Cookies
FindIP Shield stores two random IDs in the visitor's browser, both first-party and containing no personal data: a session ID and a visitor ID. The visitor ID is also kept in localStorage.
_fip_sid
Session
| Purpose | Session continuity |
| Duration | 30 minutes (rolling) |
| Value | Random opaque ID, e.g. sess_abcd1234 |
| Contains | No IP, email, or personal data |
_fip_vid
Visitor
| Purpose | Repeat visitor detection |
| Duration | 7–30 days (configurable) |
| Disabled in | strict privacy mode |
| Value | Random opaque ID, e.g. vis_abcd1234 |
| Also stored in | localStorage, key _fip_vid (SDK 1.11.0 and later) |
When cookies are blocked
Fallback order
Session ID
sessionStoragewindow.name (SDK 1.11.0 and later): _fip_sid=<site key>.<session id>.<last seen>. It expires like the session cookie, is tied to your site key, and ends with the tab. The SDK only writes an empty window.name and removes its value once the cookie works again.linkSession (SDK 1.11.0 and later): at click time the SDK adds _fip=<session id>.<time> to same-origin links, and the page that opens removes it from the address bar. It is accepted for two minutes and only on a page reached from the same origin. Your server sees the parameter on that one request.Visitor ID
localStorage (not in strict mode)strict mode.Sessions from such browsers are marked "Cookies blocked" in the dashboard. The SDK continues working without cookies.
The localStorage copy of the visitor ID
SDK 1.11.0 and later
The visitor ID is kept in two places with the same lifetime: the _fip_vid cookie and a localStorage entry of the same name. On each page the SDK reads whichever still holds the ID, the cookie first, and writes both again. A visitor whose cookie was removed, or whose browser refuses the cookie, keeps the same visitor ID as long as the localStorage entry is there.
FindIP.setConsent(false) after an earlier grant), the SDK deletes both and stops sending the visitor ID.If your cookie notice lists the storage your site uses, list the _fip_vid localStorage entry next to the cookie.
Configuration & troubleshooting
FindIP.init({
sessionCookieDurationMinutes: 30,
visitorCookieDurationDays: 30,
});_fip_vid in strict modeExpected behavior, for the cookie and the localStorage entry.sess_cl_… or vis_cl_… IDsDerived by Shield for a browser that keeps nothing._fip_sid missingCheck browser privacy settings — the sessionStorage fallback still works.