Privacy Policy
1. About This Policy
oPin2 ("we," "our," or "us") operates a device display service accessible at opin2.com (the "Service"). This Privacy Policy describes what information is collected when you use the Service, how that information is used and shared, and the choices available to you.
By using the Service you acknowledge that you have read and understood this Privacy Policy. If you do not agree with these practices, please do not use the Service.
We are committed to continuously reducing the data processed by the Service. As privacy-preserving technologies mature — including decentralised communication protocols and short-range device-to-device connection technologies such as Bluetooth Low Energy (BLE) mesh networks — we intend to explore their adoption to allow the Service to operate with reduced reliance on centralised server infrastructure, further limiting the personal data we handle.
2. Information We Collect
2.1 Information You Provide
When you choose to transmit a device signal, you voluntarily provide the following profile fields:
- "Open to" topic — a category selected from a provided list describing the type of interaction your device is signalling openness to
- Age — a numeric age (must be 18 or older; validated server-side)
- Gender — optional; M or F
- Instructions — optional free-text note up to 70 characters (for example, a physical description to help others identify the device carrier)
- Avatar — optional emoji character displayed on the map in place of the default marker
- Buzz setting — a boolean preference indicating whether your device accepts inbound buzz notifications from other active devices
- Gifts setting — a boolean preference indicating whether your device accepts inbound Gift interactions from other active devices
- Party 'Fetti setting — a boolean preference indicating whether your device participates in Party 'Fetti broadcasts among nearby active devices
None of these fields require or accept your name, email address, phone number, or any government-issued identifier. Providing false information, including a false age, is a violation of the Terms of Service.
2.2 Device Location
The Service uses your browser's Geolocation API to read your device's GPS coordinates (latitude, longitude, and accuracy in metres). Your browser will prompt you for permission before any coordinates are accessed. You may deny permission, in which case the Service cannot function.
Once you transmit a signal, your device's coordinates are sent to our server and updated approximately every three seconds for as long as the signal remains active. Location data is used to:
- Determine which other active devices fall within the Service Radius around your device
- Display your device's position as a map marker to those other devices
- Compute and display the distance and compass bearing between your device and each other active device within range
The server — not the client — is the authoritative source of your device's position. Coordinates submitted by your device are validated server-side; they cannot be falsified to misrepresent your device's position to other users.
2.3 Session Identifier
When you transmit a signal, your browser generates a random session identifier (UUID) using your device's cryptographically secure random number generator (crypto.getRandomValues). This identifier:
- Is not linked to any account, name, email address, IP address, or persistent identity
- Is used during your active session to identify your device's presence record on the server, process position updates and session keep-alives, and route inbound Buzz, Gift, and Party 'Fetti interactions to your device
- Is discarded from our server within approximately 30 seconds of your last activity (see Section 6)
- Is never reused across sessions — a new identifier is generated each time you transmit
2.4 Server Logs
The Service is hosted on Host shared hosting infrastructure, which maintains standard Apache web server access and error logs by default. These logs are a required component of the hosting environment and cannot be disabled or reformatted by the Service operator.
Apache access logs record the following data for each HTTP request made to the Service:
- IP address of the requesting client
- Date and time of the request
- Requested path and HTTP method
- HTTP status code
- User agent string (browser type and operating system)
- Referring URL, if any
Apache error logs record server errors and security events such as blocked access attempts, and may also include the IP address of the client whose request triggered the event.
These server logs are used solely for hosting infrastructure operations, security monitoring, and abuse prevention. They are not used for marketing, advertising, or user profiling of any kind. The Service's own application code does not read, process, or store IP addresses from these logs. The Service plans to implement scheduled automated truncation of access log files to further minimise retention; this policy will be updated once that practice is in place. For information on how hosting-level data is handled, see Host's Privacy Policy.
