73 lines
2.6 KiB
Markdown
73 lines
2.6 KiB
Markdown
|
%%-
|
||
|
title: qwik - privacy policy
|
||
|
header: Privacy Policy
|
||
|
date: Last updated 9th August 2021
|
||
|
-%%
|
||
|
|
||
|
# Introduction
|
||
|
We want to keep this short but informative, but a *tl;dr:*
|
||
|
|
||
|
We do not want to collect data, and all data collected *should be logical*. (i.e. emails for a [gitea](https://git.qwik.space/) account or so).
|
||
|
|
||
|
We will change this Privacy Policy from time to time to reflect the current situation. Please keep an eye out.
|
||
|
Some extra words
|
||
|
|
||
|
This notice is very general and there might be exceptions for each individual service we offer. Consider reading
|
||
|
about the services before you use them, but they are all doing their best to be privacy friendly.
|
||
|
|
||
|
We will list some exceptions further down the privacy policy.
|
||
|
|
||
|
|
||
|
|
||
|
# Data collection
|
||
|
## IP Addresses and User Agents
|
||
|
We do not keep nginx access logs - so we can't see who has connected. However, our main server uses modsecurity
|
||
|
to protect against different types of attacks. If one of your requests is flagged as an attack, modsecurity will
|
||
|
write to an audit log. **This will log your User Agent**.
|
||
|
|
||
|
## Cookies
|
||
|
Our main page ([qwik.space](https://qwik.space/)) does not have any cookies.
|
||
|
|
||
|
|
||
|
|
||
|
# Data retention
|
||
|
The modsecurity log is kept until we clear it from time to time.
|
||
|
|
||
|
|
||
|
|
||
|
# Data sharing
|
||
|
We do not share any data with third parties unless we have to by law or state otherwise.
|
||
|
|
||
|
|
||
|
|
||
|
# Exceptions
|
||
|
Here are some services that make exceptions to the above statements:
|
||
|
|
||
|
## XMPP
|
||
|
Our XMPP server caches messages and uploads for up to seven days. If your client uses encryption (such as OMEMO)
|
||
|
the cached messages and uploads will be encrypted. We **strongly** advise using encryption.
|
||
|
|
||
|
## Gitea
|
||
|
Gitea will collect your email upon registration. (Sadly we don't know any way to disable this.) However, the email
|
||
|
isn't used for anything so it can be whatever. We would maybe even advise you to use a temporary or throwaway email.
|
||
|
|
||
|
Gitea will require a username on signup, which you might consider personal. We would advise you to not use your real
|
||
|
name and instead use an alias.
|
||
|
|
||
|
Gitea also uses some cookies, but this is for your comfort. For example keeping you signed in and remembering your
|
||
|
settings or what not.
|
||
|
|
||
|
## Nitter, Bibliogram, Libreddit, Searx
|
||
|
These services all use cookies to remember your settings.
|
||
|
|
||
|
|
||
|
|
||
|
# Recommendations
|
||
|
**The internet is not a good place when it comes to privacy**. If you want to limit the risks of something or someone
|
||
|
invading your privacy online, we recommend:
|
||
|
|
||
|
* Use Tor (properly)
|
||
|
* Use throwaway emails when signing up for stuff
|
||
|
* Use fake names or aliases to protect your name
|
||
|
* (Generally) don't give out personal information online...
|