You are here:
Experience Cloud Cookies
Experience Cloud uses cookies to improve functionality and accelerate processing times. By saving a user’s settings, cookies can enhance the user’s experience and the performance of the Experience Cloud site.
Required Editions
| Available in: Enterprise, Professional, Unlimited, and Developer Editions |
Salesforce doesn’t currently provide functionality for end-user cookie consent management. The platform is compatible with many existing third-party solutions. We recommend that you work with your internal IT teams or consult your implementation partners to identify the right solution for your organization’s needs.
Cookies are divided into required, functional, and marketing. Functional cookies include preferences and statistics.
- Required: Strictly necessary to browse the website and to use its features.
- Functional: Preferences: Used by the website to remember choices made previously. Language settings are an example of a preference type cookie.
- Functional: Statistics: Used to collect information about how a website is used, including links clicked and which pages users visited.
- Marketing: Used to track online activity for a more personalized experience, including relevant advertisement.
- Experience Cloud can run without the use of functional cookies; however, site functionality can be reduced. The impact on functionality depends on the purpose of the blocked cookie.
- Experience Cloud cookies are limited to LWR and Aura sites.
- Experience Cloud doesn't use any marketing cookies.
- Any cookie with an
LSKEY-c$prefix is the same as the original cookie, but it is set if the site has Locker Service enabled. It must be a separate cookie since Locker Service restricts how cookies are read on the client side.
This table describes the Experience Cloud cookies collected by Salesforce.
| Cookie Name | Duration | Cookie Type | Description |
|---|---|---|---|
__Secure-has-sid
|
Session | Required | Detects a user’s login state on the client side. Set during login to Aura or LWR Experience. Never set this cookie to HttpOnly. |
_ga
|
2 Years | Required | A third-party cookie that’s used if the site admin chooses to track site users with a Google Analytics tracking ID. |
{UserId}_KMPage
|
1 Day | Functional: Preferences | In Salesforce Classic, used to read the last user selection for 'Find in View', 'Article Language', {DataCategory}, and 'Validation Status' in Article Management. |
{UserId}_KnowledgePageDispatcher
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the user selection to determine whether to show 'Articles' or 'My Drafts' view in Knowledge. |
{UserId}_KnowledgePageFilter{DataCategory}
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the data category filter in Knowledge. |
{UserId}_KnowledgePageFilterArticleArticleType
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the article type filter for 'Articles' view in Knowledge. |
{UserId}_KnowledgePageFilterArticlePublishStatus
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the publish status filter for 'Articles' view in Knowledge. |
{UserId}_KnowledgePageFilterArticleValidationStatus
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the validation status filter for 'Articles' view in Knowledge. |
{UserId}_KnowledgePageFilterLanguage
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the language filter in Knowledge. |
{UserId}_KnowledgePageFilterMyDraftArticleType
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the article type filter for 'My Drafts' view in Knowledge. |
{UserId}_KnowledgePageFilterMyDraftPublishStatus
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for publish status filter for 'My Drafts' view in Knowledge. |
{UserId}_KnowledgePageFilterMyDraftValidationStatus
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for the validation status filter for 'My Drafts' view in Knowledge. |
{UserId}_KnowledgePageSortFieldArticle
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for 'Sort by' for the 'Articles' view in Knowledge. |
{UserId}_KnowledgePageSortFieldMyDraft
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for 'Sort by' for 'My Drafts' view in Knowledge. |
{UserId}_spring_KmMlAnyoneDraftArticlesList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for the Draft Articles view in Article Management. |
{UserId}_spring_KmMlArchivedArticlesList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for 'Archived Articles' in Article Management. |
{UserId}_spring_KmMlMyDraftArticlesList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for 'Draft Articles' assigned to 'Me' in Article Management. |
{UserId}_spring_KmMlMyDraftTranslationsList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for 'Draft Translations' in Article Management. |
{UserId}_spring_KmMlPublishedArticlesList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for 'Published Articles' in Article Management. |
{UserId}_spring_KmMlPublishedTranslationsList
|
1 Day | Required | In Salesforce Classic, used to configure layout properties for 'Published Translations' in Article Management. |
<namespace>_sid
|
Session | Required | Identifies a Live Agent session. Stores a unique pseudonymous ID for a specific browser session over chat service. |
<userId>expid_[site prefix]
|
30 Days | Functional: Statistics | Used to render pages based on specified brand. |
52609e00b7ee307e
|
Session | Required | Browser Fingerprint cookie. Used to detect session security problems. |
