Privacy Policy

Last updated: January 8, 2025

1. Introduction

Picologs ("we", "our", or "us") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.

2. Information We Collect

2.1 Information You Provide

  • Discord Account Information: When you authenticate via Discord OAuth, we collect your Discord user ID, username, and avatar
  • Profile Information: Star Citizen player name, timezone, and friend code
  • Game Logs: Star Citizen game log data you choose to share
  • Group Data: Groups you create, names, descriptions, and avatars

2.2 Automatically Collected Information

  • Connection Data: IP addresses, device information, browser type
  • Usage Data: Pages visited, features used, timestamps
  • WebSocket Data: Connection status, message delivery confirmations, online status

2.3 Desktop Application Data

  • Local Storage: Settings and preferences stored on your device
  • Log Files: Star Citizen game logs are processed locally and only shared if you choose to
  • Friend Lists: Locally stored friend codes and connection status

3. How We Use Your Information

We use the collected information to:

  • Provide, operate, and maintain the Service
  • Authenticate users via Discord OAuth
  • Enable real-time log sharing between friends and groups
  • Display user profiles, avatars, and player information
  • Manage friend relationships and group memberships
  • Send notifications about friend requests and group invitations
  • Improve and optimize the Service
  • Detect and prevent fraud or abuse
  • Comply with legal obligations

4. Data Sharing and Disclosure

4.1 With Other Users

When you add friends or join groups, your profile information (username, player name, timezone, online status) is shared with those users. Game logs are only shared with friends and group members when you actively use the Service.

4.2 With Third-Party Services

  • Discord: For authentication purposes via OAuth (subject to Discord's Privacy Policy)
  • Neon Database: Our database provider that stores user data securely
  • Railway: Our hosting provider for the web and WebSocket servers

4.3 Legal Requirements

We may disclose your information if required by law, court order, or governmental request, or to protect the rights, property, or safety of Picologs or others.

4.4 We Do Not Sell Your Data

We do not sell, rent, or trade your personal information to third parties for marketing purposes.

5. Data Storage and Security

5.1 Where We Store Your Data

  • Database: Neon PostgreSQL (serverless, encrypted at rest)
  • File Storage: Railway persistent storage for uploaded avatars
  • Desktop App: Local storage on your device (settings, logs, friend lists)

5.2 Security Measures

We implement security measures including:

  • Encrypted connections (HTTPS/WSS)
  • Secure authentication tokens (JWT)
  • Database encryption at rest
  • Regular security updates and monitoring

5.3 Data Retention

We retain your data for as long as your account is active or as needed to provide the Service. You may request deletion of your account and data at any time.

6. Your Privacy Rights

You have the right to:

  • Access: Request a copy of your personal data
  • Correction: Update or correct your information
  • Deletion: Request deletion of your account and data
  • Data Portability: Request your data in a machine-readable format
  • Withdraw Consent: Disconnect Discord authentication at any time
  • Opt-Out: Stop sharing logs by disconnecting from the WebSocket server or closing the desktop app

To exercise these rights, please contact us through our Discord community or GitHub repository.

7. Cookies and Tracking

We use cookies and similar technologies for:

  • Authentication: Maintaining your logged-in session (discord_info, discord_token)
  • Preferences: Storing user settings and preferences

We do not use third-party advertising or analytics cookies. You can control cookies through your browser settings.

8. Children's Privacy

The Service is not intended for users under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. By using the Service, you consent to such transfers.

10. Third-Party Links

The Service may contain links to third-party websites (Discord, GitHub, etc.). We are not responsible for the privacy practices of these sites. We encourage you to review their privacy policies.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by updating the "Last updated" date and, where appropriate, providing additional notice. Your continued use of the Service after changes constitutes acceptance of the updated policy.

12. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us through:

  • Our Discord community
  • GitHub repository issues

13. GDPR Compliance (EU Users)

If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):

  • Right to be informed about data processing
  • Right to access your personal data
  • Right to rectification of inaccurate data
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Rights related to automated decision-making

Our lawful basis for processing your data is consent (via Discord OAuth) and legitimate interest (providing the Service).

14. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to say no to the sale of personal information
  • Right to access your personal information
  • Right to request deletion of your personal information
  • Right to equal service and price

Note: We do not sell your personal information to third parties.