privacy
what we know about you, and what we do with it · last updated 2026-07-30
what we collect
when you sign in with github we receive your github identity: numeric id, username, display name, avatar and the email on your github account. we never see your github password, and we request zero extra permissions — dorkhub cannot touch your repositories.
what you do here is stored so the product works: projects you showcase, likes, saves, lists, follows, reports, and the usual short-lived server logs.
curated pages
unclaimed project pages are built from public github data only (repository metadata, READMEs, public avatars). they are labeled, claimable by the real maintainer, and removable on request — email us and it is gone, permanently blocklisted from re-import.
what is public and what is not
public: your profile, your published project pages, your public lists, follower counts, and per-project totals (likes, saves, "in n lists").
not public: WHO liked or saved something (those rows are visible only to you, by database rule, not by convention), your private lists and their contents, and your email.
cookies and tools
we set auth session cookies so you stay signed in — no advertising or cross-site tracking cookies, ever.
infrastructure that touches your data: supabase (database + auth), vercel (hosting, plus cookieless aggregate analytics), github (public api reads), and sentry (error reports, configured to strip personal data).
search abuse control stores a HASHED form of your ip address for at most an hour — never the raw address.
what we never do
sell your data. share it with advertisers. email you marketing you did not ask for.
deleting your stuff
you can delete your projects and lists yourself. for full account deletion, email us and we will remove your account and everything attached to it — there is no self-serve button yet, and we would rather say that plainly than hide it.
talk to us
privacy questions or requests: hi@dorkhub.com.