Consumer Rights Wiki:Privacy policy: Difference between revisions

3.5 Security Services: mentioned Cloudflare ehre. expanded upon in 7.1.4
fixed tables
Line 72: Line 72:


===4.1 Primary Data Retention===
===4.1 Primary Data Retention===
 
{| class="wikitable"
| Data Type | Retention Period | Justification |
|-
|-----------|------------------|---------------|
! Data Type
| Account data (username, email, password) | Indefinitely until deletion request | Necessary to perform contract |
! Retention Period
| Contribution history | Indefinitely | Legitimate interest in maintaining wiki integrity and attribution |
! Justification
| IP addresses in server logs | 30 days | Security and anti-abuse purposes |
|-
| IP addresses in edit history | Indefinitely until deletion request | Attribution and anti-vandalism |
| Account data (username, email, password)
| Analytics data (aggregated) | Indefinitely | Legitimate interest in service improvement |
| Indefinitely until deletion request
| Necessary to perform contract
|-
| Contribution history
| Indefinitely
| Legitimate interest in maintaining wiki integrity and attribution
|-
| IP addresses in server logs
| 30 days
| Security and anti-abuse purposes
|-
| IP addresses in edit history
| Indefinitely until deletion request
| Attribution and anti-vandalism
|-
| Analytics data (aggregated)
| Indefinitely
| Legitimate interest in service improvement
|}


===4.2 Backup and Recovery Schedule===
===4.2 Backup and Recovery Schedule===


| Backup Type | Frequency | Retention Period | Data Included |
{| class="wikitable"
|-------------|-----------|------------------|---------------|
|-
| Daily backups | Every 24 hours | 7 days | Full database, user accounts, contribution history, configuration |
! Backup Type
| Monthly backups | 1st of each month | 6 months | Full database, user accounts, contribution history, configuration |
! Frequency
| Server logs | Continuous | 30 days rolling | Access logs, error logs, security logs |
! Retention Period
! Data Included
|-
| Daily backups
| Every 24 hours
| 7 days
| Full database, user accounts, contribution history, configuration
|-
| Monthly backups
| 1st of each month
| 6 months
| Full database, user accounts, contribution history, configuration
|-
| Server logs
| Continuous
| 30 days rolling
| Access logs, error logs, security logs
|}


'''Important Notes on Backups:'''
'''Important Notes on Backups:'''
Line 135: Line 170:
===7.1 Service Providers (Data Processors)===
===7.1 Service Providers (Data Processors)===


| Service Provider | Data Types Processed | Location | Purpose |
{| class="wikitable"
|-----------------|---------------------|----------|----------|
|-
| '''Hetzner''' | Server infrastructure, web application data | US/EU | Primary hosting infrastructure |
! Service Provider
| '''DigitalOcean''' | Database (all user accounts, contributions), file storage, system backups | USA | Database hosting, storage, backup services |
! Data Types Processed
| '''CloudFlare''' | Analytics data, traffic patterns, security logs, attack mitigation data | USA | DDoS protection, CDN, security analytics |
! Location
| '''hCaptcha''' | IP addresses, interaction data | USA | Spam prevention |
! Purpose
|-
| '''Hetzner'''
| Server infrastructure, web application data
| US/EU
| Primary hosting infrastructure
|-
| '''DigitalOcean'''
| Database (all user accounts, contributions), file storage, system backups
| USA
| Database hosting, storage, backup services
|-
| '''CloudFlare'''
| Analytics data, traffic patterns, security logs, attack mitigation data
| USA
| DDoS protection, CDN, security analytics
|-
| '''hCaptcha'''
| IP addresses, interaction data
| USA
| Spam prevention
|}


====7.1.1 Privacy statement for the service hCaptcha====
====7.1.1 Privacy statement for the service hCaptcha====