2.5 Cookies and Local Storage
The Service uses a small number of cookies and browser local storage items:
| Name | Type | Purpose | Consent required | Duration |
|---|---|---|---|---|
PHPSESSID |
Session cookie | Server-side rate limiting — prevents automated abuse of the data stream and buzz endpoints | No — strictly necessary | Deleted when you close your browser |
_ga |
Analytics cookie | Google Analytics — distinguishes unique visitors | Yes — Accept All only | 2 years |
_ga_BKB74899GP |
Analytics cookie | Google Analytics — session-level measurement | Yes — Accept All only | 2 years |
| Revive ad cookies | Advertising cookie(s) | Served-content delivery and performance measurement via opinserv.com | Yes — Accept All only | Varies by cookie |
cookieConsent |
Local storage | Stores your cookie consent choice (granted or denied) so the consent banner does not reappear on return visits | No — essential preference | Until you clear browser storage |
mode |
Local storage | Stores your display preference (dark or light mode) | No — UI preference | Until you clear browser storage |
Analytics and advertising cookies are set only if you choose "Accept All" on the cookie consent banner. Strictly necessary cookies and local storage items are set regardless of your consent choice, as they are required for the Service to function. You can update your cookie preference at any time using the Cookie Preferences link in the app footer.
3. How We Use Your Information
We use the information collected for the following purposes:
- Operating the Service — computing which devices are within the Service Radius, displaying active device signals on the shared map and user cards, and routing Buzz, Gift, and Party 'Fetti interactions between devices
- Rate limiting and abuse prevention — enforcing per-session request limits on the data stream and the Buzz, Gift, and Party 'Fetti endpoints to maintain service quality and prevent automated abuse
- Security and integrity — reviewing server logs to detect and respond to suspicious activity, policy violations, and technical faults
- Analytics — understanding aggregate usage patterns to improve the Service (only with your consent)
- Served content — delivering and measuring advertisements (only with your consent)
We do not use your information for automated decision-making or profiling that produces legal or similarly significant effects on you.
The Service does not use artificial intelligence (AI) or machine learning to process, analyse, or profile data in connection with your use of the Service.
We do not sell your personal information to third parties.
4. What Other Active Users Can See
Device presence visibility is the core function of the Service. While your device signal is active, all other active devices within the Service Radius can see the following information on the shared map and user cards:
- Your "open to" topic
- Your age
- Your gender (if provided)
- Your instructions (if provided)
- Your avatar (if provided)
- Your device's approximate position as a pin on the shared map
- The distance and compass bearing from their device to yours
- How long your device has been active in the current session
- How recently your device was last detected as active
- Whether your Buzzer is enabled
- Whether your Gifts are enabled
- Whether your Party 'Fetti is enabled (shown as a 🎉 indicator)
Your internal session identifier (UUID) is not displayed to other users in the interface. It is used to maintain your presence record, process position updates and session keep-alives, and route inbound Buzz, Gift, and Party 'Fetti interactions to your device — and is never exposed in a way that persists beyond your active session.
Important: The information listed above is broadcast to all other active devices within the Service Radius. Do not enter anything in the profile fields that you would not be comfortable broadcasting to other active devices within the Service Radius.
Your device signal is not visible to devices outside the Service Radius, to users who have not actively joined the Service in that session, or to anyone after your device signal has ended. Your information is automatically removed from the Service within approximately 30 seconds of your last activity (see Section 6).
5. Third-Party Services
The Service integrates the following third-party services. Each receives data as described and is governed by its own privacy policy, which we encourage you to review.
Google Analytics — Google LLC
When you consent to analytics cookies, anonymised usage data (pages visited, session duration, interaction events) is transmitted to Google Analytics. Google Analytics 4 anonymises IP addresses before storage by default; your IP address is not retained by Google in connection with your use of this Service. Google may use this data in accordance with its own policies, including for improvements to its own services.
