Privacy policy
This page explains how hvaderpaa.dk handles visitor data. We try to write plainly, not in legalese β so you can actually tell what happens.
Who runs the site
hvaderpaa.dk is a private project operated from Prague (Czech Republic). For questions about your data, deletion, or anything else: info@hvaderpaa.dk.
What we collect
Cookies (technical, required for the site to work):
hvaderpaa_voterβ anonymous identifier (UUID), valid 1 year. Lets you see your own “Going / Not going” votes on events.hvaderpaa_sidβ session identifier, valid 30 minutes. Used to tell sessions apart in anonymous stats.
LocalStorage (stored in your browser):
themeβ your chosen theme (light / dark / auto).hvaderpaa_cityβ the city you filter by.hvaderpaa_tag_filterβ your genre filters.
Visit stats (ours, on our server β no Google Analytics, no ad pixels):
- IP address β used only to derive country/city (see “Third parties”) and for security (scraper detection, anti-abuse). What we keep long-term is the SHA-256 cryptographic hash, not the IP itself.
- Country, city, region β derived from the IP via an external service (see “Third parties”).
- Browser type, operating system, language, mobile/desktop, bot flag.
- Page URL, query parameters, where you arrived from (referer).
- Your “Going / Not going” votes β tied to the anonymous
hvaderpaa_votercookie only, never to you personally.
What we don’t collect
- Your name, email, phone, address β we never ask, there’s no sign-up.
- Payment data β we don’t sell anything.
- Sensitive personal data (health, political views, religion, etc.).
- Ad profiles or cross-site retargeting.
Why we collect it
- Without
hvaderpaa_voterthe site would forget your votes every time you opened a page. - Without
hvaderpaa_sidwe couldn’t tell how many distinct visits we get. - We only use stats to understand what visitors care about (regions, genres, events) β it’s about the aggregate, not you.
- IP geolocation is so we can show you events in your city right away.
Legal basis for processing: legitimate interest (Art. 6(1)(f) GDPR) in running and improving the site. Technical cookies don’t require consent β without them the site simply wouldn’t work.
Third parties
- ip-api.com β free service that turns an IP into country/city/region. We send them your IP, get geo data back. We cache the result for 30 days so we don’t pester them on every visit.
- Let’s Encrypt β issues the TLS certificate for https. They know nothing about the site beyond the domain name.
We do not use: Google Analytics, Meta Pixel, third-party ad cookies, retargeting.
Retention
hvaderpaa_votercookie: 1 year from your last visit.hvaderpaa_sidcookie: 30 minutes of inactivity.- Visit logs: 12 months, then deleted.
- “Going / Not going” votes: as long as you want β click again to clear, or just delete the
hvaderpaa_votercookie in your browser.
Your rights (GDPR)
You have the right to:
- know what data we hold about you;
- ask us to fix or delete it;
- restrict or object to processing;
- complain to the data-protection authority in your own country β in Denmark that is Datatilsynet.
Since we never ask you anything and never store anything that names you, in practice “you” to us is the anonymous UUID in the hvaderpaa_voter cookie. If you want to make sure we hold nothing about you: delete cookies for hvaderpaa.dk in your browser. That puts us back to “we’ve never met”.
Changes to this document
If anything changes (new external parser, new data we collect) we update this page and bump the “last updated” date.
Contact
Last updated: 2026-05-20