory right to object to this processing under GDPR Article 21, as detailed below.

C. Functionality & Personalization Cookies:
These cookies enable enhanced interface personalization and convenience features. They allow the platform to remember your selected visual theme (such as dark mode and contrast settings), dashboard navigation states, and audio catalog player volume levels. If you decline these cookies, standard default settings will apply upon each visit.

D. Performance & Analytics Cookies (Strict Opt-In):
These cookies help us analyze visitor interactions, system latency, network throughput, and feature adoption in an aggregate, pseudonymized manner. This category includes our first-party performance telemetry and Google Analytics 4 (provided by Google LLC). Performance cookies are disabled by default and will never execute or write cookies to your browser without your explicit affirmative consent. Furthermore, our integration enforces Google Consent Mode v2 and IP anonymization. If you revoke consent, all associated tracking cookies and local storage tokens are purged automatically and immediately.

3. Comprehensive Cookie & Storage Registry

To provide complete transparency, the following tables disclose all active cookies and storage tokens deployed across the Divzoon ecosystem, including their exact names, providers, technical purposes, lifespans, and legal grounds:

Strictly Necessary Cookies (Technical Operational Core)

Security & Fraud Prevention Cookies (Legitimate Interest Basis)

The following security token operates automatically as part of our core defensive countermeasures. It captures device-level hardware flags to prevent unauthorized multi-accounting, defend against automated bot exploitation, and safeguard streaming royalties. This token represents non-biometric technical telemetry and does not process biological attributes or unique voiceprints.

Right to Object under GDPR Article 21: You maintain the statutory right to object to the deployment of security fingerprinting tokens on grounds relating to your particular situation. Upon receipt of a verified objection, Divzoon will cease deploying the __div_fp token to your device unless we demonstrate compelling legitimate grounds for the processing that override your fundamental interests, or where required to establish, exercise, or defend legal claims. Please note that exercising an objection to security fingerprinting may reasonably condition or limit access to high-risk, fraud-sensitive operations—such as royalty payout withdrawals, large-scale catalog delivery pipelines, and automated developer API provisioning—where alternative identity and anti-fraud verification cannot otherwise be reliably established.

Functionality & Personalization Cookies

Performance & Analytics Cookies (Strict Opt-In)

4. Client-Side Storage & Automated Purge Protocol

In addition to cookies, our telemetry architecture utilizes specific HTML5 Web Storage keys when analytics consent is granted:

div_aid: Pseudonymized analytics visitor identifier stored in localStorage.
div_sid_start / div_sid_last: Timestamps recording session interaction duration in localStorage.
div_landing: First internal route visited within the current navigation flow in localStorage.
div_sid: Ephemeral session identifier maintained in sessionStorage.

Automated Purge Protocol: If you decline or subsequently revoke consent for analytics, our system executes an immediate programmatic purge. The syncAnalyticsConsent() engine automatically evicts all Google Analytics cookies (_ga, _gid, _gat) across root and subdomains, purges all associated localStorage and sessionStorage keys, and writes a permanent suppression token (div_dnt=1) to prevent any subsequent tracking scripts from executing.

5. Third-Party Integrations & Sub-Processors

Divzoon engages reputable institutional sub-processors to power critical platform capabilities:

Google LLC (Google Analytics 4): With your prior affirmative consent, pseudonymized interaction metrics are transmitted to Google Analytics. Google operates under European Commission Standard Contractual Clauses (SCCs) and GDPR Article 28 data processing terms. We maintain IP masking and Google Consent Mode v2 to ensure no tracking occurs without your active consent.
Stripe, Inc. (PCI-DSS Tier 1 Payment Processing): All financial transactions and subscription billings are handled directly through Stripe’s secure, tokenized payment infrastructure. Divzoon never stores, accesses, or writes credit card numbers or banking credentials to cookies.
Cloudflare, Inc. & Amazon Web Services (AWS): Global Content Delivery Network (CDN), edge security filtering, SSL/TLS certificate management, and Distributed Denial of Service (DDoS) defense. Cloudflare may deploy strictly necessary security headers to distinguish legitimate creator traffic from malicious bot networks.

6. Managing Your Cookie Preferences & Opting Out

You possess absolute control over your cookie choices at all times. You can exercise your preferences through several accessible mechanisms:

A. Interactive Cookie Preferences Dashboard:
You can inspect, adjust, or completely revoke your cookie preferences at any time by clicking here: . Your selections take effect immediately across the entire platform without requiring a page reload.

B. Global Privacy Control (GPC) & Do Not Track:
Divzoon natively recognizes and honors Global Privacy Control (GPC) signals transmitted by modern privacy browsers. When our servers detect an active GPC or Do Not Track (DNT) header, non-essential analytics cookies are automatically disabled by default, honoring your choice without requiring manual configuration.

C. Web Browser Controls:
All modern web browsers allow you to review, block, or delete cookies stored on your device. To manage cookies directly through your browser, follow the official instructions provided by your browser developer:

Google Chrome
Apple Safari
Mozilla Firefox
Microsoft Edge
Opera

Please note that disabling strictly necessary cookies via your browser settings may impair core platform functions, preventing authentication, release metadata uploading, and secure royalty dashboard access.

