Privacy Policy
Last updated: 2026-04-13
Data Controller
EarthGraphica is operated as a sole proprietorship based in Los Angeles, California, United States. For privacy-related inquiries, you may contact us using the form provided in the Exercise Your Rights section below.
What Data We Collect
EarthGraphica is designed to collect as little data as possible. Here is a complete accounting of the information we handle:
Encrypted Telemetry
We collect anonymous usage telemetry that includes: device type, browser name and version, viewport dimensions, page load performance metrics, tool usage events (which tool was used, not what values were entered), and tool preferences. All telemetry is encrypted end-to-end using ECDH key exchange with AES-256-GCM before it leaves your browser. Encrypted data is not accessible from any public-facing system and is never sold or shared with third parties.
Cloudflare Infrastructure Headers
As part of normal CDN operation, Cloudflare provides us with request metadata including: approximate geographic location (country, city, timezone), network information, and connection details. This information is used for request routing and is not stored in any database.
Transient Tool Processing
When you use a tool (for example, converting a unit or running a calculation), your input is sent encrypted to our servers, processed in memory, and the result is returned encrypted. Your input and results are immediately discarded after processing. They are never written to disk, stored in a database, or retained in any form.
What We Do NOT Collect
We do not collect: names, email addresses (except via the voluntary contact form), physical addresses, phone numbers, payment information, social media identifiers, account credentials, biometric data, health data, or any other personally identifiable information. EarthGraphica does not have user accounts, logins, or registration of any kind.
How We Store Data on Your Device
EarthGraphica uses your browser's local storage technologies (localStorage and IndexedDB) to remember your preferences and improve your experience. This data is stored only on your device and is never transmitted to our servers.
- Essential: Consent preferences, encryption session keys
- Functional: Theme (dark/light mode), language preference, favorite tools, recently used tools
You can clear this data at any time through your browser settings. Clearing local storage will reset your preferences to defaults but will not affect the functionality of our tools.
We do not use first-party cookies. Third-party advertising partners may set cookies when ad scripts are loaded, subject to your consent preferences where required by law.
Third-Party Services
EarthGraphica uses the following third-party services:
- Cloudflare (CDN, DNS, DDoS protection, tunnel infrastructure): Cloudflare processes request metadata (IP addresses, headers) as part of delivering our service. Cloudflare operates as a data processor under its own privacy policy.
- Advertising partners (currently Adsterra): When advertising scripts are loaded (subject to your consent preferences in jurisdictions that require it), our advertising partners may collect data through cookies and similar technologies to serve relevant advertisements. Ad scripts are not loaded until and unless consent is given where required. You can manage your advertising preferences at any time using the Cookie Settings link in the footer of any page.
We do not sell your data to any third party. We do not share personal data with any third party for their own marketing purposes.
Your Rights Under GDPR (EU/EEA/UK)
If you are located in the European Union, European Economic Area, or the United Kingdom, the General Data Protection Regulation (GDPR) and UK GDPR apply to our processing of your data.
Lawful Basis for Processing
- Tool processing (conversions, calculations): Article 6(1)(b) — contract performance. You request a service and we provide it.
- Encrypted telemetry: Article 6(1)(a) — your consent, managed through our cookie consent banner.
- Advertising: Article 6(1)(a) — your consent, managed through our cookie consent banner.
Your Rights
Under the GDPR, you have the right to:
- Access your personal data (Article 15)
- Rectify inaccurate data (Article 16)
- Erase your data — "right to be forgotten" (Article 17)
- Restrict processing (Article 18)
- Data portability (Article 20)
- Object to processing (Article 21)
Because EarthGraphica does not maintain user accounts and does not retain tool processing data, there is typically no personal data to access, rectify, erase, or port. Encrypted telemetry contains device and browser characteristics but no directly identifying information. To exercise any of these rights, please use the contact form below.
