addylog

Privacy Policy

Effective: July 13, 2026

This blog (“the blog”) publishes this privacy policy to explain how it protects your personal data, in line with Korea's Personal Information Protection Act (PIPA). Reading the blog requires no personal information; personal data is processed in only two cases: (1) leaving a comment, and (2) minimal access logs kept for visit statistics.

1. Personal data processed

The blog processes the following personal data:

  • Comments: the author name and comment text you enter. Comments are shown publicly on the post.
  • Visit statistics: an irreversible hash derived from your IP address and browser (User-Agent) combined with the date (KST), the page path you visited, the domain of an external referrer, and the time of visit. The raw IP and User-Agent are never stored.
  • No other personal data — email, phone, and the like — is collected, and no sensitive data is processed.

2. Purpose of processing

The name and text you submit in a comment are used solely to publish and discuss opinions on that post.

Access logs are used solely to tally how much each post is read (daily visitor counts, page views, per-section dwell time) and do not identify individuals. The visitor hash rotates every day, so it is used only for same-day visitor counts and cannot track the same person across days.

3. Retention and use period

Comments are kept while published and are destroyed without delay when the author requests deletion or the operator removes them.

Access logs are kept for statistics; because the stored visitor hash rotates daily, it cannot on its own re-identify an individual.

4. Provision to third parties

The blog never provides your personal data to third parties.

5. Outsourcing of processing

The blog does not outsource any personal-data processing to external parties. If that changes, the processor and the scope of work will be disclosed in this policy.

6. Destruction of personal data

Personal data is destroyed without delay once its purpose is fulfilled or when deletion is requested. Electronic records are permanently removed from the database so they cannot be recovered.

7. Your rights and how to exercise them

You may request access, correction, deletion, or suspension of processing for your personal data at any time. Requests can be made through the contact listed below and will be handled without delay.

8. Cookies and automatic collection

The blog uses no advertising or third-party analytics/tracking cookies, and no third-party analytics tools such as Google Analytics.

It uses a single functional cookie (lang) to remember your language (Korean/English), set only when you switch language yourself. Your theme (light/dark) preference is stored in your browser's localStorage, is never sent to the server, and can be cleared in your browser settings.

When the operator signs in for administration, an authentication session cookie is used; this applies only to the operator and is never set for ordinary visitors.

9. Security measures

Only the minimum data needed for the purpose is collected. IP addresses and User-Agents are never stored in raw form — only as an irreversible hash — and the database holding personal data runs in a local-access-only environment that is not directly exposed externally, with access restricted to the operator.

The site is delivered through a reverse proxy, which may transiently process technical data such as your IP address in order to deliver content.

10. Who handles your data

Addy, the blog's operator, is responsible for handling personal data and for your inquiries, complaints, and remedies. You can get in touch via GitHub:

11. Remedies for infringement

To seek redress for a privacy infringement, you may contact the following Korean bodies for dispute resolution or counseling:

12. Changes to this policy

This privacy policy takes effect on July 13, 2026. If anything is added, removed, or revised, the changes will be announced on the blog.