Trust and transparency

Privacy policy

OpenDir collects only the information needed to receive, review, and publish software listings. This policy explains the current service behavior.

Information you submit

Project names, URLs, descriptions, categories, tags, repository URLs, and submitter labels are stored in PostgreSQL. Pending and rejected records are available through their high-entropy status URL and to authorized reviewers. Approved listing metadata becomes public.

Service and session data

The reviewer area uses an HTTP-only authentication cookie that expires after eight hours. Theme preferences may be stored in the browser. OpenDir does not currently run advertising or product-analytics trackers.

Zerops and ordinary network infrastructure may process IP addresses, request headers, and operational logs to deliver and secure the service. OpenDir does not intentionally copy raw IP addresses into its application database.

Purpose and retention

Submission data is used to validate listings, prevent duplicate project URLs, conduct human review, publish approved projects, and provide machine-readable receipts. Records and review events are retained while needed to operate the directory and preserve its audit trail.

Your choices

To request correction or removal of a listing, contact the repository owner through GitHub and include the submission or project ID. Do not post private credentials in a public issue.

Changes

Material changes will be reflected on this page and in the public source repository. This policy describes the current implementation and is not a promise that hosting providers never process operational data.

Effective 9 August 2026 · OpenDir Registry 0.2.0