Privacy Policy
Last updated: 1 September 2026.
What we collect
When a consuming app records an acceptance we store: an opaque external user id, the document slug and version, a SHA-256 hash of the accepted text, source (placement or URL), IP address, user agent, and timestamp.
Why
We keep this ledger so you can answer data-subject access requests and prove which text a person agreed to.
Retention
Acceptances are append-only. Administrators can export them as CSV. Deleting a subject from a consuming app does not automatically erase hub records unless you request deletion.