Automated Decision-Making
EarthGraphica does not engage in automated decision-making or profiling as defined in Article 22 of the GDPR.
Cross-Border Data Transfers
EU/EEA user requests are routed to our London server for processing. Tool input data is processed in memory and immediately discarded — it does not leave the London server. Encrypted telemetry may be stored on infrastructure outside the EEA, but because it is encrypted end-to-end before any transfer and is not accessible from any public-facing system, the privacy risk of the transfer is negligible.
Supervisory Authority
You have the right to lodge a complaint with your local data protection supervisory authority if you believe your data has been processed unlawfully.
Your Rights Under US State Privacy Laws
EarthGraphica does not sell or share your personal data.
For residents of US states with comprehensive privacy legislation — including California (CCPA/CPRA), Virginia (VCDPA), Colorado (CPA), Connecticut (CTDPA), Utah (UCPA), Texas (TDPSA), and others — you have the right to:
- Know what personal data we collect and how it is used
- Request deletion of your personal data
- Opt out of targeted advertising
- Not be discriminated against for exercising these rights
To exercise any of these rights, please use the contact form below.
California-Specific Disclosures (CCPA/CPRA)
In the preceding 12 months, we have collected the following categories of information as defined by the CCPA: internet and electronic network activity information (encrypted telemetry), and geolocation data (approximate, via Cloudflare headers, not stored). We have not sold personal information. We have not shared personal information for cross-context behavioral advertising without consent.
Do Not Track
EarthGraphica does not track individual users across third-party websites. We honor your consent preferences as set through our cookie consent banner. We do not respond to browser "Do Not Track" signals because there is no industry-standard implementation, but our consent mechanism provides equivalent control.
Brazil (LGPD)
For users in Brazil, the Lei Geral de Proteção de Dados (LGPD) provides rights similar to the GDPR, including the right to access, correct, delete, and port your data. EarthGraphica processes data with your consent (for analytics and advertising) and for the provision of the service you requested (tool processing). The rights and contact mechanisms described in this policy apply equally to Brazilian users.
Data Security
We take data security seriously. All telemetry is encrypted end-to-end using industry-standard encryption (ECDH key exchange with AES-256-GCM). Encrypted data is not accessible from any public-facing system and is never sold or shared with third parties. All communication between your browser and our servers uses HTTPS/TLS. Our server infrastructure is protected by firewalls, DDoS protection, and encrypted tunnels.
Data Breach Notification
In the unlikely event of a security incident, we will assess whether any personal data was compromised. Due to our encryption architecture, telemetry data stored on our servers cannot be decrypted without a separate key that is not accessible from any public-facing system. Tool processing data is not retained at all. In the event we determine that a breach has resulted in a risk to your rights and freedoms, we will notify the relevant supervisory authority within 72 hours and affected individuals without undue delay, as required by applicable law.
Data Retention
Tool processing data (your input and results) is not retained — it is processed in memory and immediately discarded. Encrypted telemetry is retained in encrypted form for analytics purposes. Contact form submissions are retained for up to 6 months to fulfill our obligation to respond to data subject requests and demonstrate compliance, after which they are automatically deleted. Local storage data on your device persists until you clear it through your browser settings.
Children's Privacy
EarthGraphica is not directed at children under the age of 13. We do not knowingly collect personal information from children. Because we do not collect personal information from any user, there is no COPPA-triggering data collection. If you believe a child has provided us with personal information through the contact form, please contact us and we will delete it promptly.
Accessibility
We are committed to making EarthGraphica accessible to all users. Our tools are designed with keyboard navigation, screen reader compatibility, and sufficient color contrast. If you encounter any accessibility barriers, please let us know.
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. When we make changes, we will update the "Last updated" date at the top of this page. We encourage you to review this page periodically. Continued use of EarthGraphica after changes are posted constitutes acceptance of the updated policy.
Exercise Your Rights
Use this form to submit a privacy-related request. You will receive an immediate response.