Fahim Wayez

Privacy Policy

Last updated: August 1, 2025

This Privacy Policy describes how Fahim Wayez's Portfolio collects, uses, and shares your information when you use https://www.fahimwayez.com and related services including OAuth sign-in with Google.

1) Information Collected

  • OAuth Profile Data: When you sign in with Google, your basic profile information from the provider, such as your email address, display name, and profile image (avatar) are recieved.
  • Account & Auth Data: An account record for you is created/maintained to store an access token in your browser (localStorage) and set a secure HTTP-only refresh token cookie to keep you signed in. No passwords are stored.
  • Content You Provide: Comments you post on blog articles and any other user-generated content, plus timestamps and minimal metadata.
  • Technical Data: IP address and user agent may be logged for security, fraud prevention, and debugging.
  • Media Storage: Images/videos for blog content may be hosted via Cloudinary.

2) How Information are Used

  • Authenticate you and maintain your session (access/refresh tokens).
  • Enable features such as voting and commenting on blog posts.
  • Operate, secure, and improve the Site and Services.
  • Communicate important updates or respond to your messages.
  • Comply with legal obligations and enforce our Terms.

3) Cookies & Local Storage

A secure, HTTP-only cookie is used to store your refresh token (valid for up to 1 year) and localStorage to store your short-lived access token (about 15 minutes). The refresh token allows to issue a new access token without requiring you to log in again. If you clear site data or cookies, you may need to sign in again.

4) Sharing of Information

  • OAuth Providers: Google provide your profile data per your authorization. Your account data is not shared back to them except as required by each provider's authentication flow.
  • Service Providers: Third-party vendors might be used for hosting, media delivery (e.g., Cloudinary), and email. These vendors process data on behalf of this site under appropriate safeguards.
  • Legal & Safety: Information may be disclosed if required by law, to protect rights, security, and integrity of users and the Site, or to enforce our Terms.

5) Data Retention

Account data is retrained as long as your account is active and as needed to provide the Services. Refresh tokens may be rotated or revoked. You can request deletion of your account and related personal information by contacting at contact@fahimwayez.com. Certain logs may be retained for security and legal compliance.

6) Your Choices

  • Revoke Access: You can revoke the app's access from your Google Account settings.s
  • Access/Deletion: Contact at contact@fahimwayez.com for data access or deletion requests.

7) Google OAuth Disclosure

The use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.