Privacy Policy
Last updated: this document is a template — the operator of this server should set an actual date once reviewed.
Overview
This server ("the Service"), reachable at paa.pub, is an instance of Kaiāulu Pa'a, self-hosted software implementing the Solid protocol and ActivityPub. This policy describes what information the Service collects, how it's used, and the choices available to you.
Information We Collect
- Account information. A username, and either a password (stored as a salted hash, never in plain text) or an identity linked via an external sign-in provider (see "Signing in with a Third-Party Provider" below).
- Pod content. Whatever data you choose to store in your Solid Pod — profile information, files, and RDF data. This is your data; the Service stores it on your behalf.
- Activity data. Posts, follows, and other ActivityPub activities you create or receive, to the extent needed to operate the federated social features you use.
- Technical data. Standard web server logs (IP address, timestamps, requested paths) generated by normal operation of the underlying hosting infrastructure.
Signing in with a Third-Party Provider
If you sign in using an external identity provider (for example, via FedCM), the Service receives your name, email address, and a unique account identifier from that provider — solely to create and authenticate your account on this Service. This information is not used for advertising, not sold, and not shared with third parties, except as described under "Federation" below for content you choose to make public or send to other accounts.
Federation
ActivityPub is a federated protocol: if you follow, are followed by, or post content addressed to accounts on other servers, that content is delivered to those servers as part of normal operation. Servers you interact with are operated independently and have their own privacy practices, which this policy does not cover.
How We Use Your Information
Information collected is used only to operate your account, authenticate you, enforce access control on your Pod, and deliver the federation features you actively use. The Service does not use your data for advertising and does not sell it to third parties.
Your Control Over Your Data
You control access to your Pod's contents through its access control settings. You can export a copy of your data or clean up storage from Settings. Contact the administrator (see below) to request deletion of your account.
Data Security
The Service takes reasonable measures to protect stored data, but no method of storage or transmission is completely secure, and no guarantee of absolute security can be made.
Children's Privacy
The Service is not directed at children under 13, and does not knowingly collect personal information from children under 13.
Changes to This Policy
This policy may be updated from time to time. Material changes will be reflected by an updated date at the top of this page.
Contact
Questions about this policy can be directed to the administrator of this instance — see the contact details on their WebID profile.