Privacy Policy

1. Data Collection & Security

For the safety of this website and its users, we collect and process the following information:

IP Addresses: Your IP address is hashed (anonymized) using SHA-256 for standard verification. If multiple failed login attempts occur, the raw IP address is temporarily stored in a security log to prevent brute-force attacks.

Sessions: We use a temporary session cookie to track whether you have passed the human verification check. This cookie expires after 24 hours of inactivity.

2. Purpose of Processing

The data collected is used strictly for security purposes (Anti-Abuse and Bot Prevention) under the "Legitimate Interests" provision of the GDPR.

3. Data Retention

Temporary Logs: Hashed and raw IP data in our security logs are automatically cleared or reset every 24 hours unless a permanent block is issued due to malicious activity.

Permanent Blocks: If an IP is identified as a persistent threat, it may be permanently added to a server-level blocklist (.htaccess).

4. Your Rights

As this data is used for security and is largely anonymized via hashing, it does not typically fall under personal identifying information. However, you have the right to inquire about data stored regarding your IP address if you believe you have been blocked in error.

Legal Basis for Processing

Pursuant to GDPR Article 6(1)(f), processing your IP address is necessary for our legitimate interests in maintaining the security of our website, preventing unauthorized access, and mitigating Distributed Denial of Service (DDoS) attacks.

Third-Party Disclosure

We do not sell, trade, or otherwise transfer your information to outside parties. All security logs are stored locally on our own server.

Data Protection Officer

If you have questions regarding your data or wish to request the removal of a server-level block, please contact: The Captain.

5. Law Enforcement & Lawful Investigations

We reserve the right to retain and disclose any information, including raw IP addresses and access logs, to comply with valid legal processes, subpoenas, or government requests. Data that would normally be deleted may be preserved indefinitely if it is deemed relevant to a legal investigation.

6. Abuse Reporting & Cooperation

We maintain a zero-tolerance policy for malicious activity, including but not limited to:

  1. Attempted brute-force attacks.
  2. Injection of malicious scripts.
  3. Harassment or illegal content submitted via site forms.

In cases of severe or repeated abuse, we may proactively report the offending IP address and associated activity logs to the relevant Internet Service Provider (ISP) and/or law enforcement authorities.

Verify you agree to the terms above: 6P38QU

Did you read ALL of the terms above? YES