mochaweb.co.uk
Privacy
Policy.
This policy explains what personal data is collected when you use this website, why it is collected, and how it is handled. This is a personal website run by one individual.
What data is collected
If you create an account, the following information is stored:
- Your chosen username
- Your email address
- A hashed (one-way encrypted) version of your password — your actual password is never stored
If you post to the guestbook, the following is stored alongside your post:
- Your username
- The content of your message
- The date and time of posting
What is not collected
- Live chat messages are not stored. They are broadcast in real time and discarded immediately.
- No analytics, tracking scripts, or third-party services are used.
- No advertising cookies or profiling of any kind takes place.
Session cookies & local storage
When you sign in, a session cookie is set in your browser. This keeps you logged in and expires after 7 days. It contains only your username and is strictly necessary for the site to function.
Your browser's local storage is used to save the following preferences between visits:
- Your light/dark mode preference
- Whether you have dismissed the cookie notice
These contain no personal information and never leave your device. No other cookies or local storage entries are set by this website.
Why this data is collected
Your account data is collected solely to provide the account and guestbook features of this site. It is not used for marketing, analytics, or shared with any third party.
How long data is kept
Your account data and guestbook posts are kept for as long as your account exists. You can delete your account at any time from your account page, which permanently removes your username, email, and password from the database. Guestbook posts are not automatically removed on account deletion — contact me if you would like those removed too.
Your rights
Under UK GDPR you have the right to access the data held about you, request its deletion, and correct any inaccuracies. To exercise any of these rights, please get in touch directly.
Data security
Passwords are hashed using SHA-256 before being stored and are never held in plain text. Reasonable steps are taken to keep the database secure, though no system can guarantee absolute security.
Contact
If you have any questions about this policy or your data, you can reach me via the contact details on this site.