Privacy policy: https://policies.google.com/privacy
Served Content — opinserv.com
When you consent to advertising cookies, the Service loads served content from opinserv.com. This involves your IP address and browser information being transmitted to opinserv.com for content delivery and performance measurement, and may result in advertising cookies being set on your device. opinserv.com may use IP geolocation technology — which may include MaxMind GeoIP2 — to derive your approximate geographic location from your IP address for the purpose of geographically targeted ad delivery. Choosing "Essential Only" on the cookie consent banner prevents the loading of Revive content and all associated data processing.
Privacy policy: [https://opinserv.com/#privacy]
MaxMind GeoIP2 privacy policy: https://www.maxmind.com/en/privacy-policy
OpenStreetMap — OpenStreetMap Foundation
Map tiles are loaded on demand from tile.openstreetmap.org. Each tile request transmits your IP address and the geographic coordinates of the map area being viewed to the OpenStreetMap tile servers.
Privacy policy: https://wiki.osmfoundation.org/wiki/Privacy_Policy
Google Fonts — Google LLC
Fonts used by the Service (Share Tech Mono and Orbitron) are loaded from Google's font delivery network at fonts.googleapis.com and fonts.gstatic.com. Each font request transmits your IP address to Google.
Privacy FAQ: https://developers.google.com/fonts/faq/privacy
unpkg CDN — Cloudflare, Inc.
The MapLibre GL JS mapping library is loaded from unpkg.com, a public content delivery network operated by Cloudflare. Each request transmits your IP address to Cloudflare's infrastructure.
Privacy policy: https://www.cloudflare.com/privacypolicy/
Radio Browser — radio-browser.info
If you use the optional Streaming Audio feature, your device contacts the Radio Browser directory API (radio-browser.info) to search for and stream nearby internet radio stations. Each request transmits your IP address and your search query (which may include a location term) to Radio Browser and to the individual station servers whose audio you stream. This feature is optional and only contacts these services when you actively use it. Radio Browser is a community-run, open directory of internet radio; audio is provided by independent station operators.
Radio Browser: https://www.radio-browser.info/
6. Data Retention
The Service is designed to minimise data retention in line with the ephemeral nature of device presence:
| Data | Retention period |
|---|---|
| Active device record (location, profile fields, session UUID) | Automatically deleted approximately 30 seconds after your last activity. When you click Leave or close the tab, a signal is sent immediately and the record is removed without waiting for the 30-second timeout |
| Buzz records | Automatically deleted within 25 seconds of delivery or expiry, whichever comes first |
PHP session (PHPSESSID) |
Deleted when you close your browser (session cookie — no expiry date) |
| Server access logs | Retained for a limited period for security and operational purposes, then deleted on a routine rotation schedule |
| Google Analytics data | Retained per Google Analytics default retention settings; see Google's data retention controls |
Local storage (cookieConsent, mode) |
Retained in your browser until you clear your browser's local storage; not stored on our servers |
7. Your Choices and Controls
Stop broadcasting your device signal
Click the Go Offline button in the app. A signal is sent to our server immediately and your device record is removed. Alternatively, closing the browser tab triggers the same removal via a browser beacon request. If the tab is closed unexpectedly without the beacon completing, your record is automatically purged within approximately 30 seconds.
Cookie and consent preferences
Click Cookie Preferences in the app footer at any time to update or withdraw your consent to analytics and advertising cookies. Withdrawing consent prevents new analytics and advertising cookies from being set, but does not delete cookies already stored in your browser — to remove those, use your browser's cookie management settings.
Location permission
You can revoke the location permission for this site at any time in your browser settings. Once revoked, no GPS coordinates will be read or transmitted on future visits. The site cannot function without location permission.
Local storage
You can delete the cookieConsent and mode items from your browser's local storage through your browser's developer tools or settings. Deleting cookieConsent will cause the cookie consent banner to reappear on your next visit.
