Privacy in this beta
This page explains the current app behavior, not a claim that every legal or privacy-review requirement has been completed.
Account data
Accounts use passkeys. The app stores the public credential and session/challenge records, not your passkey private key. Sessions use Secure, HttpOnly, SameSite cookies. We do not collect an email address or password. If you lose all passkey copies, there is no recovery. Handle changes, account deletion and passkey management are not available in the app yet.
Submissions and social records
The app stores submitted media, captions, profile text, review records, likes, follows, requests, comments and reports. New submissions stay private until review. Reviewers can access private submissions and account content for review.
Private accounts
Private accounts hide approved posts, media and profile details from everyone except the member, approved followers and app reviewers. The handle stays discoverable. Existing followers keep access until removed. Content someone already saw or saved cannot be recalled.
Device preferences
Saves, preview preference and interface-language preference use this browser's local storage. They are not synced across accounts or devices. The service worker caches the app shell, not private APIs or media.
Limits and counting
Write-limit records and anonymous qualified-view deduplication use hashed network identifiers. View deduplication is day-based. This is not a promise of anonymity: the hosting provider processes network information to deliver requests.
Stories hide 24 hours after approval; hiding does not delete stored media. Rejected and expired media still counts toward the beta storage cap. This app does not promise automatic data deletion. No push/email delivery or payment processing is wired.
External sources
Credited source/license links open external sites. Those sites have their own practices. The app uses Cloudflare hosting and database services.