Privacy Policy
Effective Date: September 1, 2026 · Last Verified: September 21, 2026
Our Three Sovereign Privacy Commitments
- 1.Zero Third-Party Advertising Pixels: We do not load Meta Pixel, Google Remarketing, TikTok pixels, or programmatic ad network scripts that track you across the web.
- 2.Hardware-Grade Encryption: Subscriber email addresses are encrypted at rest using AES-256-GCM with authenticated tags and SHA-256 blind indices.
- 3.Zero Data Broker Sharing: Your email address is never sold, leased, or transmitted to court management platforms, paddle manufacturers, or third-party aggregators.
1. Information We Collect
We minimize data collection to what is strictly necessary to deliver editorial dispatches and maintain site operations:
- Subscriber Email & Metro Preference: When you subscribe to our dispatch, we store your email in encrypted form (AES-256-GCM) alongside your preferred regional edition (e.g., All, New York, Los Angeles).
- Verification Audit Timestamps: We record the timestamp when your verification code was issued and confirmed to satisfy CAN-SPAM and double opt-in requirements.
- Server Edge Logs: Our infrastructure logs standard HTTP request headers (IP address, user agent, request timestamp, URL path) strictly for security monitoring, DDoS mitigation, and edge caching. Server logs are purged on rolling cycles.
2. How We Store & Protect Data
Unlike conventional platforms that store subscriber emails in plain text across disparate cloud CRMs, Dink Digest implements sovereign cryptographic isolation:
- Subscriber emails are encrypted using a 256-bit symmetric encryption key stored in a restricted system vault (filesystem permissions 0600).
- Database queries perform blind hash matching using SHA-256; plain-text emails are never exposed during routine indexing.
- Our hosting environment runs on dedicated hardened infrastructure with zero public database exposure.
3. Cookies & Local Storage
Dink Digest does not use cross-site tracking cookies. We do not use third-party cookie sync networks. Any client-side cookies or session storage keys are strictly functional (e.g., remembering your active desk filter or modal preference).
4. Your Rights (CCPA, CPRA & GDPR)
Regardless of your geographic location, you retain the following sovereign rights over your information:
- Right to Inspect: You may request confirmation of whether your email exists in our active subscriber ledger.
- Right to Complete Erasure: You can unsubscribe with one click from any dispatch or email us to immediately purge your cryptographic record from our database.
- Non-Discrimination: We do not withhold stories, limit access, or charge fees for exercising your privacy rights.
5. Contact the Privacy Desk
If you have questions regarding this Privacy Policy or wish to request data erasure, contact our data steward: