zer0fur.me is a private, non-commercial personal website. It does not use analytics, visitor tracking, advertising cookies, or embedded third-party content.
The site mainly provides links to my social profiles, an email contact link, and a small public guestbook.
The person responsible for this website and for personal data processed directly through it is:
Zer0
Thurgau, Switzerland
Email: zer0@zer0fur.me
This Privacy Policy explains how personal data may be processed when you visit zer0fur.me, use the guestbook, or contact me by email.
The website is operated from Switzerland. This Privacy Policy is intended to provide transparency under the Swiss Federal Act on Data Protection (FADP / DSG). Where the EU General Data Protection Regulation (GDPR) applies, the relevant GDPR information and rights are also described below.
The website is hosted by 24fire on infrastructure located in Germany. The website runs as a Docker-hosted LittleLink instance.
I do not intentionally maintain application-level website access logs. However, the hosting provider and underlying network infrastructure may technically process information such as IP addresses, connection times, requested resources, or similar connection data where this is necessary to deliver, operate, protect, or troubleshoot the hosting service.
Any such technical processing by the hosting provider is subject to the provider's own data protection obligations.
Cloudflare is used for DNS services only. The Cloudflare proxy/CDN is not enabled for this website, so normal website traffic is not intentionally routed through Cloudflare's reverse proxy.
Cloudflare may still process technical DNS-related information when DNS requests for this domain are resolved.
More information: Cloudflare Privacy Policy.
This website does not use analytics or visitor tracking services. No Google Analytics, Matomo, Plausible, Umami, or similar analytics service is used.
The public website does not intentionally set cookies and does not use advertising or behavioural tracking technologies.
The website provides a normal mailto: link. If you choose to
contact me by email, I receive the information that you voluntarily send,
such as your email address, message content, and any attachments. This
information is used to read and respond to your message and for necessary
follow-up communication.
Email correspondence is retained only for as long as reasonably necessary for the conversation or purpose for which you contacted me, unless a longer period is required for technical, legal, or security reasons.
Where the GDPR applies, email correspondence is generally processed on the basis of my legitimate interest in communicating with people who contact me (Article 6(1)(f) GDPR), unless another legal basis applies in a particular situation.
The website includes a public guestbook that visitors may use without an account. If you submit a guestbook entry, the name and message you provide are stored and shown publicly on this website unless they are later hidden or deleted for moderation reasons.
To protect the guestbook from spam and abuse, the server applies rate limits and checks submissions against a forbidden-words list. For this purpose, the server creates a one-way HMAC-SHA256 hash from your IP address and user agent together with a private server-side secret. The raw IP address and raw user agent are not stored in the guestbook database for this feature.
If a submission contains a forbidden word, the resulting device hash may be blocked for 24 hours. During that time, additional guestbook posts from the same hash are rejected. Blocks store the hash, reason, creation time and expiry time. Normal accepted post attempts are counted for rate limiting.
Guestbook entries are retained until they are deleted by me or until the guestbook is removed. Temporary blocks expire automatically after 24 hours; technical rate-limit records are kept only as long as needed to protect the service and troubleshoot abuse.
Where the GDPR applies, guestbook processing is based on my legitimate interest in operating a small public guestbook and protecting it from abuse (Article 6(1)(f) GDPR).
zer0fur.me contains ordinary external links to third-party services. These services are not embedded into the website. Simply viewing this page does not intentionally load social-media widgets or content from them.
The website currently links to:
When you click one of these links, you leave zer0fur.me and connect directly to the relevant third-party service. That provider may then process personal data such as your IP address, account information, device information, cookies, or usage data according to its own privacy policy. I do not control that processing.
I do not sell, rent, trade, or commercially share visitor personal data. The website is private and non-commercial.
The website operator is located in Switzerland and the website is hosted in Germany, which is part of the European Economic Area.
If you choose to open an external service such as Bluesky, Discord, GitHub, PayPal, Telegram, or a Cloudflare-related service, the relevant provider may process data in countries outside Switzerland or the EEA. Such processing and transfers are governed by the provider's own privacy policy and applicable safeguards.
Depending on the applicable law and circumstances, you may have rights relating to your personal data, including the right to request information about processing, access your personal data, request correction of inaccurate data, and request deletion where the legal requirements are met.
Where the GDPR applies, you may additionally have rights to restriction of processing, data portability, and objection to certain processing. If processing is based on consent, you may withdraw that consent for the future.
To exercise a privacy right or ask a privacy-related question, contact zer0@zer0fur.me.
In Switzerland, you may contact the Federal Data Protection and Information Commissioner (FDPIC) for information about Swiss data protection law: edoeb.admin.ch.
Where the GDPR applies, you may also have the right to lodge a complaint with a competent data protection supervisory authority in the EU/EEA.
Reasonable technical measures are used to operate the website securely. Nevertheless, no internet transmission or online system can be guaranteed to be completely secure.
This Privacy Policy may be updated if the website, hosting setup, linked services, or applicable legal requirements change. The current version is the version published on this page together with the "Last updated" date shown above.