7. Global Jurisdictional & Statutory Compliance

Divzoon serves artists, record labels, and enterprise partners across more than 180 countries. Our cookie architecture is engineered to comply with the most stringent global privacy frameworks:

A. Egypt — Personal Data Protection Law No. 151 of 2020 (قانون حماية البيانات الشخصية رقم 151 لسنة 2020):
In strict compliance with Egyptian Law No. 151 of 2020 governing personal data protection, electronic communications, and digital identifiers:

• Electronic tracking identifiers and telemetry cookies that can directly or indirectly identify a natural person are classified as personal data and processed strictly under lawful, transparent grounds.
• Non-essential cookies and digital profiling mechanisms require explicit, informed consent prior to deployment, in accordance with the regulatory standards established by the Personal Data Protection Center (المركز القومي لحماية البيانات الشخصية).
• Divzoon adheres to statutory restrictions regarding electronic direct marketing (Article 17), guaranteeing that cookies are never utilized to deliver unsolicited marketing communications without verifiable prior opt-in.
• Cross-border transmission of telemetry data adheres to statutory transfer protections (Articles 14 & 15), ensuring recipient cloud environments maintain equivalent data protection safeguards.

B. European Union & United Kingdom (GDPR & ePrivacy Directive):
In accordance with Regulation (EU) 2016/679 (EU GDPR), the UK Data Protection Act 2018 (UK GDPR), and Directive 2002/58/EC (ePrivacy Directive as amended by Directive 2009/136/EC):

• We obtain prior, freely given, specific, informed, and unambiguous opt-in consent before setting non-essential performance or analytics cookies on your device (GDPR Art. 6(1)(a) and Art. 7). Core security and anti-fraud tokens (__div_fp) are deployed under Legitimate Interests (GDPR Art. 6(1)(f)) with full disclosure and a dedicated right to object pursuant to Article 21.
• We do not employ deceptive design patterns (“dark patterns”) or pre-selected checkboxes.
• You maintain the statutory right to withdraw consent or object to legitimate interest processing at any time through our transparent preference channels.
• International transfers of telemetry data outside the European Economic Area (EEA) and the UK are governed by European Commission Standard Contractual Clauses (SCCs).

C. United States (State Privacy Laws — CCPA / CPRA, VCDPA, CPA, CTDPA, UCPA):
Under the California Consumer Privacy Act of 2018, as amended by the California Privacy Rights Act of 2020 (CCPA/CPRA), and comprehensive state privacy frameworks in Virginia, Colorado, Connecticut, and Utah:

No Sale of Personal Data: Divzoon does not sell your personal information, browsing history, or cookie telemetry for monetary or commercial consideration.
No Sharing for Cross-Context Behavioral Advertising: Divzoon does not share personal information with third parties for cross-context behavioral advertising or retargeting purposes.
Opt-Out Preference Signals: We process and honor affirmative opt-out preference signals, including Global Privacy Control (GPC), treating them as valid requests to opt out of the processing of personal data for targeted advertising or analytics profiling.
Non-Discrimination: We will never discriminate against you, deny access, or alter service pricing because you exercised your statutory privacy rights or declined non-essential cookies.

D. Other International Privacy Frameworks:
Divzoon adheres to applicable data sovereignty and cookie disclosure mandates across all operating jurisdictions, including Brazil’s Lei Geral de Proteção de Dados (LGPD - Law No. 13.709/2018), South Africa’s Protection of Personal Information Act (POPIA - Act No. 4 of 2013), and Canada’s Personal Information Protection and Electronic Documents Act (PIPEDA).

8. Zero Advertising & Zero AI Training Commitment

Divzoon operates an enterprise music distribution and creative services ecosystem, not an advertising network. We make the following immutable commitments to every creator and partner:

No Third-Party Ad Networks: We do not embed third-party advertising banners, marketing pixels (such as Facebook Pixel or TikTok Pixel), or commercial tracking beacons on our platform.
AI Zero-Training Guarantee: Telemetry data, creative asset interactions, catalog metadata, audio files, and user prompts are never used to train, evaluate, or fine-tune artificial intelligence models. Your intellectual property and usage patterns remain strictly confidential and sovereign.

9. Changes to This Cookie Policy

We may periodically update this Cookie Policy to reflect technical enhancements, architectural updates, new service integrations, or evolving statutory regulations. When material modifications occur, we will post the revised policy on this page with an updated effective date and provide appropriate notification through platform announcements or direct email correspondence where mandated by law. We encourage you to review this page periodically to stay informed about our ongoing privacy safeguards.

10. Contact Information & Data Protection Office

If you have questions, feedback, or concerns regarding our cookie practices, or wish to exercise your statutory privacy rights, please contact our Data Protection Office:

Privacy & Data Protection Office: [email protected]
General Support: [email protected]
Corporate Operations: Divzoon — Global Music Distribution & Enterprise Platform Operations
Response Commitment: All verified privacy inquiries and rights requests are acknowledged within 72 hours and resolved within 30 calendar days.