| Cookie | Category | Purpose |
|---|---|---|
AUTH_SESSION_ID | Functional | ID of current authentication session. |
AUTH_SESSION_ID_LEGACY | Functional | Internal cookie from Keycloak. To manage the authentication state as a work-around to older browsers not supporting the SameSite flag on cookies. |
KC_AUTH_STATE | Functional | Internal cookie from Keycloak. To manage the authentication state |
KC_RESTART | Functional | Internal cookie from Keycloak. |
KC_START | Functional | Internal cookie from Keycloak. |
KC_STATE_CHECKER | Functional | Workaround for set the property samesite=strict on browsers that doesn't suport it |
KEYCLOAK_IDENTITY | Functional | ID of the current user. |
KEYCLOAK_LOCALE | Functional | Language of the interface. |
KEYCLOAK_REMEMBER_ME | Functional | Internal cookie from Keycloak. |
KEYCLOAK_SESSION | Functional | ID of the current browser session |
Running Keycloak on your site? A free Conzent scan shows which of these cookies are set before consent, and the banner blocks them until the visitor agrees.
Last updated 2026-09-27.