Privacy Policy
This Privacy Policy explains what information mourn.wtf collects, how we use it, and the choices you have. By using the Service, you agree to the practices described here.
1. Information we collect
We aim to collect only what we need to run the Service:
- Account information — your username and email address. Your password is never stored in readable form; it is protected with a one-way cryptographic hash (PBKDF2).
- Content you provide — your profile details, links, uploaded images, and any music or media you add.
- Technical data — limited log data such as your IP address, which we use for security and to enforce per-network account limits.
- Session data — a session token stored to keep you logged in (see Cookies below).
2. How we use your information
- To create and maintain your account and display your profile.
- To operate features like image hosting, links, and custom domains.
- To keep the Service secure and prevent abuse, spam, and fraud.
- To respond to support requests and communicate about your account.
3. Cookies & sessions
When you log in, we set a secure, HttpOnly session cookie so the Service can recognize you on future requests. This cookie is essential for logging in and cannot be read by client-side scripts. We do not use advertising cookies.
4. Third-party services
We rely on a small number of trusted providers to run mourn.wtf:
- Cloudflare — hosting, content delivery, and bot protection (Turnstile). Requests to the Service pass through Cloudflare's network.
- Discord — our community and support server, and how Premium purchases are currently arranged. Any information you share there is governed by Discord's own policies.
These providers process data on our behalf or under their own privacy policies. We do not sell your personal information.
5. Data retention
We keep your account information and content for as long as your account is active. Session tokens expire automatically after a set period. If you delete your account, we remove your associated profile and content, though some limited records may be retained where required for legal or security reasons.
6. Security
We take reasonable measures to protect your data, including hashing passwords and serving the Service over HTTPS. No system is perfectly secure, but we work to safeguard your information and limit what we collect.
7. Your choices & rights
You can update your profile information at any time, and you may request access to or deletion of your account data by contacting us. Depending on where you live, you may have additional rights under laws such as the GDPR or CCPA; we will honor valid requests as required by applicable law.
8. Children
mourn.wtf is not directed to children under 13 (or the minimum age of digital consent in your country). We do not knowingly collect personal information from children. If you believe a child has provided us information, please contact us and we will remove it.
9. Changes to this policy
We may update this Privacy Policy over time. Material changes will be reflected by updating the "Last updated" date above. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.
10. Contact
For privacy questions or requests, contact us at support@mourn.wtf or via our Discord.