policy last reviewed · 2026

Privacy
policy.

The short version: this is a static personal site. It uses Google Analytics so I can see whether anyone actually visits, plus an optional contact form for people who tap my business card. Nothing beyond that. The longer version is below, written like a human wrote it.

jurisdiction · global · static site · github pages

What this site collects

Visit statistics, plus anything you choose to send through the business-card form below. Pages are static HTML, CSS, and JavaScript. There are no tracking pixels and no server-side logging beyond what GitHub Pages records by default to serve traffic. Settings you toggle on this site (dark mode, your reaction-timer best score, whether you've seen the business-card intro) live in your browser via localStorage and never leave your device.

The business-card contact form

If you tap the NFC chip on my business card, the site offers an optional form asking for your name, an email or phone number, and optionally your company and a note. If you submit it, those fields go to a private Google Sheet that only I can access, and I get an email notification. I use it for one thing: following up with you. It isn't shared, sold, or added to a mailing list. Skip the form and nothing is sent.

If I handed you a card programmed just for you, its link may include your first name, where and when we met, and what we talked about, so the page can greet you. That text is read in your browser and then cleared from the address bar. It is removed from what Google Analytics receives, and it is only stored if you submit the form, in which case it's attached to your entry so I remember the context. To have your entry corrected or deleted, ask through any channel below.

Analytics

Every page loads Google Analytics 4 (gtag.js). It reports the usual aggregate stats to Google on my behalf: which pages get viewed, roughly where visitors are (city-level, derived from IP), and what kind of browser and device they use. I use it to answer exactly one question — is anyone looking at this? — and I don't collect, see, or keep anything beyond what Google's standard reports provide. GA4 does not log or store visitor IP addresses, and I haven't enabled ad personalization or Google Signals. How Google handles the data in transit is governed by Google's own policy. If you'd rather not be counted, the GA opt-out add-on or any common content blocker will do it — no hard feelings.

Third-party resources

The site loads a handful of public CDN resources — typography (Google Fonts), MathJax (Cloudflare CDN), and Leaflet tiles on the flight-tracking page (OpenStreetMap). Loading any of those discloses your IP and User-Agent to the providers in question, which is standard for any website that uses them. Their privacy policies govern that data, not this one.

Cookies

Google Analytics sets two first-party cookies (_ga and _ga_*) to tell returning visitors apart from new ones. They contain a random client ID, not your name or anything you typed. Beyond that, this site sets no cookies of its own — browser localStorage is used only for the dark-mode preference, the reaction-timer best score, and a business-card scan counter. You can clear all of it at any time from your browser's site-data controls.

Your rights

You have the right to know how data about you is collected and used. The analytics data I see is aggregate and pseudonymous — there's no per-person profile on my end to access, correct, or delete. The only personal data I hold is what you choose to send through the business-card form, and you can ask me to correct or delete it at any time. If you believe something on this site collects more than described here, the right place to flag it is the site's GitHub repository.

Contact

For anything else, the public channels linked from the resume page or the about section on the homepage are the right place to start.