Privacy Policy
Last updated: 10 March 2026
Overview
This is a personal portfolio and blog website. Your privacy matters, and this policy explains what personal data we collect, why we collect it, and what rights you have over it.
Data Controller
The data controller for this website is the site owner. If you have any questions about how your data is handled, you can reach out via the contact page.
What Data We Collect
When you create an account via Google sign-in, we receive and store the following from your Google profile:
- Your name
- Your email address
- Your profile picture URL
As you use the site, we also store:
- Comments you post
- Likes on comments
- Poll votes
- Activity logs (sign-ins, account actions)
Legal Basis for Processing
We process your data under legitimate interest (Article 6(1)(f) GDPR) to provide the commenting and interaction features of this site. Your Google profile data is necessary for account creation and identifying you as the author of your comments. We obtain your consent before creating your account, and you can withdraw at any time by deleting your account.
How We Use Your Data
Your data is used solely to provide the features of this site: displaying your name and picture alongside your comments, tracking your likes and poll votes, and allowing you to manage your account. We do not use your data for marketing, profiling, automated decision-making, or any purpose beyond the core functionality of this website.
Third-Party Sharing
We do not sell, trade, or share your personal data with any third parties. The only external service involved is Google OAuth, which is used solely for authentication. We do not use analytics services, advertising networks, or any other third-party tracking.
Cookies
This site uses only a single strictly necessary session cookie to keep you signed in. This cookie is essential for the site to function and does not track you across other websites. We do not use any analytics, advertising, or third-party cookies.
Data Retention
Your data is retained for as long as your account exists. If you delete your account, your personal data (name, email, profile picture) is permanently and immediately removed, along with your likes, poll votes, and activity logs. Your comments are preserved for conversational continuity but are fully anonymised — they are no longer linked to your identity and are displayed under “[Deleted User]”. There is no backup retention period.
Your Rights
Under the GDPR, you have the right to:
- Access — Download a copy of all data we hold about you from your account page
- Erasure — Delete your account from your account page. Your personal data is removed; comments are anonymised and no longer linked to you
- Portability — Export your data in a machine-readable JSON format
- Rectification — Your name and profile picture are synced from your Google account; update them there and they will be reflected here on next sign-in
- Object — You can object to the processing of your data by contacting us
- Complain — You have the right to lodge a complaint with your local data protection supervisory authority
Security
Your data is stored in a secure database. Authentication is handled entirely through Google OAuth — we never see or store your Google password. All connections to this site are encrypted via HTTPS.
Children
This site is not directed at children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has created an account, please contact us and we will delete it promptly.
Changes to This Policy
If this policy is updated, the changes will be reflected on this page with an updated date. For significant changes, we may notify users via the site.
Contact
If you have any questions about this privacy policy or how your data is handled, please get in touch via the contact page.