Privacy Policy
Last updated: August 2026
1. Information We Collect
The Site follows a data-minimization principle. We offer no public registration and ask visitors for no personal information. Specifically:
- Access logs: our servers keep standard access logs (time, request path, method, processing duration) for troubleshooting and security auditing. Logs do not contain full cookie contents, nor the body of report submissions.
- Admin cookies: only when an administrator signs in does the Site set an HMAC-signed session cookie and a CSRF token. Ordinary visitors get no tracking cookies while browsing; submitting a report sets only an anonymous CSRF token cookie to prevent form forgery.
- Report data: when you voluntarily submit a report, we store the reason and description you provide, plus the contact details you choose to give us. Contact details are optional and are used only to communicate the outcome to you.
2. Use and Retention
- Report data is used for content governance (reviewing, hiding, or blocking entries) and necessary communication, and is closed by an administrator once resolved;
- report records and related audit logs are kept for at most 12 months, then deleted or anonymized;
- access logs are kept for at most 90 days;
- admin session cookies expire after 24 hours.
3. What We Do Not Do
- We use no third-party analytics or advertising trackers;
- we build no user profiles, perform no behavioral tracking, and never sell or share data with third parties;
- we neither read nor store your download activity (the Site serves no content files and technically cannot observe it).
4. Your Rights
If you wish to access, correct, or delete personal contact details contained in a report you submitted, contact us via the channels listed on the Takedown page and we will act after verification.
5. Changes to This Policy
Any changes to this policy will be published on this page with the date above updated. Material changes will also be announced on the Site's home page.