EMBERLEAF
Emberleaf

Privacy policy

Collect what the service needs, expose only what the member chooses.

Data collected

Account details, optional profile information, content, inventory and journal records, security events, and limited technical logs are used to operate and protect Emberleaf.

Your controls

Profiles, posts, journals, and humidors support audience controls. Purchase prices and private notes remain private unless you explicitly change their visibility.

Advertising

First-party campaign measurement uses frequency caps, session and IP hashing, broad device category, and general region. Emberleaf does not expose private member activity to advertisers.

Retention and deletion

Soft deletion supports recovery and moderation. Operators should configure a documented retention period and honor legally required access or deletion requests.

Security

Passwords are hashed, secrets remain in environment configuration, uploads are validated, sensitive administration is authorized and audited, and HTTPS is required in production.

This installable starter policy must be reviewed by qualified counsel and adapted to the operator’s jurisdiction before public launch.