Privacy is the product
We run a private community for adults, so we treat your data the way we treat everything else here: minimal, consensual, and under your control. This page explains exactly what we collect, why, who can see it, and how to take it back.
Last updated: July 20, 2026
What we collect
We collect only what the community needs to function:
- Application details — the name, email address, and answers you give when you apply, including your confirmation that you are 18 or older.
- Account & profile — your login credentials (password, two-factor enrolment), and the profile you choose to build: display name, alias, pronouns, bio, and profile picture. Everything beyond your name and email is optional.
- Activity inside the community — event RSVPs, posts and any images you attach to them, direct messages, reports you file, and messages you send to staff through the contact form.
- Operational records — security and moderation logs (for example, staff decisions about applications, reports, and content), and the session cookies needed to keep you signed in.
What we deliberately do not collect
- No identity documents. Age confirmation is currently attested and reviewed by staff — we do not request, scan, or store government ID on our systems.
- No advertising or tracking. There are no ad networks, no third-party tracking pixels, and no sale or rental of member data to anyone, ever. If we enable usage analytics, it is aggregate and cookieless.
- No data brokering. Membership itself is confidential. We never publish or share the member list.
How we use your data
- Running your membership: applications, sign-in, RSVPs, posts, and messages.
- Safety and moderation: reviewing applications, handling reports, and enforcing the code of conduct.
- Essential email: application decisions, security notices, and event-related messages. We do not send marketing email.
- Keeping records we are legally required to keep (see Retention).
Moderation access — read this one
Because member safety depends on real oversight, our moderation team has defined access to member content, and we would rather tell you plainly than bury it:
- Direct messages can be reviewed by the moderation team. This is disclosed inside the messaging area as well. Every staff view of a conversation log is itself recorded in an audit trail.
- Images are reviewed before other members see them. Any image attached to a post is held for human review and only becomes visible to the community after approval.
- Staff actions are logged. Privileged actions (approvals, removals, role changes, log views) are written to an audit log so access is accountable, not casual.
Who else touches the data
We use a small number of infrastructure providers to run the service — they process data on our behalf and are not permitted to use it for their own purposes: our database and authentication provider (Supabase), our hosting provider (Vercel), and our transactional email provider (Resend). Beyond that, we disclose personal data only if we are legally compelled to, or where we have a duty to report — for example, suspected child sexual abuse material must be reported to the authorities.
Your controls
Every member has three self-service controls on the account page, no questions asked:
- Export — download a copy of the data we hold about you.
- Pause — step back from the community without deleting anything.
- Delete — permanently delete your account and profile. This is a real deletion, not a deactivation.
For anything else — corrections, questions, complaints — use the contact form and a real person will respond.
Retention
We keep your data while your membership is active. When you delete your account, your profile and content are removed. A narrow set of records can survive deletion: security and moderation audit records, and any material we are required to preserve for legal reasons (for example, evidence connected to a safety report). We keep those because accountability and legal duties do not end when an account does — never for marketing or profiling.
Security
- Two-factor authentication is mandatory for every member — not optional.
- All traffic is encrypted in transit, and every database table is protected by row-level access rules, so members can only ever read what their role permits.
- Profile pictures and post images live in private storage and are served through short-lived signed links, not public URLs.
- Photos of your face are never required anywhere in the product.
Age
This community is strictly 18+. We do not knowingly hold data about anyone under 18, and an application from a minor is declined and removed.
Changes to this policy
If this policy changes in a way that matters — new data collected, new access, new retention — we will tell members directly rather than silently editing this page. The date at the top always reflects the current version.