IT Siesta

Privacy

Privacy Policy

Effective date: 13 August 2026

This Privacy Policy explains how IT Siesta collects, uses, shares, protects, and deletes personal data when you use our website and apps. IT Siesta is operated by Serhii Bobok. Questions or privacy requests can be sent to [email protected].

Information we process

Account and membership data. Your email address, member code, display name, invitation relationship and slot, account status, login activity, selected timezone, theme preference, and presence setting.

Profile data. Your avatar and the profile information you choose to provide. Avatars are stored to display them to the members who can see your profile or conversation.

Messages and invitations. The content of messages, conversation membership, sender and recipient information, timestamps, read status, and private invitation labels created by an inviter.

Safety reports and blocks. When you report content or block a member, we process the reason and details you provide, a snapshot of the reported content, the accounts involved, review notes, and the moderation action taken.

Sign-in and security data. Passwords are stored as password hashes. If you enable a passkey, we store its public credential data, device label, signature counter, and usage dates; the private passkey remains with your device or password manager.

Device and notification data. If you opt in to push notifications, we process your Apple Push Notification service device token, platform, device name, app bundle identifier, and notification environment so we can deliver message notifications.

Technical and protection data. We use session cookies and process basic request and security information needed to operate and protect the service. Sign-in and password-reset forms may use Cloudflare Turnstile to prevent automated abuse.

How we use information

  • To create and maintain your account, membership tree, profile, invitations, and conversations.
  • To authenticate you, protect accounts, and prevent fraud or abuse.
  • To deliver messages and, when enabled, push notifications.
  • To review safety reports, hide blocked members' content, enforce our Terms of Use, and prevent abusive behaviour.
  • To respond to support requests and comply with applicable legal obligations.

When information is shared

Profile and conversation information is visible to the other members who are permitted to see it. Messages are visible to members of the relevant channel, invite circle, or direct conversation.

We use service providers to operate IT Siesta, including hosting and database providers, object storage for avatars, Amazon Web Services for email delivery, Apple for push notifications, and Cloudflare for Turnstile when it is enabled. These providers process data only as needed to provide their services.

We do not sell personal data, use it for cross-app or cross-site advertising tracking, or share it with advertising networks.

Your choices and deletion requests

You can update your display name, avatar, timezone, presence, and passkeys in your profile settings. You can disable push notifications in your device settings. Disabling passkeys removes their server-side credentials; your device may also require you to remove the passkey from its password manager.

To request access to, correction of, or deletion of your account data, email [email protected] from the email address associated with your account. We may need to verify your identity before acting on a request.

Retention and security

We keep account, profile, invitation, message, safety report, and moderation data while your membership is active and for as long as needed to operate the service, resolve disputes, enforce our terms, and meet legal or security obligations. We delete or anonymize data when it is no longer needed, subject to those obligations.

We use reasonable technical and organisational measures to protect data. No online service can guarantee absolute security, so please keep your account credentials and devices secure.

Children

IT Siesta is a private network for individual IT professionals and is not directed to children under 13. We do not knowingly collect personal data from children under 13.

Changes to this policy

We may update this policy when our practices or legal requirements change. We will post the updated version here and update the effective date.