Privacy Policy
Last updated: 10 July 2026
1. Who we are
PlinthGK is a self-hosted, personal collection tracker for statues and other collectibles. It is run by a single owner-operator, not a company with a dedicated privacy office. If you have any question about this policy or about your data, contact [email protected].
2. What we collect
We collect only what the app needs to run your account and hold your collection:
- Account data — your username, your email address (once you add one), a securely hashed password (argon2id — we never store, log, or can recover the plaintext), the timestamp and version of the policy you consented to, and account-lifecycle timestamps (when your account was created and when it was last active).
- Your collection content — the statues and versions you add, along with prices, deposits, balances, notes, statuses, your app settings, duel/ranking results, any share links you create, and any community tags or votes you contribute to the shared catalog. This includes a simple history of changes to your collection, such as when an item's status changed and the amounts previously recorded, kept so the app can show trends over time.
- Security and audit log — a record of moderation and account-security actions (for example account suspensions, admin overrides, and break-glass password resets), kept to protect the service and its users.
We do not collect payment details, government ID, or any advertising or tracking data. To protect the service from abuse we may briefly record the IP address associated with certain security events (such as failed sign-in, registration, or password-reset attempts).
3. Why we process it (legal bases)
We rely on the following legal bases, as applicable, under the GDPR:
- Performance of a contract — processing your account and collection data is how we provide the service you signed up for; without it the app cannot function.
- Legitimate interests — securing the service, preventing abuse and fraud, and keeping a moderation/security audit trail so the platform stays trustworthy.
- Consent — where we ask for it specifically, such as accepting this policy and our Terms of Service.
4. Who we share it with (processors) and international transfers
We do not sell your data, and we run no advertising or analytics trackers. We do use a small number of processors to operate the service:
- Resend, Inc. (United States) sends transactional email on our behalf — verification links and password-reset links. Resend receives your email address and the content of that message. Transfers to Resend are safeguarded by the EU–US Data Privacy Framework and/or Standard Contractual Clauses, as applicable.
- Cloudflare, Inc. (United States) provides DNS, CDN, and secure-tunnel networking for the service, and may process connection metadata such as your IP address as part of that. Transfers to Cloudflare are likewise safeguarded by the Data Privacy Framework and/or Standard Contractual Clauses, as applicable.
We use no other third-party processors, and we never sell, rent, or trade your personal data.
5. Retention
- Account and collection data is kept for as long as your account exists.
- When you delete your account, that data is erased (see "Retaining the security log" below for the narrow exception).
- Email-verification and password-reset tokens are single-use and are deleted as soon as they are used or once they expire.
- Security/audit-log entries (a record of moderation actions) are kept only as long as necessary to secure the service and meet our legal obligations. When you delete your account, any such entry that references you is pseudonymized — your username is replaced with a placeholder and any free-text note is removed — rather than being kept in the clear.
6. Your rights
Under the GDPR (and equivalent regimes) you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, and the right to receive your data in a portable format. Where processing relies on consent, you may withdraw that consent at any time.
You can exercise most of these rights directly in the app:
- Portability — use Settings → Download my collection to export your collection data in a portable JSON format. For a copy of the account details themselves (such as your email and consent record), contact us using the details below.
- Erasure — use Settings → Delete account to permanently delete your account and its data.
For rectification, restriction, objection, or anything the in-app tools don't cover, contact [email protected]. You also have the right to lodge a complaint with your local data-protection supervisory authority.
7. Retaining the security log after erasure (Art. 17(3) GDPR)
The right to erasure is not absolute. After you delete your account, we retain a minimal, pseudonymized subset of the security/audit log — with your username replaced by a pseudonym rather than left identifiable — where that is necessary to establish, exercise, or defend legal claims, and to keep the integrity of the moderation record intact for the users and content it involved. This exception is deliberately narrow: it does not extend to your collection content, which is erased outright.
8. Cookies
We use a single essential session cookie to keep you signed in. It is required for the app to work and is not used for tracking, advertising, or analytics. We do not use any third-party tracking cookies.
9. Changes to this policy
We may update this policy from time to time, for example as the app gains features or as our processors change. On a material change, we'll bump the policy version and ask you to review and re-accept it before you can continue using the service — that's what the consent screen you may have seen is for.