What is stored
checked against this repository's own route tree, not declared| Item | State | Why |
|---|---|---|
| User accounts | none | There is no auth route, no login and no session in this repository. |
| An email address | stored | An email address, only if you type one into the subscribe form, and only after you confirm it by clicking a link. |
| Page analytics | stored | Anonymous page analytics with the IP address truncated before it is stored. |
| User content | note | Everything on this site is generated from public sources and rendered as static pages; there is no user-generated content that another visitor can see. |
| Row-level security | note | The whole estate runs on one Supabase project with row-level security on; this product's tables are its own. |
Who processes it
4 named, each with its own policy| Processor | For | Why |
|---|---|---|
| Vercel | hosting and edge delivery | vercel.com/legal/privacy-policy |
| Supabase | the database this product's own index is served from | supabase.com/privacy |
| PostHog | product analytics, IP-truncated | posthog.com/privacy |
| Resend | delivering the one email the subscribe form sends | resend.com/legal/privacy-policy |
Reporting something
Write to hello@thecompound.tech. There is no bounty and no form, and a report is read by the person who wrote the code.
The privacy page says what a visit records and how to switch it off.