Privacy Policy
Last updated: [REVIEW โ set on publication]
1. Who is responsible
Data controller: [REVIEW: legal entity, address, contact]. Questions and requests: support@lucidplexus.com.
2. What we collect, and why
Account data โ username, email, password (stored hashed by WordPress), display name: to operate your account. Profile data โ headline, optional profile picture, XP, streaks: to run the platform features you use. Content โ repositories, notebook blocks, posts, comments, votes, saves, follows: this is the product; published items are public by design. Membership data โ invitation use, review-queue timestamps, decisions, and where applicable ban records: to run the invite-only membership. Coin ledger โ every credit and spend with reasons: to keep balances honest and auditable. Reports โ who reported what and why: for moderation; the reported person never sees the reporter. Technical โ server logs kept by our host [REVIEW: retention period], and rate limiting that stores hashed IP addresses in transients that expire automatically within minutes to hours.
3. What we deliberately do NOT do
No advertising, no third-party analytics or tracking scripts anywhere on the platform. Fonts are self-hosted, so your visits are not disclosed to font CDNs. Cookies are limited to those WordPress needs to sign you in and keep your session [REVIEW: confirm no additional cookies from the hosting stack].
4. Third parties
Hosting: [REVIEW: name provider + location; a data-processing agreement should be in place]. Avatars: if you have not uploaded a profile picture, we request a fallback avatar from Gravatar (Automattic Inc.), which involves transmitting a hash of your email address [REVIEW: keep, or disable Gravatar fallback for zero third parties]. Email delivery for password resets and notifications: [REVIEW: provider]. The in-browser SQL engine runs locally in your browser; your queries are not sent to any third party.
4a. Visitor statistics
We count visits ourselves, without cookies, without JavaScript trackers, and without any third party. What is stored are daily aggregate counters only: how many visits a page got, from which country (from a network header or your browser's locale โ approximate), which browser language, which device class (phone/tablet/desktop), and which external site linked here. To count unique visitors per day we compute a hash of your IP address and browser signature with a salt that changes every day โ it cannot be reversed into your IP and cannot link your visits across days. All statistics rows are deleted after 90 days. Nothing in this system can identify you or reconstruct your browsing. Legal basis: legitimate interest in understanding aggregate site usage (art. 6(1)(f) GDPR). [REVIEW: confirm this description if the analytics feature flag is changed.]
4b. Newsletter
If you subscribe to the digest we store your email address, subscription status, when and where on the site you subscribed (our consent record), and when you confirmed or unsubscribed. Subscription is double opt-in โ a pending address receives exactly one confirmation email and is never mailed again unless confirmed. Every issue contains a one-click unsubscribe link that takes effect immediately, and you can also unsubscribe in Settings. Unsubscribed or erased addresses are never mailed; you can request full erasure of your address from the list at any time. Newsletter emails contain no tracking pixels. Deleting your account also removes you from the list. Legal basis: consent (art. 6(1)(a) GDPR). [REVIEW: if a third-party email provider is used for delivery, name it here as a processor.]
5. Legal bases
Performing our contract with you (operating your account and the features you use); legitimate interest (moderation, abuse prevention, rate limiting); legal obligations where applicable. [REVIEW: confirm mapping.]
6. Retention
Account and content data: for the life of the account. On deletion: profile, drafts, and community activity are removed; published repositories are anonymized (kept without your name) to preserve review integrity [REVIEW: confirm]. Coin ledger and moderation records: retained [REVIEW: period โ audit vs. minimization]. Rate-limit transients: minutes to hours, automatic.
7. Your rights
Under the GDPR you can access, correct, export, and delete your data, object to processing, and complain to the Autoriteit Persoonsgegevens (or your local authority). Export and deletion are self-service in Settings; everything else via support@lucidplexus.com.
8. Security
Passwords are hashed, actions are CSRF-protected, database access is parameterized, uploads are path-contained, and sign-in is rate-limited. No system is perfect; report suspected vulnerabilities to support@lucidplexus.com.
9. Changes
Material changes to this policy are announced on the platform before they take effect.