Last updated: September 24, 2026.
This policy is available in two versions below: a more formal version first, followed by a plain-English summary.
Legal English
Who We Are
Crosscurrent Code is published at https://jadmadi.net and operated by Jad.
Information We Collect and Why
Contact Page Data
If you use the contact page, you may enter the following information into the form:
- Name
- Email address
- Phone number (optional)
- Message content
The form is protected by Cloudflare Turnstile. Turnstile receives a short token from your browser and your IP address so Cloudflare can confirm the request is human.
When you submit the form, the siteโs own endpoint on Cloudflare Workers receives your name, email address, phone number, and message. It sends the message through Resend, our email delivery provider, to contact@jadmadi.net, and sends a short confirmation email back to the address you provided. We do not store contact form submissions in a database.
We use this information to:
- let you contact us;
- reduce automated spam through Turnstile; and
- respond to inquiries you choose to send.
๐ (Twitter) Sign-In and Cloud Synchronization Data
Certain interactive tools on this site (such as the 91 Places launch tracker) allow you to optionally sign in with your ๐ account to sync your progress across devices.
When you choose to โSign in with ๐โ, we process your login using the standard
OAuth 2.0 Authorization Code Flow with PKCE (Proof Key for Code Exchange).
We request the minimal read scope (users.read).
Through this authentication flow, we receive and store:
- your ๐ User ID (a permanent numeric identifier);
- your ๐ handle / username;
- your display name; and
- your profile avatar URL.
We never request, receive, or store your passwords, private direct messages, email address, contacts, or posting permissions.
When signed in, any progress or records you modify in our interactive tools
(such as platform submission statuses) are stored in our Cloudflare D1
database (crosscurrent-db) and linked to your ๐ User ID. This allows you to
retrieve your progress seamlessly across different browsers and devices.
Local-First / Anonymous Use: You are never required to sign in to use
our tools. Unauthenticated visitors have their records saved entirely within
their local browser storage (localStorage). No server database entries are
created for anonymous use.
Request and Delivery Data
Like most websites, this site is delivered through third-party infrastructure. When you visit the site, infrastructure providers such as Cloudflare may process standard request data such as:
- IP address;
- browser and device information;
- requested URL;
- time of request; and
- basic security and performance diagnostics.
This information is generally used for website delivery, caching, abuse prevention, performance, and security.
RSS and โSubscribeโ
The siteโs โSubscribeโ links currently point to the RSS feed. They do not create a newsletter account, mailing list subscription, or user profile on this site.
Cookies and Similar Technologies
We use cookies strictly where functionally necessary:
- Authentication Session Cookie: When you sign in with ๐, we issue an
encrypted,
HttpOnly,SameSite=Laxsession cookie (cc_session) to keep you authenticated while you use synchronized tools. This cookie is used solely to identify your session and is never used for third-party tracking or advertising. - Analytics: We use Cloudflare Web Analytics, a cookieless measurement
service. It loads a small script from static.cloudflareinsights.com and
reports aggregated page views to Cloudflare through our own
/cdn-cgi/rumendpoint without using persistent tracking cookies.
You can manage or block cookies and scripts in your browser settings.
Embedded Content and External Services
Articles may sometimes include embedded or linked third-party content, such as media players, videos, or social content. If you interact with those services, they may collect data about you according to their own terms and privacy policies. Analytics scripts are described above in Cookies and Similar Technologies.
AI-Assisted Editorial Workflow
Some articles may be drafted or edited with AI assistance. That editorial workflow is about content production and does not, by itself, require sending visitor-submitted personal data to AI services as part of normal site browsing.
Who We Share Data With
We do not sell your personal data.
Depending on how you use the site, information may be processed by:
- Cloudflare for edge hosting, caching, routing, D1 database storage, Turnstile verification, and cookieless analytics;
- X Corp (๐ / Twitter) when you initiate the OAuth 2.0 sign-in flow;
- Resend and the email providers involved when you use the contact form; and
- third-party content providers if you interact with embedded or externally hosted content.
How Long We Retain Data
- Emails you send us: We may retain correspondence for as long as reasonably necessary to respond, keep records, or manage ongoing communication.
- Account and Progress Data: Your ๐ profile information and tool progress stored in Cloudflare D1 are retained until you request deletion.
- Infrastructure or request logs: These are generally retained according to the policies and retention windows of the infrastructure providers involved.
Your Rights
Depending on your jurisdiction, you may have rights to request access to, correction of, or deletion of personal data we hold about you.
You may request complete deletion of your synchronized tool records and ๐ account profile data from our database at any time by contacting jad@jadmadi.net. We may ask for reasonable verification (such as confirming control of the associated ๐ handle) before fulfilling the request.
Where Data May Be Processed
Because this site relies on global edge infrastructure providers and email systems, your data may be processed in multiple jurisdictions depending on where you are located, which services you use, and where those providers operate.
Security
We take reasonable technical precautions to keep the site and your synchronized data secure, including encryption in transit (HTTPS/TLS) and secure HttpOnly cookie handling. However, no transmission method or storage system is guaranteed to be 100% secure.
Childrenโs Privacy
This site is intended for a general audience and is not knowingly directed at children under 13. If you believe a child has provided personal information, please contact us.
Changes to This Policy
This policy may be updated from time to time. When it changes, the updated version will be posted on this page.
Contact
For privacy questions, email jad@jadmadi.net or use the contact page at https://jadmadi.net/contact.
Plain English
The Short Version
Crosscurrent Code is a personal site run by Jad.
If you use the contact page, your name, email, phone number, and message go to the siteโs own endpoint on Cloudflare after a Turnstile human check, then travel through Resend to my inbox. You get a short confirmation email back. The site does not keep a copy in a database.
If you use interactive tools like the 91 Places Launch Tracker, everything works out of the box without an account. Your submission checkboxes are saved directly in your own browserโs storage.
If you choose to click โSign in with ๐โ to back up or sync your progress across devices, we ask ๐ for your public handle, name, and avatar, and we save your platform progress under your ๐ ID in a Cloudflare D1 database. We never get your password, private messages, email address, or ability to tweet.
The site uses cookieless Cloudflare Web Analytics to count page views.
What We Collect
- If you use the contact page: name, email, optional phone, message.
- If you sign in with ๐: public ๐ ID, username, name, avatar, and your saved tracker statuses.
- If you browse anonymously: standard edge request logs (IP, browser type, page requested) for security and speed.
What We Do Not Do
- We do not sell your data.
- We do not run third-party tracking or advertising cookies.
- We do not ask for ๐ account permissions to post, tweet, or read direct messages.
- We do not force you to sign in to use our tools.
Your Choices
- Use tools anonymously: Leave unauthenticated and use local browser storage.
- Delete account data: Email jad@jadmadi.net from or referencing your ๐ handle, and we will purge your record from our D1 database.
- Block scripts/cookies: You can block scripts or cookies in your browser; the site prose will still load.
Final Note
No website is perfectly private or perfectly secure, but this policy is meant to describe the current setup honestly and plainly.