Privacy Policy
Last updated 3 August 2026
MIRNetworks (“we”, “us”) runs this website. We keep data collection to the minimum needed to operate the site: there is no analytics, advertising, tracking, or profiling, and we never sell your data. This page explains what little we do collect and why.
1.Who this applies to
This policy covers visitors to this website and the small number of people who hold an administrator account for it. If you just view the page, almost nothing in this policy applies to you — see section 2.
2.Information we collect
Visitors (no account)
Simply viewing the site sets no cookies and asks you for no personal information. Like almost every website, our hosting infrastructure records standard server logs — the requesting IP address, the time, the page requested, and your browser's user-agent string — which are used only to operate, secure, and troubleshoot the service.
Account holders (administrators)
If you create an account, we store the details you provide and a little that we generate:
- your chosen username;
- your password, stored only as a salted
scrypthash — never in plain text, and not recoverable by us; - the date your account was created and whether it is the administrator account.
Appearance settings an administrator saves (colours, theme presets, animation options) are stored on the server, but they are site configuration, not information about you.
3.Cookies & local storage
mn_session— a strictly-necessary cookie that keeps you signed in to the admin area. It holds a signed session token (no personal data), isHttpOnlyandSameSite=Lax, is markedSecureover HTTPS, and expires after 30 days or when you sign out. It is essential, so it is not subject to consent.
We also store one item in your browser's local storage,
mn_cookie_consent, to remember whether you accepted or
declined the cookie notice so we don't ask again. It stays on your device
and is never sent to us. There are no advertising, analytics, or
third-party cookies of any kind.
4.How we use information
- to authenticate administrators and keep them signed in;
- to operate, secure, and debug the website (server logs);
- to remember your cookie-notice choice.
We do not use your information for marketing, profiling, or automated decision-making, and we do not combine it with data from other sources.
5.Sharing & third parties
We do not sell, rent, or trade your data. The only third party that processes any of it is our hosting provider, which handles the server infrastructure and transmits traffic on our behalf. We may disclose information if required by law or to protect the security and integrity of the service.
6.Data retention
Account records are kept for as long as the account exists and are deleted when the account is removed. Server logs are retained only for a short period for security and diagnostics and are then rotated out.
7.Security
Traffic is served over HTTPS with HSTS enforced. Passwords are stored
only as salted scrypt hashes, the session cookie is
HttpOnly so scripts cannot read it, and stored settings are
sanitised before use. No method of transmission or storage is perfectly
secure, but we take reasonable measures to protect your data.
8.Your rights
Depending on where you live, you may have the right to access, correct, export, or delete the personal data we hold about you, or to object to its processing. Because we collect so little, most requests amount to viewing or deleting your account. To make a request, contact us using the details below.
9.Children
This site is not directed at children under 16, and we do not knowingly collect their personal data.
10.Changes to this policy
We may update this policy from time to time. When we do, we will revise the “last updated” date above. Continued use of the site after a change means you accept the updated policy.
11.Contact
Questions about this policy or your data? Email [email protected].