Adept privacy
Check before publishing. Replace every […]. The text below describes exactly what this site's code actually does — it was not pulled from a generator. If you add anything (analytics, a real ad network, a newsletter), it stops being accurate. Written against Swiss data protection law (nFADP/DSG); since ad traffic and any EEA/UK/CH visitors are in scope, GDPR concepts (Art. 6 legal bases, the rights below) are kept as a superset so the page holds up for both audiences. Template, not legal advice.

Privacy policy

1. Controller

[First name Last name], [Street], [Postal code, City], Switzerland. Email: [[email protected]]. Full details in the legal notice.

2. Server logs

When the site is loaded, the server processes the technically necessary connection data (IP address, timestamp, requested address, status code). Delivery is not technically possible without this. Legal basis: legitimate interest in operating and securing the service (Art. 6(1)(f) GDPR / equivalent nFADP ground). [Enter hosting provider, e.g. Hetzner Online GmbH — a data processing agreement should be in place with them.]

3. Account

An account is optional. Everything except the leaderboard works without one. Stored if you create one: username, email address, display name, registration time, last login time, and your game state (streak, points, rounds played, portfolio, saved calculations, favourited switches, group memberships). Legal basis: performance of the contract you enter into by registering.

  • The password is never stored in plain text — only a scrypt hash with a per-account salt.
  • The email address is used only as a login identifier. No email is ever sent; the site has no mail-sending capability. There is accordingly no password-reset link, only a recovery code issued once at registration.
  • Username and display name are public once you appear on the leaderboard. Choose them accordingly.

4. Session cookie

After logging in, a cookie named adept_session is set: a random value with no embedded meaning, HttpOnly, SameSite=Lax, and Secure when served over HTTPS, valid for 30 days. It exists solely to keep you signed in and is therefore strictly necessary — no consent is required for it. It is deleted on logout. No cookie is set if you are not signed in.

5. Browser storage (localStorage)

Game state, your switch shortlist, and your advertising choice are stored locally in your browser so the site works without an account. This data never leaves your device unless you sign in, at which point your game state is attached to your account. You can clear it at any time through your browser's settings.

6. Advertising

No advertising is currently being served. The ad slots on this site are empty placeholders; no ad network is integrated, no ad scripts are loaded, and no advertising cookies are set. The consent dialog controls exactly this switch — until you consent, it stays off.

[Once an ad network is integrated, this section needs: the provider's name, the category of recipients, the legal basis (consent), the retention period of any cookies set, and, for US-based providers such as Google, a note on the international data transfer and its safeguard (e.g. EU-US Data Privacy Framework / Swiss-U.S. Data Privacy Framework).]

7. External services

  • Fonts are served from this server, not from Google. Loading the site makes no request to fonts.googleapis.com or fonts.gstatic.com, and your IP address is never sent there.
  • CoinGecko supplies the crypto prices. The request is made from the server, not from your browser: CoinGecko never sees your IP address. The server polls at most once a minute for all visitors combined.
  • Shop links (Keychron, KBDfans, Divinikey, NovelKeys) are plain links. Nothing loads and nothing is sent unless you click. No affiliate identifiers are included.
  • Nothing else. No analytics, no CDN, no embedded videos, no social-media buttons, no third-party fonts. Loading this site contacts only this server — verifiable in your browser's network inspector.

8. Retention

Account data is kept until you request deletion. Sessions expire automatically after 30 days. Server logs: [ask the host for their retention period and enter it here — 7 to 14 days is typical].

9. Your rights

You have the right to access, rectify, erase, restrict processing of, and receive a copy of your data, and to object to processing (GDPR Art. 15–21 and the equivalent rights under Swiss nFADP). Any consent you have given can be withdrawn at any time for the future — the link for that is in the footer of every page. An informal message to [[email protected]] is enough.

You also have the right to lodge a complaint with a supervisory authority — in Switzerland, the Federal Data Protection and Information Commissioner (FDPIC); EEA/UK visitors may instead contact their local data protection authority. [Confirm and enter the applicable authority.]

10. Last updated

[Enter date]

Legal notice Back to home