PRIVACY // PLAIN LANGUAGE

Privacy

This site collects the minimum needed to understand whether its pages are useful. It does not build advertising profiles or sell visitor data.

01

What is counted

A random first-party visitor token, the public page path, the calendar day, and an aggregate page-view count.

02

What is not stored

No IP address, query string, referrer, full user agent, precise location, advertising identifier, contact information, or GitHub identity is placed in the site analytics table.

03

How the token works

The browser receives a Secure, HttpOnly, SameSite cookie. Before storage, its random value is converted to a one-way SHA-256 hash. The raw token is not written to the analytics database.

04

Who can see it

The counter and path totals are available only inside the GitHub-authenticated admin panel. There is no public visitor counter.

05

How long it remains

Analytics rows older than 90 days are automatically removed. The visitor cookie can remain for up to one year so returning browsers are not repeatedly counted as new.

06

Your browser can opt out

Requests carrying Global Privacy Control or Do Not Track receive no analytics cookie and are not added to visitor counts.

QUESTIONS OR SECURITY REPORTS

Send a concise description, the affected URL, safe reproduction steps, and the likely impact. Do not access other people's data, disrupt the service, or publish an unresolved issue. This contact does not create a bug bounty or authorize intrusive testing.

hello@aes256afro.com