Privacy Policy
Effective Date: April 13, 2026
1. Data We Collect
1.1 Account Data
We collect:
- Email address
- Name
- Username
- Password (hashed and not stored in plaintext)
1.2 User Content
Users may store arbitrary data including:
- Text logs and journal entries
- Tags and metadata
- Timestamps (system-generated)
- Optional geolocation data
- Uploaded images and files
Logling does not limit content types and users may store sensitive personal information voluntarily.
1.3 Technical Data
We collect:
- IP address
- Device type and browser
- Authentication/session identifiers
We use cookies strictly for authentication and session management.
2. Legal Basis for Processing (where applicable)
We process data to:
- Provide the service (contract necessity)
- Maintain security and prevent abuse (legitimate interest)
- Comply with legal obligations where required
3. Data Usage Restrictions
We do not:
- Sell user data
- Share personal logs with third parties for marketing
- Use logs for behavioral advertising (currently)
4. Third-Party Processors
We rely on:
- Cloudflare (hosting, security, analytics infrastructure)
- Resend (email delivery services)
- Analytics services (Cloudflare Analytics currently; Google Analytics may be introduced later)
- Future optional error tracking systems
All processors are bound by their own privacy and security obligations.
5. Data Retention
- Active accounts: data retained until deletion
- Deleted accounts:
- Soft-deleted immediately
- Removed from backups within 7 days
6. Security Measures
We implement:
- TLS encryption in transit
- Encryption at rest
- Restricted internal access controls
- Logging system isolation from human access by default
Administrative access is limited to:
- Debugging
- Security investigations
- Support requests (when necessary)
7. User Rights
Depending on jurisdiction, users may have rights to:
- Access personal data
- Correct inaccurate data
- Request deletion
- Data portability (future implementation)
8. International Data Transfers
Logling operates globally. Data may be processed in multiple jurisdictions via infrastructure providers.
9. Children’s Privacy
We do not restrict age, but we do not knowingly collect data from children below applicable legal age thresholds.
If such data is discovered, it will be deleted.
10. Changes to This Policy
We may update this policy periodically. Material changes will be reflected by updating the effective date.