Privacy Policy

Who I am

This site is maintained by Eldan Goldenberg. You can contact me by email: eg @ this domain.

What personal data I collect and why

Comments

If you leave a comment, the site will collect the data you enter in the comments form, together with your IP address and browser user agent string.

An anonymized string created from your email address (also called a hash) may be provided to the Gravatar service to see if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. If you post a comment and do have a Gravatar acount, your image will be displayed with the comment.

If you leave a comment you may opt-in to saving your name, email address and website in cookies. These are for your convenience so that you do not have to fill in your details again when you leave another comment. These cookies will last for one year, and are only set if you opt-in.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website. I do my best to host my own copies of static files, both to control this and to protect against link rot. However, I do not have my own video hosting service, so if I embed any videos they are guaranteed to be from a third-party service. The home page also includes automatically updated embeds of content hosted by Flickr and Instagram.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracing your interaction with the embedded content if you have an account and are logged in to that website.

Analytics

This site tracks the referrers that people came to it from, and the outbound clicks that are made. Because I am very vain, I check these statistics more often than is healthy, especially for a site that has about 5 readers. I do not share this data with anyone, nor do I do any fancy profiling with it – I’m just looking at which posts get views, where those views come from, and what outbound links get clicks.

Who I share your data with

Only Gravatar, as discussed above.

How long I retain your data

If you leave a comment, the comment and its metadata are retained indefinitely. This is so WordPress can recognize and approve any follow-up comments automatically instead of holding them in a moderation queue.

What rights you have over your data

If you have left comments, you can request to receive an exported file of the personal data I hold about you, including any data you have provided to me. You can also request that I erase any personal data we hold about you. This does not include any data I am obliged to keep for administrative, legal, or security purposes.

Where I send your data

Nowhere.

Additional information

How I protect your data

I take all the precautions I know how to take, including regular software updates, up-to-date SSL configuration, and a few added security plugins. However, it is important to understand that simply because so many websites use it, WordPress is a very regular target of hackers. I do my best, but can not guarantee that this site will never be hacked.

What data breach procedures we have in place

In the event of a data breach, I will announce it on the blog, together with a description of what I’ve done to fix it.

What third parties I receive data from

Only Gravatar, and then only the avatars themselves.

What automated decision making and/or profiling I do with user data

None.

Likely data leakage to third parties

This site’s home page embeds content hosted on Flickr and Instagram, so both of those sites will receive data when you visit that page. I have enabled the header to opt out of Google’s FLoC (Federated Learning of Cohorts), though I don’t know how completely we should trust them to respect that indefinitely into the future, so I recommend simply avoiding Chrome altogether unless/until Google drops FLoC.