Plain-language draft
Research should not become surveillance.
Last reviewed June 20, 2026
Information you choose to provide
Founding-community signups store your name, email, role, camera brand, current operating system, edition interest, and consent choice. Survey responses store the workflow, camera, file-format, hardware, feature-priority, and optional contact information you submit. Contact messages and community ideas store their form contents for administrator review.
Accounts and self-service deletion
Creating an account stores your display name, email, password hash, and newsletter preference. An account lets you submit ideas under your name and review them later. You can update your profile, change your password, remove individual ideas, or permanently delete your account and every idea linked to it at any time from the account page — no request to an administrator is required.
Visitor measurement
The site records visited pages, referral host, campaign tags, broad device/browser/operating-system families, and coarse country/region/city headers when a trusted hosting provider supplies them. Raw IP addresses and full user-agent strings are not retained. A salted one-way hash estimates unique visitors and helps limit duplicate feature votes.
Do Not Track requests are honored. Analytics records expire after the configured retention period (365 days by default).
Email delivery
SendGrid delivers account and project email. Delivery events such as bounced or reported-spam are stored using a one-way recipient hash.
Public and private information
Emails, survey records, waitlist profiles, contact messages, and administrator notes are never publicly displayed. Moderated community ideas may display the submitter name only when the submitter requested public consideration.
Before production
This is implementation-ready draft copy, not legal advice. Add the operator's identity, privacy contact, lawful basis, data-subject process, hosting region, and jurisdiction-specific disclosures before public launch.