🔒 Privacy Policy
Last updated: Dec 7th 2025 - changelog
What data do I collect?
By default
- I do not collect, share or sell any data
- I do not log traffic
- I do not use any analytics, tracking or browser fingerprinting
- Cloudflare Proxy is ❌ DISABLED, unless mentioned otherwise
- Services are self-hosted on Oracle Cloud Infrastructure, unless mentioned otherwise
All services adhere to this policy. Any exceptions are listed below:
redlib.r4fo.com and nitter.r4fo.com
- 🔄 Cloudflare Proxy is ✅ ENABLED
status.r4fo.com
- Hosted on GitHub Pages
- GitHub’s privacy policy
How your data is processed
I use the following security tools to protect my infrastructure from abuse and bots:
Anubis: An open-source anti bot solution. It runs entirely on my servers and in your browser, and does not transmit any data to third parties. It generates numbers in your browser and based on that and a few other signals, it decides whether to let a request through or block it. Its purpose is to protect the service from automated bots.
CrowdSec: An open-source security tool that detects malicious traffic. All processing is done locally on my servers and no data is transmitted to third parties. In case of abuse, it may take action (captcha or ban) and report the abusive IP to CrowdSec Cyber Threat Intelligence. Its purpose is to protect the service from exploits, scans, and brute-force attacks. CrowdSec Privacy Policy
Third Parties
- All services are hosted on a server provided by Oracle Cloud Infrastructure. Oracle Privacy Policy
- Statuspage is hosted on GitHub Pages. GitHub Privacy Policy
- Cloudflare is used for CDN and security (only on subdomains where Cloudflare Proxy is enabled). Cloudflare may log traffic that looks suspicious. These WAF logs include: IP Address, User Agent and Query. These WAF logs are discarded after 14 days. Cloudflare Privacy Policy