Privacy Policy

How Your Data is Collected, Used, and Protected

Privacy Policy

Last Updated: December 2024

Effective Date: December 2024


BY ACCESSING THIS WEBSITE, YOU AUTOMATICALLY CONSENT TO:

  • ALL cookies and tracking technologies used by this website and third-party services
  • ALL data collection practices described in this policy
  • International data transfers without restriction
  • Third-party data collection by Google, Cloudflare, and all integrated services

This website does not require cookie banners. Your use of this website IS your consent. If you do not agree, leave immediately.


This personal learning blog uses cookies and analytics without requesting explicit consent. By visiting, you agree to data collection by Google Analytics, Cloudflare, GitHub Pages, and embedded third-party services. While you have legal rights under GDPR/CCPA that cannot be waived, you are responsible for managing your own cookie preferences through your browser. I don’t sell your data directly, but third parties may track you extensively.


This Privacy Policy explains how I, Samir Paul (“I,” “me,” or “my”), handle information when you visit my personal learning websites at samirpaulb.github.io, samir.pages.dev, or any associated domains (the “Website”).

This is a personal blog, not a commercial service. I respect your privacy and comply with applicable data protection laws including GDPR, CCPA, and others.


When you visit the Website, the following information may be collected automatically:

By Hosting Providers (GitHub Pages, Cloudflare):

  • IP address and derived location (country, region)
  • Browser type and version
  • Operating system
  • Referring website
  • Pages visited and time spent
  • Date and time of visit

By Analytics Services (Google Analytics):

  • Anonymous usage statistics
  • Traffic sources and navigation paths
  • Device information (type, screen size)
  • Engagement metrics (scroll depth, clicks)
  • Demographic estimates (age range, interests)

Contact and Newsletter Forms: When you use the contact form or newsletter subscription:

  • Data Collected: Name, email, message content, subscription preferences, IP address, timestamp, phone number (optional)
  • Storage: Cloudflare D1 and KV databases with military-grade encryption
  • IP Address Storage: Your IP address is stored in KV storage for bot detection and misuse prevention
  • Verification: Timestamp and IP address are included with form submissions to verify authenticity when responding
  • Encryption: AES 256/512-bit encryption with GNU Privacy Guard (GPG)
  • Access: Only the website owner has the decryption key (itself protected by additional encryption)
  • Processing: All data processed in-memory only, auto-purged after 1 second
  • Unsubscribe: Every newsletter email includes an unsubscribe link in the footer
  • Consent: By submitting forms, you agree to this Privacy Policy

Other Interactions:

  • Email communications
  • Comments or feedback (if features are enabled)

The Website uses cookies and similar technologies:

Essential Cookies: Required for basic website functionality Analytics Cookies: Used by Google Analytics to understand usage Third-party Cookies: Set by embedded content (YouTube videos, social media) Tracking Technologies: Including pixels, beacons, fingerprinting, and local storage Security Verification: Cloudflare Turnstile for bot detection (managed entirely by Cloudflare)

IMPORTANT: All cookies are set automatically without requesting consent. By accessing this website, you have already consented to all cookies. You can control cookies through your browser settings if you wish to limit them.


  • Website Operation: To deliver website content and maintain functionality
  • Analytics: To understand how people use the Website and improve it
  • Security: To protect against abuse and maintain website integrity
  • Bot Detection: IP addresses are collected to prevent automated abuse and spam
  • Verification: Timestamps and IP addresses help verify form submission authenticity when responding to users
  • Legal Compliance: To comply with applicable laws

I process data based on:

  • Legitimate Interests: For all website operations, analytics, and improvements
  • Implied Consent: Your continued use of the website after being informed of data practices
  • Legal Obligation: When required by law

Note on Consent: By choosing to access and continue using this website despite clear notice of data collection practices, you provide implied consent for all processing activities. This website treats your voluntary access as affirmative consent.


Data is processed by these third-party services:

GitHub Pages (Hosting)

  • Processes: Website delivery, access logs
  • Privacy Policy: GitHub Privacy

Cloudflare (CDN, Security, and Database)

  • Processes: Content delivery, DDoS protection, analytics
  • Form Data Storage: D1 and KV databases (fully encrypted, no Cloudflare access)
  • Turnstile Verification: Bot detection system (data processed by Cloudflare, website owner has no access)
  • Rate Limiting: Native rate limiting to prevent abuse (managed by Cloudflare)
  • Privacy Policy: Cloudflare Privacy
  • Note: Turnstile and rate limiting data are governed by Cloudflare’s terms and privacy policy

Google Analytics (Analytics)

  • Processes: Usage statistics, behavior analysis
  • Privacy Policy: Google Privacy

Important: Contact and newsletter form data is stored with end-to-end encryption. No third party, including Cloudflare, can access the encrypted data.

