Privacy

This policy covers irvinebroque.com, its public recommendation chat, its public MCP server, and Taste Explorer.

Effective

What is processed

The public service has no user accounts and does not ask for precise device location. It processes the page or MCP request you choose to send, including search or recommendation text and opaque item IDs, only to return the requested public content. Public MCP request bodies are not saved to the site’s D1, KV, or R2 storage.

The recommendation chat stores its active conversation in a separate, isolated Cloudflare Durable Object so you can exchange messages while the page remains open. Its anonymous token is held only in page memory; refreshing or closing the page discards access and starts a new conversation. The token expires after 24 hours in all cases. The agent receives only your messages and records returned by the anonymous public API; it has no access to owner authentication, private account data, or the site database. WhatsApp messages are also processed by Meta under its terms before verified deliveries reach the isolated agent.

Cloudflare processes ordinary network and request metadata to deliver and protect the service. Sampled Worker invocation logs contain request and response metadata, not MCP request bodies, and are retained for no more than seven days. The site also writes aggregate usage events to Cloudflare Workers Analytics Engine. These events include the public surface, normalized route, response status and latency, browser interaction type, public API operation or MCP tool name, and an opaque content ID when an item is opened, requested, or returned. A returned item records exposure, not a confirmed human interaction. The Analytics Engine dataset does not include IP addresses, user agents, referrers, query strings, search text, MCP request bodies, response bodies, or OAuth and owner activity. Analytics Engine retains events for three months.

If you email for support, the email address and message you provide are used only to respond and are deleted within twelve months after the last support response.

If you request an email digest, the site processes your email address, selected delivery frequency, confirmation and unsubscribe state, and limited delivery metadata. The address is encrypted before it is stored in a dedicated Cloudflare D1 database that is separate from the site’s content, OAuth, and agent databases. Confirmation and unsubscribe credentials are stored only as cryptographic hashes. An unconfirmed request expires after one hour and its record is deleted within seven days. A confirmed record is retained while the subscription is active; after unsubscribe, the suppression record is retained so the site does not resume sending without a new confirmation. Digest emails are sent individually through Cloudflare Email Service and never expose one subscriber to another.

How information is used and shared

Information is used to operate, secure, troubleshoot, and improve the service. It is not sold, rented, used for advertising, or used to build user profiles. Cloudflare processes limited data as the hosting, storage, and AI provider. Meta separately processes messages sent through WhatsApp. An AI host such as ChatGPT or Codex separately processes what you send through that host under its own terms and privacy policy.

Taste Explorer may show links or media from third-party sites. Those services receive information only when your client loads their permitted resource or you choose to open their link, and their own policies apply.

Your choices

Do not include personal or sensitive information in a recommendation chat or public MCP query. You may start a new anonymous browser chat at any time. Browser analytics uses a random identifier stored for up to 24 hours to estimate daily unique browsers; it is not connected to an account or used to build a profile. Global Privacy Control and browser “Do Not Track” disable browser events. You may also block JavaScript or local storage without losing the public content, APIs, or MCP tools. Every digest has an unsubscribe link and supports email-client one-click unsubscribe; an unsubscribe takes effect immediately. To request deletion of a chat, support email, or digest record, contact brendanib@gmail.com.

Children and changes

The service is not directed to children under 13. Material changes to this policy will be posted here with a new effective date.

Contact

Questions about this policy may be sent to brendanib@gmail.com.