Gopheria

Privacy Policy

Updated:

Last updated: 27 August 2026

This notice explains what happens to personal data when you visit gopheria.com. It is written to satisfy Articles 13 and 14 of the General Data Protection Regulation (EU) 2016/679 (“GDPR”).

The short version

Gopheria is a static website. It has no accounts, no login, no comment system, no forms, no advertising and no tracking pixels. It sets no cookies. It does not build a profile of you, does not sell anything, and has nothing to sell about you.

What remains is the unavoidable minimum: a web server has to receive your request in order to answer it, and it keeps a short record of having done so. That is described below.

Who is responsible

The controller for the processing described here is the operator of Gopheria, reachable at:

contact@gopheria.com

Use that address for any request under this notice, including the rights listed in the Your rights section. There is no Data Protection Officer; the site does not meet the criteria in Art. 37 that would require one.

What is processed, and why

1. Technical delivery data (edge logs)

To deliver a page, the hosting infrastructure receives and briefly records:

  • your IP address,
  • the URL you requested,
  • the date and time of the request,
  • your browser’s user-agent string,
  • the referring URL, if your browser sent one,
  • the HTTP response status and the number of bytes served.

Purpose: delivering the page you asked for, keeping the site available, and defending it against abuse such as denial-of-service traffic and automated scraping.

Legal basis: Art. 6(1)(f) GDPR — the legitimate interest in operating a website that works and is not knocked over. You cannot browse the web without this exchange happening; there is no less intrusive way to serve a page.

2. Aggregate audience measurement

The site may run Cloudflare Web Analytics. It is cookieless: it sets no cookie, stores nothing on your device, uses no fingerprinting, and does not follow you between sites or sessions. It reports, in aggregate, which pages were viewed, roughly where in the world from, screen size, and how quickly pages loaded.

No profile is created and no individual visitor is identifiable in the output.

Purpose: knowing which articles are read and whether pages load acceptably.

Legal basis: Art. 6(1)(f) GDPR. Because the measurement is cookieless and stores nothing on your device, it falls outside the consent requirement of Art. 5(3) of the ePrivacy Directive, which is why you are not asked to click anything.

If the analytics beacon is not enabled, no script is emitted at all — the site does not load an inert tracker “just in case”.

3. Email you send

If you write to contact@gopheria.com, your address, your message and anything you attach are processed in order to read and answer it.

Purpose: answering you.

Legal basis: Art. 6(1)(f) GDPR, and Art. 6(1)(b) where your message concerns steps taken at your request.

What is deliberately absent

  • No cookies of any kind. See the Cookie Policy.
  • No accounts, registration, newsletter or subscription.
  • No comment system. Nothing you could post is collected because there is nothing to post to.
  • No advertising, no ad networks, no retargeting.
  • No social media widgets, share buttons that phone home, or embedded video.
  • No third-party fonts. Typefaces are served from this site’s own origin, so reading a page does not announce your visit to a font provider.
  • No cross-site tracking, no fingerprinting, no data brokers.
  • No automated decision-making or profiling within the meaning of Art. 22.

Who else sees the data

Cloudflare, Inc. hosts the site, serves it through its content delivery network, and provides the optional analytics described above. It therefore processes the technical delivery data as a processor on the operator’s behalf, under a data processing agreement.

Where email is used, the provider of that mailbox processes the message in order to store and deliver it.

Nobody else. Data is not sold, rented, traded or shared for marketing.

Transfers outside the EEA

Cloudflare is established in the United States and operates a global network, so processing may take place outside the European Economic Area. Those transfers are covered by the European Commission’s Standard Contractual Clauses under Art. 46(2)(c) GDPR, together with the technical and organisational measures Cloudflare applies. You can request a copy of the relevant safeguards using the contact address above.

How long anything is kept

  • Edge logs: retained by the hosting provider for a short operational period — a matter of days — and then deleted or aggregated. They are not archived by the site.
  • Aggregate analytics: retained as aggregate statistics only. They contain no identifier and cannot be traced back to a visitor.
  • Email: kept for as long as the correspondence is live, and afterwards only where a legal obligation requires it.

Your rights

Under the GDPR you have the right to:

  • access the personal data concerning you (Art. 15);
  • rectify inaccurate data (Art. 16);
  • erasure (Art. 17);
  • restrict processing (Art. 18);
  • data portability (Art. 20);
  • object to processing based on legitimate interest, at any time, on grounds relating to your particular situation (Art. 21).

Write to contact@gopheria.com. You will get an answer within one month, as Art. 12(3) requires.

One honest caveat: because this site stores no identifier for you, an access or erasure request usually cannot be tied to a specific record. Art. 11 GDPR addresses exactly this situation — a controller is not required to acquire additional information purely to identify a data subject. In practice there is very little held about you to access or erase, which is the intended outcome rather than an excuse.

Complaints

If you believe your data has been handled unlawfully, you have the right under Art. 77 GDPR to lodge a complaint with a supervisory authority — in particular in the EU Member State of your habitual residence, your place of work, or where the alleged infringement took place. The list of authorities is published by the European Data Protection Board at edpb.europa.eu.

Children

The site is aimed at professional software developers. It is not directed at children and does not knowingly process data relating to them.

Articles link out to documentation, source code, issue trackers and other people’s writing. Once you follow such a link you are on someone else’s site, under their privacy policy, and this notice no longer applies. Links are checked for relevance, not for the privacy practices of their destination.

Changes to this notice

If this notice changes, the Last updated date at the top changes with it. Material changes will be described in the page itself rather than slipped in silently. Since there is no mailing list, there is no way to notify you directly; the date is the signal.

Contact

contact@gopheria.com

Arrow keys to move, Enter to open.