I may share information when:

  • Required by law or legal process
  • Necessary to protect rights and safety
  • You explicitly consent to sharing

I do NOT:

  • Sell your personal information
  • Share data for marketing purposes
  • Use data for targeted advertising

You have the right to:

  • Access your personal data
  • Rectify inaccurate data
  • Erase your data (“right to be forgotten”)
  • Restrict processing
  • Data portability (receive your data in a portable format)
  • Object to processing
  • Withdraw consent at any time
  • Lodge a complaint with your data protection authority

You have the right to:

  • Know what personal information is collected
  • Delete your personal information
  • Opt-out of sale (though I don’t sell data)
  • Non-discrimination for exercising rights

To exercise any of these rights:

  • Contact me through the contact form
  • Include your specific request and jurisdiction
  • I’ll respond within 30 days (GDPR) or 45 days (CCPA)

Important: These rights are mandatory under law and cannot be waived.


The Website uses services based in the United States. Data transfers are protected by:

  • Standard Contractual Clauses (for EU data)
  • Appropriate safeguards as required by law
  • Your awareness and consent to these transfers

  • Analytics data: Retained for up to 26 months
  • Server logs: Retained for 90 days
  • Contact form submissions: Until you request deletion
  • Newsletter subscriptions: Until you unsubscribe
  • IP addresses: Stored with form submissions for verification and security
  • Cookies: Vary by type (session to 2 years)

Automatic Data Deletion:

  • When you unsubscribe via the link in newsletter email footers, your data is automatically removed from all databases and backups
  • Form data can be deleted upon request through the contact form
  • IP addresses are deleted along with associated form data

I use industry-leading security measures including:

Standard Security:

  • HTTPS encryption for data in transit
  • Security features provided by GitHub Pages and Cloudflare
  • Regular updates and security monitoring

Advanced Form Data Protection:

  • Military-grade encryption: AES 256/512-bit encryption with GNU Privacy Guard (GPG)
  • Secure storage: Encrypted data in Cloudflare D1 and KV databases
  • Zero logging: No server logs, all processing in-memory only
  • Auto-purging: Data cleared from memory after 1-second serverless timeout
  • Backup protection: Automated encrypted backups
  • Access control: Decryption key held only by website owner, protected by additional encryption

However, no method of transmission over the internet is 100% secure.


This Website is not directed at children under 13 (or 16 in the EU). I do not knowingly collect personal information from children. If you believe a child has provided information, please contact me.


The Website contains links to and embedded content from third parties. I’m not responsible for their privacy practices. Please review their privacy policies:

  • YouTube/Google services
  • Social media platforms
  • External websites linked from content

The Website currently does not respond to Do Not Track signals. You can control tracking through:

  • Cookie preferences
  • Browser settings
  • Privacy-focused browser extensions

I may update this Privacy Policy occasionally. Changes become effective when posted. The “Last Updated” date shows the latest revision.


For privacy-related questions or to exercise your rights:

Contact: Contact Form

Data Protection Authorities:


This website automatically deploys ALL cookies without requesting permission:

Strictly Necessary

  • Required for website to function
  • Set immediately upon visit

Analytics

  • Google Analytics (_ga, _gid, _gat) - Set automatically
  • Cloudflare Analytics - Set automatically
  • No consent banner displayed
  • Tracks all visitor behavior

Third-Party

  • Set by embedded content (YouTube, social media)
  • Governed by third-party privacy policies
  • Track across websites without restriction
  • May include advertising and remarketing cookies

This website does not provide cookie opt-out mechanisms. By visiting, you have consented. To limit tracking, you must:

  1. Configure your browser to block cookies
  2. Use privacy extensions (uBlock Origin, Privacy Badger)
  3. Use private/incognito browsing mode
  4. Install Google Analytics Opt-out Browser Add-on
  5. Use a VPN or Tor browser
  6. Simply not visit this website

Your browser’s “Do Not Track” signals are ignored by this website and third-party services.


This Privacy Policy aims to comply with:

  • GDPR (EU Regulation 2016/679)
  • UK GDPR (Data Protection Act 2018)
  • CCPA/CPRA (California Consumer Privacy Act)
  • Other applicable privacy laws

Your rights under data protection laws cannot be waived. However:

  • You must actively exercise these rights by contacting me
  • I rely on your implied consent through continued website use
  • You are responsible for managing your own privacy preferences
  • Third-party data collection is beyond my control
  • By using this website, you accept the risks of data collection

For EU/UK Residents:

  • Legal basis required for all processing
  • Explicit consent for cookies
  • Data transfers use Standard Contractual Clauses

For California Residents:

  • I don’t sell personal information
  • You can opt-out of tracking
  • Equal service regardless of privacy choices

For Other Jurisdictions:

  • I comply with applicable local privacy laws
  • Contact me for jurisdiction-specific questions

This personal learning blog uses extensive tracking and analytics. By accessing this website, you have already consented to all data collection by this website and third parties including Google, Cloudflare, and others. No cookie banner is displayed because your visit constitutes consent. While you retain legal rights under GDPR/CCPA, you are responsible for protecting your own privacy through browser settings and privacy tools. Third parties may track, profile, and share your data extensively. If you don’t agree with these practices, don’t use this website.


BY CONTINUING TO USE THIS WEBSITE:

  • You accept ALL data collection practices described above
  • You consent to ALL cookies and tracking technologies
  • You acknowledge that third parties collect and may sell your data
  • You understand I am not liable for any data practices
  • You take full responsibility for your privacy choices

Your only way to refuse consent is to leave this website immediately and not return.


If you have accessed this website, you have already agreed to these terms.

© 2024 Samir Paul. All rights reserved.