Information we do not request
Do not submit Social Security numbers, dates of birth, portal passwords, payment-card details, fingerprints, patient records, background-check documents, license applications, or other confidential identifiers.
Contact-form information
If you submit the contact form, the site stores your name, email address, optional page URL, message, submission time, and a one-way hash used for abuse prevention. Submissions are stored in a web-protected server directory and are accessible to an authenticated administrator. They are used only to review the report and respond when necessary.
Retention
Contact submissions should be deleted after the correction or inquiry is resolved and no later than 90 days unless a longer period is reasonably required for security, legal, or audit purposes. The administrator can delete submissions from the CMS.
Server and security logs
The hosting provider may process ordinary access, error, and security logs, including IP addresses and user-agent information. Rate-limit files store a one-way hash rather than the raw IP address.
Cookies
Public pages do not require advertising or profiling cookies in this package. A secure session cookie is used for contact-form CSRF protection and CMS authentication. It is HTTP-only and uses SameSite protections.
Third-party links
Official external websites have their own privacy practices. Review the destination policy before creating an account or submitting information.
Your request
To request access to or deletion of a contact submission, use the contact form and provide the email address used in the original report. We may need to verify the request without asking for sensitive licensing data.