Short version: this site sets no cookies, stores no advertising identifiers, does no cross-device tracking, and never sells subscriber data.

What we collect

Analytics (cookie-free)

We run our own first-party analytics. When you load a page, a small script sends the page path, the referring origin (not its path or query), UTM parameters, and a keyed hash of your IP address to our server. We do not set cookies, use localStorage identifiers, or fingerprint your device. The stable keyed hash can group events from the same IP during the raw-data retention window, but does not reveal the original IP and is not an account or cross-device identifier.

Raw analytics rows are retained for 90 days, then purged. Daily aggregate counts (pageviews, referrers, affiliate clicks) are kept indefinitely and contain no personal data.

Affiliate clicks

When you click an affiliate link, the destination, affiliate slug, same-site referring path without its query, referring origin, and a keyed hash of your IP are logged server-side. Raw click rows follow the same 90-day retention window; daily slug totals remain after raw rows are purged.

Newsletter signups

If you join the launch waitlist: your email address and optional first name, your consent, the page you signed up from, and a keyed hash of your IP. Your email is encrypted at rest (AES-256-GCM). No email provider is currently connected, so signup does not trigger a newsletter or confirmation email.

Contact messages

If you use the contact form, we collect the category, reply email, message, consent time, source page, and a keyed hash of your IP address. The email and message are encrypted at rest with AES-256-GCM. Keyed message and email hashes support abuse prevention and duplicate detection without storing those values in plaintext. Do not submit medical records, passwords, payment details, or sensitive health information.

Contact messages are kept while they are needed to assess and respond to the inquiry. Decrypted operator exports are temporary working files and are removed or moved to encrypted storage after handling. A verified deletion request can be made through the same contact form, subject to records we must retain for security or legal reasons.

What we never do

  • No cookies, ever, on any page.
  • No advertising identifiers, remarketing pixels, or third-party trackers.
  • No selling, renting, or trading of subscriber data.
  • No health profiles or diagnostic questionnaires. Please do not put sensitive health information in the contact form.

Where data lives

Our server and database are hosted by DreamHost (USA). Backups of the database and the encryption key are kept on the same host; the key is required to decrypt subscriber emails and contact messages.

Your rights

Use the secure contact form for access, correction, or deletion requests. Choose Privacy or data request and use the email associated with the information. We may need to verify control of that email before acting.

Changes

If this policy changes, the version number and date above will update. When an active newsletter exists, material changes may also be announced there.

This is a general-audience privacy notice. It is not legal advice; if you are subject to GDPR, CCPA, or other requirements, review this policy with counsel.