79eb100099b9a8bf
|
Session | Required | Browser Fingerprint trigger cookie. Used to detect session security problems. |
activeView
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the last user selection for 'Articles' or 'Translations' tab in Article Management. |
AgentConsoleFE
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the page style of the Agent Console. |
AgentConsoleS
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the page style of the Agent Console. |
AgentConsoleY
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the page style of the Agent Console. |
AgentConsoleX
|
Session | Functional: Preferences | In Salesforce Classic, used to remember the page style of the Agent Console. |
alohaEpt
|
90 Seconds | Functional: Statistics | Used to calculate the ExperiencePageTime on
Salesforce Classic pages. |
apex__EmailAddress
|
1 Year | Required | Caches contact IDs associated with email addresses. |
auraBrokenDefGraph
|
1 Week | Functional: Statistics | Used to track when a Lightning page has malformed HTML. |
autocomplete
|
60 Days | Functional: Preferences | Determines if the login page remembers the user's username. |
BAYEAX_BROWSER
|
Expired on Creation | Required | Identify a unique browser subscribed to CometD streaming channels. |
BrowserId
|
1 Year | Required | Used for security protections. Rendered on a subset of Salesforce domains, including .salesforce.com, .force.com, and the domains for Salesforce login pages, Lightning pages, and Experience Cloud sites. |
calViewState
|
Session | Functional: Statistics | Sets the inline calendar date state in Salesforce Classic (current week selected). |
caPanelState
|
Session | Functional: Preferences | Saves the open, closed, and height percent states of the calendar panel. |
clientSrc
|
Session | Required | Used for security protections. |
communityId
|
Session | Required | Cookie set to tie the ideas to a specific Experience Cloud site. |
CookieConsent
|
1 Year | Required | Used to apply end-user cookie consent preferences. Stores a Boolean for whether user has consented to the cookie policy options offered by the site. Without this cookie, customers would not be able collect consent from their end users. |
CookieConsentPolicy
|
1 Year | Required | Used to apply end-user cookie consent preferences set by our client-side utility. |
cookieSettingVerified
|
Session | Required | Used to create a popup message telling users that cookies are required. |
cordovaVersion
|
Session | Required | Used for internal diagnostics with mobile applications. |
cqcid
|
1 Year | Functional: Statistics | Used to track a guest shopper's browsing activity. |
csssid
|
Session | Required | Used to establish a request context in the correct tenant org. |
csssid_Client
|
Session | Required | Enables user switching. |
devOverrideCsrfToken
|
Session | Required | CSRF Token. |
dialpadShown
|
Session | Required | Used in essential Open CTI functionality to determine the dial pad focus. |
disco
|
Session | Required | Tracks the last user login and active session for bypassing login (For example, OAuth immediate flow). |
FedAuth
|
Session | Required | For the SharePoint connector, used to authenticate to the top-level site in SharePoint. |
force-proxy-stream
|
3 Hours | Required | Ensures that client requests hit the same proxy hosts and are more likely to retrieve content from cache. |
force-stream
|
180 Minutes | Required | Used to redirect server requests for sticky sessions. |
gTalkCollapsed
|
1 Year | Required | Controls whether the sidebar in Salesforce Classic is open or not for a user. |
hideDevelopmentTools
|
Session | Functional: Preferences | Used to determine whether to show the developer tools. |
hideFilesWarningModal
|
50 Years | Functional: Preferences | Stores the user acknowledgment that a public link to a Salesforce file is on email send. The warning window isn't continually shown after the user acknowledges this action. |
hideIdentityDialog
|
1 Year | Functional: Preferences | Hides the dialog box that informs that the current user is logged out when switching to another user. |
idccsrf
|
Session | Required | Tracks CrossSiteRequestForgery validation
for certain SSO flows. |
ideaToggle
|
Session | Functional: Preferences | Show the 'Ideas' list view or the 'Feed' list view. |
inst
|
Session | Required | Used to redirect requests to an instance when bookmarks and hardcoded URLs send requests to a different instance. This type of redirect can happen after an org migration, a split, or after any URL update. |
iotcontextsplashdisable
|
10 Years | Functional: Preferences | For the IoT product, stores user preference of whether to show Context Splash popup. |
language
|
Session | Required | Identifies the language for custom components, surveys, and flows, which support multiple languages. Without this cookie, translations for custom features can appear incorrectly. |
lastActivePage
|
Session | Required | Used in essential Open CTI functionality, such as determining if CTI should screen pop the current call object. |
lastCallObjectId
|
Session | Required | Used in essential Open CTI functionality, such as determining if CTI should screen pop the current call object. |
lastlist
|
Session | Required | Used to store the cookie name for the last list URL. |
liveagent_invite_rejected_
|
Session | Functional: Statistics | Instructs Live Agent not to reissue an invitation on the same domain. Deletion of this cookie degrades customer experience as they can get repeated invitations. |
