CH-J Server Managerserver management over SSH
GDPR AND PRIVACY

How we handle data

This page transparently describes the data processed by the CH-J Server Manager website, its purpose, retention, and your rights.

Updated 9 August 2026
01

Data controller

Josef Chudy is the controller of this website and its community service. Use the contact email for questions or data subject requests.

support@sm.ch-j.de

02

Data we process

  • Technical server logs may contain the IP address, time, requested path, response status, and User-Agent.
  • Essential cookies maintain the secure session, language, and privacy choice. An optional random visitor identifier is set only with consent.
  • The site separates estimated devices, visits, and page views. Without the optional cookie it uses a one-way HMAC of the IP address, User-Agent, and language; this is not an exact hardware fingerprint. A new visit starts after 30 minutes of inactivity. Original values are not stored, and the record is retained for no more than 365 days after the last visit.
  • The download counter stores the release ID, cumulative count, time of the last request, and a temporary pseudonymous HMAC to prevent duplicate counting. A repeat request from the same device within 10 minutes does not increase the count; helper HMAC records are removed after 30 days.
  • The community stores the published name or nickname, text, language, and time. The IP HMAC used for spam prevention is removed from the post after no more than 1 hour when storage is next processed.
  • Administrator login stores an IP HMAC and failed-attempt times. After three failures, the IP is blocked for 24 hours. A successful session expires after inactivity.
03

Purposes and legal basis

Data is processed to operate the service securely, distribute the application, prevent abuse, provide community features, and measure visits and initiated downloads in a pseudonymised form. Essential processing is based on the legitimate interest in secure operation; the optional visitor identifier is based on consent, which can be withdrawn at any time.

04

Retention

Counter identifiers are retained for up to 365 days after the last visit and community anti-spam HMACs for up to 1 hour when storage is next processed. Failed attempts are evaluated in a 15-minute window; an active IP ban and its HMAC remain for 24 hours. Public community content remains until removed by an administrator or following an author request. Technical logs are subject to server rotation.

05

Recipients and transfers

The site does not use third-party advertising or analytics services. Data may be technically processed only by server, network, and email infrastructure providers necessary to provide the service. No automated decision-making or profiling is used.

06

Your rights

Subject to applicable law, you may request access, rectification, erasure, restriction, or portability and may object to processing. You can withdraw consent at any time and lodge a complaint with the competent supervisory authority.

07

Cookies and privacy choice

You can reopen your choice at any time. Rejecting removes the optional random identifier; essential cookies and one-way security or anti-spam identifiers remain active for basic operation.

Cookie settings
08

Security

We use HTTPS, a restricted administration interface, CSRF protection, security headers, access controls, and one-way HMAC identifiers. No method can guarantee absolute security.

09

Contact and requests

Include enough information to locate the relevant content, but never send passwords or private keys. Contact support@sm.ch-j.de.