Privacy Policy
Effective 24 July 2026. Short version: we collect as little as we can, keep it as briefly as we can, and never sell it.
What we collect
- Account: email, display name, password hash (or your Google identifier if you sign in with Google), plan and billing state.
- Content you create: pages, media links, themes, and interactive-feature entries (e.g. guest book posts) — stored to provide the service.
- Operational: a salted hash of your signup IP (abuse prevention — we do not store raw IPs with your account), server logs kept for 30 days, and minimal analytics (aggregate counts, no tracking cookies on hosted sites).
- Payments: handled by Stripe — we never see or store card numbers.
What we do with it
Operate the service, send transactional email (verification, receipts, safety notices) via Mailgun, screen content for safety (content may be submitted to an automated classifier; classifier outputs are not retained beyond category flags), and comply with law. We do not sell or rent personal information, ever.
Retention and deletion
Deleted content is purged within 30 days. Cancelled accounts are purged after the 30-day window. Moderation queue rows are pruned after 30 days. You can request an export or deletion of your data at any time via [email protected].
Cookies
We use strictly necessary cookies only: your sign-in session, a cross-site visitor session for interactive features, and password-unlock cookies for protected pages. No advertising or third-party tracking cookies.
Your rights
You may access, correct, export, or delete your personal information. Australians: Privacy Act 1988 applies. EU/UK visitors: we honour GDPR-style access/erasure requests. Contact [email protected].
Questions about any of this: [email protected]