liveagent_sid
|
Session | Required | Identifies a Live Agent session. Stores a unique pseudonymous ID for a specific browser session over chat service. |
lloopch_loid
|
1 Year | Required | Determines whether to send the user to a specific portal login or an app login. |
login
|
60 Days | Functional: Preferences | If the user’s session has expired, used to fetch the username and populate it on the main login page when using the process builder app. |
logouturl
|
Session | Functional: Preferences | Stores the last logged in org for redirecting requests. Used for logging whether the cookie is present in site and community guest-user requests. |
oid
|
1 Year | Required | Stores the last logged in org for redirecting requests. Used for logging whether the cookie is present in site and community guest-user requests. |
oinfo
|
3 Months | Functional: Statistics | Tracks the last logged in org. |
pctrk
|
1 Year | Required | Used to count unique page views by unauthenticated (guest) users in Experience Cloud sites against a Customer's billing entitlements. |
pc-unit
|
1 Year | Functional: Preferences | Sets a preference for displaying platform cache units to either MB or KB. |
PicassoLanguage
|
Session | Required | Used to store a user’s language selection for this Experience Builder site. The site doesn’t load without this cookie if the user changes the site’s language. |
PicassoViewMode
|
Session | Functional: Preferences | Stores a user’s view mode selection for this Experience Builder site. |
PreferredLanguage<18-char SiteID> for
example, PreferredLanguage0DMxx0000004C93GAE |
1 Year | Functional: Preferences | Used to store the user language preference for language detection and localized user experience in LWR sites. Used to store the user language preference for language detection and localized user experience in LWR sites. |
promptTestMod
|
30 Days | Required | Stores whether test mode is in effect. This cookie is read-only. |
redirectionWarning
|
1 Year | Functional: Preferences | Enables the customer to store URLs that are exempt from setting a redirect warning interstitial page on an allowlist. |
rememberUn
|
60 Days | Functional: Preferences | Track the Remember Me checkbox that the user selected to enable login hint. |
renderCtx
|
Session | Required | Used to store site parameters in the session for reuse across requests by a
single client for functionality and performance reasons. Metadata required for
fetching site pages and components based on pageId, schema, viewType, brandingSet, formFactor, and
audience targeting. |
RRetURL
|
Session | Required | Used with 'Log in As' to restore the original state. |
RRetURL2
|
Session | Required | The return URL to redirect to when logging out of a session. |
RSID
|
Session | Required | Session ID and login-as session ID. In this case the cookies are copied to the response and cause the target URL to rebuild appropriately in a proxy situation. The cookies aren't created, examined, or modified. |
rsid2
|
Session | Required | Stores the encrypted original session ID when switching to a site while switched in as an internal user. |
schgtclose
|
0 | Functional: Statistics | Deprecated feature, not used. |
sfdc_lv2
|
1 Year | Required | Stores identity confirmation details for Experience Cloud users. If the cookie isn't set or it expires, users must repeat the identity confirmation process the next time that they log in. Identity confirmation requires a verification method such as SMS, an authenticator app, or a security key. |
sfdc-stream
|
3 hours | Required | Used to maintain a sticky (persistent) session on the salesforce.com domain. Makes sure that subsequent streaming requests are forwarded to the same server instance where the streaming subscription request was originally handled. |
showNewBuilderWarningMessage
|
100 years | Functional: Preferences | Used to show or hide a warning message for the new dashboard builder. |
sid
|
Session | Required | SessionID. |
sid_Client
|
Session | Required | Used to detect and prevent session tampering. |
sidebarPinned
|
10 Years | Required | Controls the state of the Salesforce Classic sidebar. |
sitePreview
|
Session | Required | Stores the authentication code for previewing the site. Preview mode doesn’t load without this cookie. |
ssostartpage
|
1 Year | Required | Identifies the Identity Provider (IdP) location for SSO; certain service provider initiated SSO requests can fail without this cookie. |
SUCSP
|
Session | Required | Used when the user identity that an administrator is assuming (via Log in to Experience as User) is a Customer Success Portal (CSP) user. |
SUPRM
|
Session | Required | Used when the user identity that an administrator is assuming (via Log in to Experience as) is a Partner Relationship Management (PRM) portal user. |
t
|
Expired on Creation | Functional: Statistics | Used to avoid duplicate access checks. |
useStandbyUrl
|
Not Set | Required | Controls how quickly to set the standby URL when loading the softphone. |
waveUserPrefFinderLeftNav
|
100 Years | Functional: Preferences | Preference for left navigation UI in CRM Analytics. |
waveUserPrefFinderListView
|
100 Years | Functional: Preferences | Preference for displaying list views in CRM Analytics. |
webact
|
1 Year | Functional: Statistics | Used to collect metrics per page view for personalization. |
WelcomePanel
|
1 Day | Functional: Preferences | Stores Experience Cloud preferences. |

