Privacy Policy
Last updated: July 14, 2026
1. Scope and controller
This Privacy Policy explains how Mind Networks Association LLC (“we,” “us,” or “our”) handles personal information when you use efremov.help, its account system, and the Private Root Log (the “Service”).
2. Information we collect
- Application data: your name, email address, the situation you describe, your desired change, what you have tried, and optional location or time-zone information.
- Campaign attribution: landing page, referral address, UTM parameters, and advertising click identifiers attached to the link you used, so an application can be attributed to its source.
- Account data: your email address, account identifier, account-creation time, and authentication method.
- Google sign-in data: when you choose Google authentication, Google provides a verified email address and a provider-specific account identifier. We do not receive your Google password.
- Private Root Log content: triggers, old automatic outputs, chosen actions, re-test results, completion state, and timestamps that you choose to record.
- Security data: IP address and timestamps used for authentication rate limiting, abuse prevention, and incident investigation.
- Technical request data: hosting and security providers may process browser, device, request, and network information needed to deliver and protect the Service.
- Cookies and local storage: secure session and OAuth verification data, your analytics preference, and first/last campaign attribution.
- Optional analytics: only after you choose “Allow analytics,” Google Analytics and Microsoft Clarity may process page, device, interaction, and approximate-location information.
3. How we use information
We use personal information to review and answer private-work applications, attribute applications to campaigns, create and authenticate accounts, provide and synchronize the Private Root Log, maintain security, prevent abuse, troubleshoot and improve the Service, comply with law, and communicate about account or policy matters. We do not sell personal information or use Private Root Log entries for targeted advertising or public AI-model training.
4. Legal bases
Where applicable law requires a legal basis, we process information to perform the service you request, for legitimate interests in operating and securing the Service, with consent where required, and to comply with legal obligations.
5. Sharing and service providers
We may disclose information to service providers that operate infrastructure or authentication for us, including Cloudflare, Resend for delivery of application notifications and email, Google Analytics and Microsoft Clarity only after analytics consent, and Google if you choose Google sign-in. We may also disclose information when required by law, to protect rights and safety, or as part of a merger, acquisition, financing, or sale of assets subject to appropriate protections.
6. Retention
- Session records normally expire after 30 days.
- Temporary Google OAuth verification cookies expire after approximately 10 minutes.
- Authentication-attempt records are periodically removed after approximately 24 hours.
- Account data and Root Log entries remain until you delete individual entries or delete the account.
After deletion, limited information may remain temporarily in provider backups or be retained when reasonably necessary for security, fraud prevention, legal compliance, or dispute resolution.
7. Security
We use technical safeguards including encrypted transport, secure HttpOnly cookies, hashed passwords, server-side session storage, OAuth state and nonce validation, rate limiting, and access controls. No Internet service can guarantee absolute security.
8. Your choices and rights
You may delete individual Root Log entries or delete your account from the Private Root Log interface. Depending on your location, you may also have rights to request access, correction, deletion, restriction, objection, or a portable copy of personal information. We may need to verify your identity before fulfilling a request.
We do not sell or share personal information for cross-context behavioral advertising.
9. Children
The account feature is intended for adults and is not directed to children under 18. We do not knowingly create accounts for children under 18.
10. International processing
Information may be processed in the United States and other countries where our providers operate. Those countries may have different data-protection laws from your country.
11. Third-party links
The public site may link to third-party websites. Their privacy practices are governed by their own policies. Google authentication is also governed by Google’s privacy policy.
12. Policy changes
We may update this Policy by posting a revised version and changing the “Last updated” date. Material changes will apply prospectively.
13. Contact
Privacy questions and rights requests may be sent to info@efremovmethod.com.