codema.in

Create a privacy policy for codema.in

PP Pirate Praveen Public Seen by 114

Many users are reluctant to join codema.in since it does not have a privacy policy now https://mastodon.social/@canard164/113046598647356480

I think we should create a privacy policy. Any volunteers?

PP

Poll Created Fri 30 Aug 2024 10:01AM

Would you volunteer to create a privacy policy for codema.in? Closed Sat 21 Sep 2024 10:00AM

What is the team, working group or event you are inviting people to?

Create a privacy policy for codema.in

Why is this important?

Many new people are reluctant to join codema.in (many people complained to me when I asked them to join https://codema.in/debphoshfund group). One example https://mastodon.social/@canard164/113046598647356480

What are you asking people to do?

Create a privacy policy, look at loomio.org and poddery.com privacy policies https://poddery.com/privacy.html and take relevant points.

Select 'Accept' to participate!

Results

Results Option Voters
Accept 2 S KVM
Decline 0  
Undecided 260 AP V K RD VT VKJ HM AM NE D AB A S B NF RV JKJ S N RD

2 of 262 people have participated (0%)

PP

Pirate Praveen Sat 31 Aug 2024 10:51AM

@Stultus thanks for volunteering. Consider these requirements https://mastodon.social/@canard164/113056019288778524 as well.

In Codema.in, I expect at least the e-mail address, maybe profile information, maybe IP address if you are logging that...
Then I expect to find why you collect each personal data listed. Then how it is stored and for how long. And how I can delete it.

S

Stultus Sun 1 Sep 2024 12:15AM

I need the following details

1. Toolchain: List all systems involved in a request-response cycle, including the full set of components such as Nginx, Application servers, Redis (or any message broker), Databases (e.g., MariaDB, PostgreSQL), Log aggregators (if any), error tracking systems (e.g., Sentry), analytics tools (e.g., Google Analytics), etc.

2. Personal Data Collection: Identify any data collected at any point that can be attributed to a person, such as name, username, email address, phone number, IP address, browser information, etc.

3. Purpose of Data Usage: Specify the purposes for which the above-mentioned personal data is being used.

Who can help me with these details?

PP

Pirate Praveen Tue 10 Sep 2024 8:42AM

@Stultus we use docker image of loomio cc @Akshay keeps it updated (thanks!) We collect email address, probably ip and browser info (but not sure about how long they are stored - should be default settings of loomio). email is used to authenticate users and send them updates that they opt in for (each group or thread has settings to choose how frequent or under what triggers they get notified).

NE

Nandakumar Edamana Fri 6 Sep 2024 2:28PM

Partially related: PrivacyBadger detects a potential tracker from secure.gravatar.com on codema.in.

NE

Nandakumar Edamana Fri 6 Sep 2024 2:32PM

@Pirate Praveen So is it the fact that our privacy policy couldn't simply be a "we don't collect any personal info, and we don't have any components or collaborations that do"? (Except maybe email of course). Is there any mandatory logging required by the law? Any technical dependency on external services?

PP

Pirate Praveen Tue 10 Sep 2024 8:38AM

@Nandakumar Edamana we do collect email address to create account. Software logging we need to investigate and document or change. I'm not aware of legal requirements, but good to check with someone like sflc.in

PP

Pirate Praveen Tue 10 Sep 2024 8:43AM

@Kannan V M thanks for volunteering, please coordinate with @Stultus and @Akshay