Elite Dangerous Field Manual:Privacy Policy: Difference between revisions

Current answers. Practical procedures. Reliable reference.
Jump to navigation Jump to search
Update privacy policy for cookies, popular links, and Frontier OAuth/CAPI plans
Set server log retention target to 60 days
Line 14: Line 14:
When you visit the site, the web server and Cloudflare may process normal connection and request metadata, including IP address, timestamp, requested URL, response status, user agent, and similar technical information. EDFM uses this information for security, abuse prevention, debugging, uptime, and operational diagnostics.
When you visit the site, the web server and Cloudflare may process normal connection and request metadata, including IP address, timestamp, requested URL, response status, user agent, and similar technical information. EDFM uses this information for security, abuse prevention, debugging, uptime, and operational diagnostics.


Server access and error logs are rotated automatically. The intended operational retention target is about '''30 to 60 days''' unless a longer period is temporarily needed to investigate abuse, security incidents, or outages.
Server access and error logs are rotated automatically. The intended operational retention target is about '''60 days''' unless a longer period is temporarily needed to investigate abuse, security incidents, or outages.


== Cloudflare ==
== Cloudflare ==

Revision as of 21:59, 14 August 2026

How EDFM handles visitor and contributor data. This page is intended to describe the site's actual operation and planned Frontier integration, not a generic template.

Summary

  • EDFM is an independent community project, not an advertising network.
  • EDFM does not sell personal information and does not share personal information for behavioural advertising.
  • EDFM does not use Google Analytics, Meta Pixel, session replay, third-party marketing tags, externally hosted fonts, or advertising cookies at this time.
  • Anonymous reading normally does not require a persistent cookie.
  • Account, editing, upload, anti-abuse, security, and optional site-improvement features do involve limited data collection as described below.

Who operates EDFM

Elite Dangerous Field Manual is operated as an independent community project. It is not affiliated with, endorsed by, sponsored by, or reviewed by Frontier Developments plc. See Elite Dangerous Field Manual:Legal and Trademark Notice.

Information collected automatically

When you visit the site, the web server and Cloudflare may process normal connection and request metadata, including IP address, timestamp, requested URL, response status, user agent, and similar technical information. EDFM uses this information for security, abuse prevention, debugging, uptime, and operational diagnostics.

Server access and error logs are rotated automatically. The intended operational retention target is about 60 days unless a longer period is temporarily needed to investigate abuse, security incidents, or outages.

Cloudflare

EDFM is served through Cloudflare for DNS, TLS, reverse proxying, caching, and security filtering. Cloudflare receives request and connection metadata as part of providing those services. Login and account-creation pages may load Cloudflare Turnstile from challenges.cloudflare.com to reduce spam and abuse. EDFM configures Turnstile without intentionally sending the visitor IP from MediaWiki's server-side Turnstile integration, but Cloudflare will still receive information normally sent by a browser loading a Turnstile challenge. See Cloudflare's privacy policy.

Accounts

If you create or use a local EDFM account, MediaWiki stores account information needed to operate the wiki, including username, password hash, registration timestamp, edit count, account preferences, and, if provided or later enabled, an email address and email verification status.

Email may be used for account recovery, account notices, optional notifications, and possible future newsletters or announcements if EDFM enables those features. Newsletter or marketing-style email, if added later, should be optional.

Public wiki activity

If you edit the wiki, upload files, or post on discussion pages, that activity may be public. Public wiki records can include your username, edit summaries, page histories, uploaded files, comments, timestamps, and other contribution metadata. Public contribution history is part of how a wiki preserves attribution and accountability.

If you later request account removal, EDFM's normal approach is to disable or rename the account where appropriate while preserving public edits, file history, and logs needed for attribution, licensing, security, and wiki integrity.

Uploads

Uploaded files and file pages may include uploader name, upload timestamp, file metadata, descriptions, source/licensing information, and any information the uploader includes. Contributors should avoid uploading images containing real-world personal information, private chat logs, private identifiers, or other people's information without permission. See Elite Dangerous Field Manual:Image Use Policy and Elite Dangerous Field Manual:Screenshot Policy.

EDFM uses first-party, aggregate site-improvement data to power the Trending Guides sidebar.

This includes:

  • daily page-view counts by wiki page;
  • search-to-landing counts that associate a search term with the article a visitor later opens;
  • a cached ranked list of popular/trending pages.

The Trending Guides tables are designed to store page IDs, normalized search terms, dates, and aggregate counts. They are not designed to store visitor IP addresses, account IDs, or usernames.

Search-to-landing attribution uses a short-lived first-party cookie only when site-improvement/analytics cookies are accepted. Page-view counts may continue as aggregate, first-party site functionality even if optional cookies are rejected.

Frontier OAuth and CAPI

Frontier OAuth/CAPI support is planned but not fully active until Frontier approves and activates the application credentials.

When enabled, Frontier login is intended to be an alternative login/register method. EDFM expects to use Frontier authentication data only as needed to sign users in and connect a Frontier identity to an EDFM account. Intended stored or session-handled data may include:

  • a Frontier stable account identifier;
  • commander name;
  • email address, if Frontier provides it and the user authorizes it;
  • access token data held for the login/session flow rather than as a public profile item.

EDFM may also use Frontier CAPI after login to retrieve commander data such as commander name and ship information. Commander and ship information should be user-controlled: users should be able to choose whether commander/ship data is private or public. Ship data is intended to be fetched after login or user action and used for optional profile/personalization features, not sold or shared for advertising.

If EDFM later changes Frontier/CAPI use beyond commander name and optional ship data, this policy and the cookie/data audit should be updated before or alongside that change.

Cookies and local storage

See Elite Dangerous Field Manual:Cookie Policy for the cookie categories, current cookies, and consent controls.

Backups

EDFM keeps operational backups for recovery from mistakes, outages, or security incidents. Data removed from the live site may remain in backups until those backups expire under the backup retention policy. Backup retention should be documented and reviewed periodically.

Third parties

EDFM may link to external websites such as Frontier, Creative Commons, MediaWiki, community tools, and source references. Visiting external links is governed by those sites' own policies.

Contact

For privacy questions or data requests, contact: [email protected].

Changes to this policy

This policy may be updated as EDFM's features change. Material changes should be reflected here and, where appropriate, in Elite Dangerous Field Manual:Cookie Policy and Elite Dangerous Field Manual:Terms of Use.