Privacy Policy
Effective 4 August 2026 · [registered legal business name — pending]
This policy explains what QMetra collects, why we collect it, who processes it on our behalf, and the choices you have. It applies to qmetra.com and the QMetra service.
Our starting position
QMetra publishes anonymous counts. To keep those counts honest we have to know that a real, unique-enough person is behind each one — which means we necessarily collect some personal information. We collect the least we can, we separate it from your votes, and we do not sell it.
Information we collect
Information you give us
- Email address — to create and recover your account.
- Nickname — the public handle shown when you publish a question.
- Mobile phone number — used to send a one-time verification code and to enforce one account per number. See Messaging Terms.
- Password — stored only as a salted hash by our authentication provider. We never see or store it in readable form.
- Questions you publish — public by design, attributed to your nickname.
Information collected automatically
- IP address — checked at registration against an IP-reputation service to refuse VPN, proxy, datacentre and Tor traffic.
- Device fingerprint — a signal derived from your browser and device, recorded at registration so that mass account creation is detectable.
- Essential cookies — the session cookie that keeps you signed in. We do not use advertising or cross-site tracking cookies.
How your votes stay anonymous
Your identity record and your votes are held apart on purpose. Identity information lives in a separate store that is sealed at the database level and is never publicly readable. A vote record carries no reference to your account. Instead, the right to vote once on a question is proved by a one-way token derived on our servers with a secret key that never leaves them and is never stored alongside the data.
The practical effect: the published result cannot be reversed into who voted for what by anyone reading the site. It is not a claim of mathematically provable anonymity from us as the operator — we say so openly on the verification section of our home page rather than implying more than we can deliver.
How we use information
- To create, secure and recover your account.
- To verify that a real, live human is registering — the network, phone, device and challenge checks described on our home page.
- To enforce one vote per verified account per question at the database level.
- To detect, investigate and block abuse and manipulation.
- To respond to you when you contact us.
- To comply with legal obligations.
We do not use your information to build advertising profiles, and we do not run behavioural advertising.
SMS and text messaging
No mobile information is shared with third parties or affiliates for marketing or promotional purposes. Text-messaging originator opt-in data and consent are not shared with any third parties.
Your mobile number is used for one purpose: sending the one-time verification code you request when you create an account, and keeping one account per number. We do not send marketing texts. Your number is passed to our SMS delivery provider solely to deliver that code. Full details, including frequency, cost and opt-out, are in the Messaging Terms.
Service providers
We share personal information only with the processors that run the service, and only as far as each needs to do its job:
- Supabase
- Database, authentication and server-side functions. Holds account, identity and vote data.
- Vercel
- Application hosting and content delivery.
- Twilio
- Delivery of one-time verification codes by SMS. Receives your mobile number for that delivery only.
- Cloudflare
- The human-verification challenge shown during sign-up and sign-in.
- IPQualityScore
- IP-reputation lookup at registration to refuse VPN, proxy, datacentre and Tor traffic.
- Fingerprint (FingerprintJS)
- Device-signal generation used in the anti-abuse checks.
- Optional social sign-in, if you choose to register that way. We receive your email address and basic profile from Google; we do not receive your Google password.
We do not sell personal information, and we do not share it with third parties for their own marketing.
Retention
Account and identity information is kept while your account is active. When you delete your account we remove your identity record and profile. Because votes carry no link to your account, previously cast votes remain in the anonymous totals and cannot be individually identified or withdrawn — removing them is not technically possible without the very link we deliberately do not keep.
Your rights
Depending on where you live, you may have the right to access, correct, export or delete your personal information, to object to or restrict certain processing, and to withdraw consent. To exercise any of these, write to [support email address — pending]. We will not discriminate against you for exercising them.
Children
QMetra is not intended for children under 13, and we do not knowingly collect their information. If you believe a child has given us personal information, contact us and we will delete it.
International transfers
Our providers may process information in countries other than yours, including the United States. Where required, we rely on appropriate safeguards for those transfers.
Security
Access to identity information is restricted at the database level rather than only in application code. Signing keys and vendor credentials are held in server-side secret storage, never in the browser and never in our source code. No system is perfectly secure, and we will not claim otherwise.
Changes
If we change this policy we will update the effective date above and, for material changes, notify registered users by email.
Contact
[registered legal business name — pending]
[street address — pending], [city — pending], [state / region — pending], [postal code — pending], [country — pending]
[support email address — pending]
[support phone number — pending]

