Privacy Policy
Last updated: May 2026
1. Information We Collect
When you create an account, we collect the name and email you voluntarily provide and store a bcrypt hash of your password — we never store, and cannot recover, your plaintext password. While you use the site, our servers may log access metadata (IP address, user agent, timestamp) solely for troubleshooting and abuse detection.
2. How We Use Your Information
We use your information only for the following purposes:
- To identify you and provide signed-in functionality;
- To contact you about material changes or security incidents affecting the site;
- To comply with applicable laws and respond to lawful requests from public authorities.
We do not sell or share your personal information with third parties for commercial purposes.
3. Cookies & Sessions
Upon successful sign-in we set an HttpOnly cookie namedsession_tokenused by the server to identify your signed-in state. This cookie cannot be read by JavaScript and is valid for 1 day by default; selecting “Keep me signed in” extends it to 7 days.
4. Your Rights
You may request to access, correct, or delete the personal information associated with your account at any time via the contact methods listed on the site. We will respond within a reasonable timeframe.
5. Changes to This Policy
We may update this policy from time to time. Material changes will be highlighted on the site, and your continued use of the site constitutes acceptance of the updated policy.