8. Age Requirement
The Service is intended exclusively for users 18 years of age or older. By entering your age and transmitting a device signal, you confirm you are at least 18 years old. We do not knowingly collect or process information from anyone under 18. If we become aware that a person under 18 has used the Service, we will take prompt steps to delete their information and prevent further access.
9. Children's Privacy
The Service is not directed at children under the age of 13 and we do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided information to the Service, please contact us using the details in Section 14 and we will delete that information promptly.
10. Data Security
We implement the following technical measures to protect information processed by the Service:
- Encryption in transit — all communication between your device and our servers uses HTTPS
- Rate limiting — all API endpoints enforce per-session request limits to prevent automated abuse
- Server-side location authority — your device's coordinates are validated and stored server-side; client-submitted coordinates cannot be used to falsify your position to other users
- No credentials stored — the Service has no accounts, passwords, or payment information; there is no credential store to compromise
- Cryptographically secure identifiers — session UUIDs are generated using
crypto.getRandomValuesand are never reused - Automatic data expiry — device records are purged server-side on a short timer independent of client behaviour
No method of transmitting or storing data over the internet is completely secure. While we take reasonable measures to protect your information, we cannot guarantee its absolute security.
11. Legal Basis for Processing (EEA and UK Users)
If you are located in the European Economic Area (EEA) or the United Kingdom, we rely on the following legal bases under the GDPR and UK GDPR:
- Consent (Article 6(1)(a)) — for broadcasting your device's presence and profile data to nearby users. You provide this consent by checking the location-sharing consent box and clicking "Transmit Signal." You may withdraw consent at any time by clicking Go Offline.
- Consent (Article 6(1)(a)) — for analytics cookies and advertising cookies. You provide this consent by selecting "Accept All" on the cookie consent banner. You may withdraw it at any time via Cookie Preferences.
- Legitimate interests (Article 6(1)(f)) — for maintaining server access logs for security monitoring, abuse prevention, and operational troubleshooting. We have assessed that this interest is not overridden by your rights and freedoms given the limited scope and short retention period of these logs.
Withdrawal of consent does not affect the lawfulness of processing that took place before withdrawal.
12. Your Privacy Rights
EEA and UK users (GDPR / UK GDPR)
You have the following rights regarding your personal data:
- Right of access — to request a copy of the personal data we hold about you
- Right to rectification — to request correction of inaccurate data
- Right to erasure — to request deletion of your personal data
- Right to restriction — to request that we limit processing of your data in certain circumstances
- Right to data portability — to receive your data in a structured, machine-readable format where technically feasible
- Right to object — to object to processing based on legitimate interests
- Right to withdraw consent — to withdraw consent at any time without affecting prior processing
Because active device presence data is automatically deleted within approximately 30 seconds of your last activity, it will in most cases already be gone before a rights request is received. To exercise any of the above rights, contact us using the details in Section 14. You also have the right to lodge a complaint with your national data protection supervisory authority.
California residents (CCPA / CPRA)
If you are a California resident, you have the following rights:
- Right to know — to request disclosure of the categories and specific pieces of personal information we have collected about you
- Right to delete — to request deletion of personal information we have collected
- Right to correct — to request correction of inaccurate personal information
- Right to opt out of sale or sharing — we do not sell or share personal information for cross-context behavioural advertising
- Right to non-discrimination — we will not discriminate against you for exercising any of these rights
To exercise your California rights, contact us using the details in Section 14.
13. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in the Service, applicable law, or our data practices. Because the Service does not collect email addresses or operate user accounts, we have no mechanism to notify you of changes directly. When material changes are made, we will update the "Last updated" date at the top of this page. Your continued use of the Service after a revised policy takes effect constitutes your acceptance of the updated terms. We encourage you to review this page periodically — the "Last updated" date at the top is your indicator that the policy has changed.
14. Contact Us
For privacy-related questions, requests to exercise your rights, or complaints, please contact us at:
Registered Entity, LLC
Email Form: [View Form]
We will endeavour to respond to all privacy-related enquiries as efficiently as possible.