Skip to content
CifruCifru Community
CatalogForumShareRules
Sign in

Version 2026-08-18

Cifru Community Privacy Policy

This policy applies to the Cifru Community website. The controller is Ionut-Madalin Dumitru. For questions or to exercise your rights, write to support@cifru.eu.

Data processed

For accounts we keep the stable identifier provided by Apple, Google or Facebook, the public alias, optionally the email communicated by the provider, the document acceptances and the account status. For publishing and moderation we keep the templates, versions, voluntarily uploaded screenshots, reviews, reports, decisions and an audit log. Images are rewritten to remove embedded metadata and are published only after moderation. IP addresses and the user agent are turned into keyed hashes for security and abuse limitation; they are not published.

When a Cifru user explicitly reports an AI response or AI-generated draft from the app, the report contains the selected visible generated excerpt, the AI flow/provider identifier and the user's optional note. AI reports are never submitted automatically and do not include source credentials or database rows.

Purposes and legal bases

  • operating the service and administering the account;
  • publishing the requested content and maintaining the catalog;
  • security, abuse prevention and moderation, based on legitimate interest and applicable obligations;
  • complying with legal obligations and handling notices.

We do not use this data for behavioural advertising and we do not sell personal data. Authentication providers process data according to their own policies. Data is hosted on the infrastructure indicated by the controller; international transfers by the login providers are governed by their own legal mechanisms.

Retention

The account and content are kept while the service is active. Security and rate-limiting logs are kept for proportionate periods, normally at most 12 months. Reports and decisions may be kept for up to 3 years to defend rights and legal obligations. When the account is deleted, login identities and acceptances are removed, reviews are withdrawn and templates are withdrawn; data strictly necessary for an obligation or a dispute may be isolated for the legal period.

Rights

You may request information, access, rectification, erasure, restriction, portability and objection, and you may lodge a complaint with the competent supervisory authority. You can start account deletion from the Account page. Requests are sent to support@cifru.eu.

Opening from the Cifru app

When the library is opened from the "Explore the online library" link inside the Cifru iOS or Android app, the address may carry three technical parameters: entry=cifru_app (to render a simplified in-app layout), platform=ios|android (only to select platform-specific wording) and lang (the initial interface language). They affect presentation and language only. They contain no account, user, device, IP or advertising identifier, are validated against fixed allow-lists, are not stored, and are never used for profiling, fingerprinting or individual tracking. Opening the same address from an ordinary browser shows the standard page.

Cookies

We use only the session cookie strictly necessary for authentication and CSRF protection. We do not use advertising or analytics cookies in this version.

This operational document must be reviewed by legal counsel before public launch and adapted to the complete legal identity, providers and periods actually adopted.

Cifru Community

Configurations made by people who use those applications. No passwords, business data or executable code.

TermsPrivacyContributor agreementReport content