Privacy
Maya keeps the bare minimum needed to work: an email address to sign you in, a display name to sign your contributions. Nothing else, and nothing that goes anywhere else.
This English text is provided for convenience. The French version of this document is the only legally binding one, and prevails in the event of any discrepancy.
What is kept
For your account: your email address, a display name you choose, your interface language, the date the account was created and the date you last signed in.
For your contributions: the recipes you post and the ratings you leave. They are public and signed with your display name — never with your address.
For signing in: the single-use code emailed to you is stored as a hash, never in clear text, along with the IP address that requested it. Those rows are erased after twenty-four hours.
What is not kept
No passwords: sign-in uses a single-use code, so there is nothing to leak.
No advertising trackers, no third-party service loaded into your pages, nothing sold. Maya sets no cookies, not even for the traffic measurement described below — your session lives in your browser’s local storage and disappears when you sign out.
No data is sold, rented, or passed to a third party for commercial purposes.
Traffic measurement
Maya counts its visits with Umami, open-source software installed on our own server — not a third-party service. The measurement script and the address receiving the statistics are served by this domain: no request goes anywhere else, and nobody else sees your visit.
No cookie is set and no identifier is stored on your device. To tell two visits apart, a fingerprint is computed from your IP address and your browser, mixed with a secret value that changes every night. The IP address is used for that computation and then forgotten: the database schema has no column in which to store it.
The consequence is worth stating, because it is also a limit: coming back tomorrow counts you as a new visit, and nothing can connect the two. The fingerprint is moreover specific to each site — moving from Maya to another SubAlpine product produces two unrelated identifiers.
Recorded are the pages viewed, the timestamp, the site you came from where applicable, the browser, the operating system, the device type, the screen size, the language and an approximate location (country, region, city). Neither your IP address nor your account identifier. Retention: twenty-five months at most.
Server logs
Independently of the measurement above, the web server keeps technical logs, as every server does. Each request leaves a line: your IP address, the date, the address requested, the response code, your browser, and the site you came from where applicable.
They serve security, fault diagnosis and raw volume measurement — not tracking you. They rest on our legitimate interest in running and protecting the service.
They are kept for fourteen days, then erased automatically by rotation. Together with the code requests described above, these are the only two places your IP address is written: Umami writes it nowhere.
Session recording, which does ask for your consent
Maya can record what you do on screen — pointer movements, scrolling, typing — to understand where the site gets stuck. Displayed text is masked as it is captured, but the technique remains of a different nature from the counting above: no exemption applies to it, so it rests on your consent.
Nothing starts without your explicit consent, and this is not a declaration of intent: the recording script is a separate 190 KB file, and until you accept, it is not even downloaded. Declining therefore does not mean “collect then discard” — there is nothing to discard, and declining also spares you the download.
If your browser sends Global Privacy Control or Do Not Track, you are never asked: you have already answered.
Recordings are kept for thirty days, then erased automatically. Withdrawing is exactly as simple as consenting and is done at the foot of this page, without an account — it takes effect immediately, the page reloading to interrupt any capture in progress.
Why, and on what basis
The email address is used to authenticate you: without it there is no account, no attribution of contributions and no “one review per person” — which would leave the rating system meaningless. This is performance of the service you request by creating an account.
The IP address of code requests is used to rate-limit them. Without that counter, a single machine could trigger thousands of emails to third-party addresses in our name. This is a legitimate interest, and the retention period is the shortest that lets the counter work.
For how long
Sign-in codes and the associated IP addresses: twenty-four hours.
Web server logs: fourteen days.
Sessions: thirty days, or until you sign out.
Your account: for as long as you keep signing in. After twenty-four months without a sign-in, an email warns you; if we hear nothing back, the account is deleted thirty days later. Signing in again cancels the notice. Keeping an email address for someone who never returns serves no purpose — that, and not an internal policy, is what sets this duration.
Your recipes: they do not leave with the account. Whether you delete it yourself or it is purged, they stay online, detached from their author.
Deleting your account
Deletion happens from the “Your account” screen, with no request and no delay. It erases your email address, display name, sessions and every review you have written — the ratings of the recipes concerned are recomputed immediately without your votes.
Your recipes stay online, made anonymous. Others rely on them and have rated them: erasing them would take away knowledge the community has confirmed. If you want a recipe gone, delete it before closing your account — the screen reminds you.
Your rights
You have the right to access, rectify, erase, restrict and object to the processing of your data, as well as the right to data portability. The “Your account” screen covers most of it without going through us; for anything else, write to contact@subalpine.it.
You may also lodge a complaint with the French data protection authority, the CNIL (www.cnil.fr).
Where the data lives
Data is hosted in France, at OVH SAS, 2 rue Kellermann, 59100 Roubaix, France. Traffic to and from the site is encrypted (HTTPS). It does not leave the European Union.
Help improve the site
Session recording captures your pointer, your scrolling and your typing. It stays off until you allow it, and you can change your mind here at any time.
Stopping reloads the page. Recordings already sent remain until they are erased automatically, thirty days later.