Current storage inventory
Supporter session cookie
After a valid Supporter key is activated, NSFWDL sets supporter_session. It is needed to recognize the temporary entitlement, is HTTP-only, Secure by default, SameSite=Lax, scoped to the site, and expires no later than the activation key. The server stores only a hash of its random token. Free use does not need this cookie.
Smart-route session storage
When the homepage sends a public source URL to a dedicated or universal downloader page, NSFWDL briefly stores that URL in the browser's session storage. The destination page consumes and removes it before extraction; entries older than about two minutes are rejected. This prevents the adult URL from being placed in the destination query string or browser-history URL.
Adults-only confirmation (nsfwdl_age_confirmed_v1)
When a visitor confirms they are 18 or older, a local-storage entry records the time of that confirmation so the adults-only notice is not shown again on every page. It holds only a timestamp, is re-asked after 30 days, and is never sent to the server or shared with any other site.
Analytics opt-out (nsfwdl_analytics_consent_v1)
If a visitor turns analytics off with the footer control, a local-storage entry records that choice so Google Analytics is not loaded on later visits. It holds only that decision — never a submitted URL, title, or media detail — and is specific to NSFWDL; it is not shared with any other site the operator runs.
Google Analytics 4 (after entering the site)
Pressing Enter on the adults-only notice both confirms the visitor is 18 or older and enables Google Analytics, as the notice states. Google's own gtag.js is then loaded and Google Analytics sets its own first-party measurement cookies (typically _ga and a per-property _ga_<container id> cookie) to distinguish sessions. These are Google's cookies, governed by Google's own retention; NSFWDL does not read or extend them. Before Enter is pressed, or after analytics is turned off, this tag is never requested and these cookies are never set.
Ordinary browser caching is constrained by Cache-Control: no-store.
Strictly necessary, security, and functionality storage
Storage strictly necessary to deliver a feature the user requested may be used without optional-tracking consent where applicable law permits. It must remain limited to that purpose. The Supporter cookie is set only when a user activates Supporter access; the short-lived session-storage handoff occurs only when the user submits a URL for smart routing; the analytics opt-out entry only records that analytics was turned off, never a tracking identifier by itself. The adults-only confirmation entry only records when the age notice was accepted.
First-party operational measurement
Public pages use a small same-origin script to report coarse visible-page duration to NSFWDL's own server. It creates a random page identifier in memory for that page only and does not write a cookie, local-storage entry, session-storage entry, IndexedDB record, advertising identifier, or cross-site identifier. The server also records normalized request information and download lifecycle/byte events for the limited operational purposes described in the Privacy Policy. This first-party system works independently of the Google Analytics choice; it does not load a third-party tag or alter the stored GA4 preference.
Google Analytics 4: enabled on entry, easy to turn off
NSFWDL also uses Google Analytics 4 to understand aggregate traffic and product usage. Until a visitor presses Enter on the adults-only notice, and whenever analytics has been turned off, no Google tag is requested and no request reaches googletagmanager.com or any Google Analytics domain at all.
Only after Enter does NSFWDL insert Google's gtag.js. Google's advertising consent signals are explicitly kept denied at all times. Google Signals and ad-personalization signals are disabled. NSFWDL does not use Google Ads or remarketing. The pasted source URL, extracted media title, performer or uploader name, tags, thumbnail address, direct media/CDN address, download filename, and Supporter key/session/donor data are never sent to Google.
Sponsored affiliate widgets
NSFWDL embeds clearly labeled StripCash affiliate widgets through the HandPickedXXX White Label creative host. A widget is loaded in a sandboxed iframe, without an external JavaScript loader, either near the viewport on eligible pages or after a real download handoff for the post-handoff placement. It loads independently of the Google Analytics choice. StripCash may use cookies or other browser storage and may receive IP address, browser/device data, time, impression and click data, and the static affiliate identifiers in the creative URL under its own policy.
NSFWDL does not put a pasted adult URL, download filename, title, performer, tag, extracted-media metadata, format reference, job identifier, or correlation identifier in the widget URL. The iframe sets a strict-origin-when-cross-origin referrer policy, so the browser can send the NSFWDL site origin (for example, https://nsfwdl.com/) to the affiliate/creative host as a referrer, but not the full page path, query string, or fragment. Product policy prohibits forced redirects, pop-ups or popunders created by NSFWDL code, fake download buttons, controls that disguise ads as NSFWDL actions, mandatory ad clicks, and automatic new tabs.
Turning analytics off
The adults-only notice tells visitors that entering the site also enables Google Analytics. A persistent "Turn off analytics" control in the site footer, available on every page whenever analytics is configured, stops NSFWDL from loading the Google tag on any later page view; the same control turns it back on. Turning analytics off stops future processing but does not undo processing Google already performed before that.
Turning analytics off never disables URL extraction or downloading — the two are entirely independent, and the downloader behaves identically whether analytics is on, off, blocked by an extension, or simply unavailable. The choice is stored in nsfwdl_analytics_consent_v1, described above.
Browser controls
Browsers can inspect, block, or delete cookies and site storage. Deleting the Supporter session cookie logs the browser out of Supporter access; the activation key can be used again if still valid and not revoked. Clearing session storage can cancel an in-progress smart-route handoff, but a URL can still be pasted directly on the destination downloader page.
Questions
See the Privacy Policy for the broader data flow or use the privacy contact category.