Privacy Policy
Last updated: January 2025. This policy describes how APSIAN collects and uses your data.
1. Information We Collect
When you register, we collect your username, email address, password (stored as a secure hash), and optional profile details such as display name, bio, batch year, and branch.
Posts, comments, blog entries, votes, and other content you create are stored on our servers. Media files (images, videos) are stored securely on BackBlaze B2 and served via our CDN.
We automatically collect certain technical information when you use APSIAN: IP address, browser type, referring pages, pages visited, and timestamps. This data is used for security, analytics, and improving the platform.
We use a single HTTP-only session cookie to keep you logged in. We do not use third-party tracking cookies.
2. How We Use Your Information
To provide and maintain the APSIAN service, authenticate you, and display your content to other users as intended.
To show you a personalised feed, recommend communities, and surface content relevant to your interests based on your activity.
To send you account-related notifications (password reset, moderation actions). We do not send unsolicited marketing emails.
To enforce our community rules, investigate abuse reports, and protect the safety of our users.
3. Information Sharing
Your username, profile, posts, and comments are publicly visible. Your email address is never shown publicly.
We do not sell, rent, or share your personal information with third-party advertisers.
We use Supabase (database), BackBlaze B2 (media storage), and Cloudflare (CDN/security). These providers process data on our behalf under strict data agreements.
We may disclose information if required by law, court order, or to protect the rights and safety of users.
4. Data Retention
Your posts, comments, and profile remain on APSIAN for as long as your account is active. Deleted content is removed from public view immediately but may be retained in backups for up to 30 days.
You can delete your account at any time from Settings → Account. This will permanently remove your profile, posts, and associated data.
5. Security
Passwords are hashed using bcrypt. All data is transmitted over HTTPS. Our database uses row-level security policies. We conduct periodic security reviews.
Use a strong, unique password for your account. Do not share your credentials. Log out on shared devices.
6. Your Rights
You can export your posts and profile data by contacting us at privacy@apsian.in.
You can update your profile information at any time from Settings.
You can delete your account from Settings. For specific data removal requests, email privacy@apsian.in.
7. Changes to This Policy
We may update this Privacy Policy periodically. Significant changes will be announced via a site notice. Continued use of APSIAN after changes constitutes acceptance of the updated policy.