TRANSPARENCY / UPDATED 17 SEPTEMBER 2026
Privacy policy
A small site, with respect for your privacy.
Who is responsible
The organiser is the controller for personal information used to run this site and administer gifts: Sophia's Dad. Privacy requests: sophiasfuturefund@proton.me. This policy describes the intended operating setup; payment and optional analytics availability are shown on the homepage.
Information processed
AWS hosts the website. Security and delivery logs can include IP addresses, timestamps, requested paths, referrers and browser information. If you email the organiser, they receive your email address and message. Payment providers may share payer name, email, amount, currency and transaction reference with the recipient. This site itself has no donor account, card form, advertising profile or mailing list.
Why information is used
Hosting and security logs are used to deliver and protect the site under legitimate interests. Correspondence and gift records are used to answer requests, reconcile gifts, manage refunds and document intended ISA transfers under legitimate interests and, where applicable, legal obligations. Optional analytics are used only with your consent. The organiser must assess and document these interests before operating the fund.
Optional analytics and local storage
If enabled and you choose “Allow analytics”, Plausible measures aggregate visits, engagement, traffic sources, device types and support-button interactions. It does not provide verified payment confirmations. No advertising cookies or cross-site tracking are used. Your choice is stored locally as sophia-analytics-choice so we can remember it. You can change it using Analytics preferences on the homepage; choosing “No thanks” stops future analytics on this browser. Global Privacy Control and Do Not Track are respected. No optional analytics runs before your choice.
Providers and international transfers
AWS processes hosting data; CloudFront uses global edge locations. If enabled, Plausible processes analytics. PayPal and, if selected, Ko-fi and its payment processor process transactions as separate controllers under their own notices. Their processing can involve other countries. The organiser must confirm applicable contractual safeguards and provider arrangements before activation. We do not sell personal information.
Retention and security
Website access logs expire after 30 days, subject to AWS lifecycle processing. Lambda operational logs are retained for 14 days. Correspondence is normally deleted within 12 months after resolution. Gift and transfer records are retained for up to six years where needed for accounting, disputes or legal obligations, then deleted or anonymised. The organiser should retain only necessary records, restrict access and use multifactor authentication. Configure analytics retention to the shortest period needed, with a target of 12 months.
Your rights
Depending on the circumstances, you may request access, correction, erasure, restriction or portability of your personal information, object to processing based on legitimate interests, and withdraw analytics consent without affecting earlier lawful processing. Contact the organiser; requests are normally answered within one month. You can complain to the UK Information Commissioner’s Office at ico.org.uk.
Children’s privacy
We do not intentionally collect information from children through this site. Sophia’s exact age, school and address are not published. Educational imagery is AI-generated. Please do not include sensitive information about a child in messages.