Privacy Policy
Last updated October 2, 2026
This explains what wecrates collects, why, and what you can do about it. We collect as little as we need to run the site and never sell your data.
What we collect
- Account: email address, a hashed password (we never see it), and sign-in details from Discord or Google if you use them.
- Profile content: everything you add — name, bio, links, images, music, widgets and settings. Your public profile is visible to anyone.
- Integrations: account IDs and access tokens for services you connect. Tokens are encrypted at rest.
- Visitor analytics: profile views, link clicks, rough device type and referring site. We don't store IP addresses: visitors are counted with a one-way hash that changes every day, so nobody can be tracked across days.
- Safety: reports, likes, guestbook posts and moderation records, plus short-lived rate-limit counters to stop abuse.
Cookies
- A login session cookie, only while you're signed in.
- A random anonymous ID so visitors can like a profile once. It contains nothing about you.
No advertising or cross-site tracking cookies.
Services we use
- Vercel (hosting and file storage) and Neon (database).
- Resend (sending account emails such as password resets).
- Lanyard, Spotify, GitHub, Twitch, YouTube and Steam — only for integrations you turn on.
Your choices
- Edit or hide anything on your profile, or unpublish it, at any time.
- Disconnect integrations from the Integrations page; their tokens are deleted.
- Delete your account in Settings — your profile, links, uploads metadata, analytics and connections are removed.
- Contact us to request a copy of your data.
Children
wecrates isn't meant for children under 13, and we don't knowingly collect their data.
Changes
We'll update this page if anything changes and adjust the date at the top.
Questions? Reach the staff team through our Discord.