AniimoShare

Privacy policy

Updated: 6 October 2026

This policy explains personal data processing on aniimoshare.com. Public content can be read without an account. Active community features require Discord sign-in.

1. Controller

Maurice Bothe, Tischbeinstr. 14, 34121 Kassel, Germany. Privacy contact: admin@mauricebothe.dev. Telephone: +49 160 92067220.

2. Hosting and technical access data

The platform is hosted by Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany, on a server in Helsinki, Finland. Delivering and securing the service involves IP addresses, timestamps, requested URLs, HTTP status codes, browser information and, where provided, referring pages. The legal basis is Article 6(1)(f) GDPR: our legitimate interest in a secure, available service. Hetzner provides technical hosting services. Access and error logs rotate at limited file sizes, so retention is not a fixed number of days. Necessary extracts may be retained until a security incident is resolved.

Hetzner privacy policy

3. Discord login and avatars

Sign-in redirects you to Discord. We request only the identify permission and receive your Discord user ID, display name and avatar URL, not your email address or server lists. Your password stays with Discord; OAuth access tokens are not permanently stored in our user database. Profile details identify your account under Article 6(1)(b) GDPR and are required to sign in. Avatars load directly from the Discord CDN, which receives your IP address and technical request data under Article 6(1)(f) GDPR, our interest in displaying and identifying community profiles. Discord independently controls its own processing, which may occur outside the EU/EEA, including in the United States. See its policy for recipients and international transfer safeguards.

Discord privacy policy

4. Public content and community features

Display names, avatars, public posts, codes, uploaded images, discussions and comments are visible to visitors and may be indexed by search engines and AI search services. Do not publish confidential information. We also store timestamps, account associations, likes, private bookmarks, copy counts and moderation status where applicable. Article 6(1)(b) GDPR covers the requested community features. Bookmarks are accessible only to their account holder. Discord IDs and login details are not displayed in public profiles.

5. Reports and moderation

Reports store the reporting account, affected content, reason, optional note and handling status. Authorized moderators can access them for review. Legal bases are Article 6(1)(f) GDPR (community protection, abuse prevention and legal claims) and Article 6(1)(c) where a legal obligation applies. We do not make solely automated decisions with legal or similarly significant effects.

6. Cookies and local storage

Technically necessary cookies support sessions, CSRF protection, login and an expressly selected language. Session cookies expire after 120 minutes of inactivity; persistent login and language cookies may last up to 400 days. You can delete them in your browser, which may sign you out. Legal bases are § 25(2)(2) TDDDG and Article 6(1)(b) or (f) GDPR, depending on purpose. No analytics, advertising or tracking pixels are currently used. Fonts are not loaded from external font providers.

7. Contact requests

If you email or call, we process your contact details and message to respond. The basis is Article 6(1)(b) GDPR for contractual requests, otherwise Article 6(1)(f), our interest in responding. Correspondence is deleted when handling is complete and further retention is unnecessary, subject to statutory retention obligations.

8. Retention and deletion

Account details are retained while the account exists. Published content remains available until deletion or necessary moderation. You can delete your own posts and discussions through the provided controls. For account deletion or other deletion requests, contact admin@mauricebothe.dev. Moderation records are kept only as long as necessary for abuse prevention, handling or legal claims. Database and upload backups are created daily and normally removed after 14 days. Deleted information may remain in protected backups until then; deletion requests are respected if a backup is restored.

9. Recipients and security

Access is limited to the operator, authorized moderators within their duties and technical service providers. Public content is accessible worldwide. Authorities or legal advisers receive data only where a legal basis applies. Connections are HTTPS encrypted; credentials and backups are access restricted.

10. Your rights and objections

Subject to GDPR conditions, you have rights of access (Article 15), rectification (16), erasure (17), restriction (18) and portability (20). You may object to legitimate-interest processing on grounds relating to your particular situation (21). Any consent can be withdrawn prospectively. Contact admin@mauricebothe.dev to exercise your rights. We may request proportionate evidence to verify your identity.

11. Complaints and changes

You may complain to a supervisory authority, particularly where you live, or to the Hessian Commissioner for Data Protection and Freedom of Information. We update this policy when features or processing change.

Contact the Hessian supervisory authority

admin@mauricebothe.dev · Legal notice