What anonymous means here.
Your public posts and replies do not show your email, real name, or account identifier. You can submit a confession without an account when guest posting is available, or use a private account. Neither option is a promise that your words or activity can never identify you.
Posting without an account.
Guest posting does not ask for an email, create an account, or attach an account identifier to the confession. We store its text, category, community, review status, timestamps, and a protected version of a randomly generated private receipt. Posts enter a private moderation queue before they can appear publicly.
Keep your private receipt somewhere safe. It is the way to check or withdraw a guest submission, and anyone with it can do so. We cannot recover a lost receipt. Your browser history or a saved private link may retain it; do not share it like a public post link. Guest submissions do not appear in an account’s My space or account export.
Submitting through a Google Form.
When you use a connected Google Form, Google and the form’s owner receive your response. Its notice explains the transfer to Looseword and where approved content may be published. Google’s confirmation means the form received your response; it does not mean Looseword has imported or approved it. Visiting Looseword or creating an account is optional.
Looseword imports the mapped confession and topic, or the mapped removal request, together with its community, agreement and notice version, timestamps, and private source and response references. These references help avoid duplicates and honor removal decisions. We do not import respondent email addresses, Google profiles, response edit links, or unrelated answers. Do not include names or identifying details in the text itself. Google can still retain a response that does not qualify for import into Looseword.
A form submission is not linked to a Looseword account and does not receive a Looseword guest receipt. Use the removal form identified in its notice, or contact us below, if you want a moderator to review its removal. You do not need to disclose your real identity. A public post link or enough non-identifying context to locate the content can help; a request alone is not proof of authorship. Removal requests remain private.
Using a private account.
Google handles your Google sign-in. Our authentication provider, Supabase, receives your verified email and basic Google profile information, which can include your name and profile image. These are kept out of public posts and the moderation interface. Looseword does not receive your Google password. Supabase also manages your sign-in sessions. If email accounts are enabled later, Supabase will manage their password credentials.
Looseword stores a private account identifier linked to your submissions, reactions, reports, conversation follows, and account status. For a followed conversation, we store identifiers and approval times for replies already approved when you follow, and replies you later mark read. This does not track whether you actually read the text. Follows are private; unfollowing removes their read markers. Activity shows currently approved replies without storing separate copies of their text. We do not ask for a public username, student number, or precise location. Replies, reactions, reports, and account features require sign-in.
Who can see it.
Readers can see approved content, reactions, and replies. The moderation interface shows content and reports without displaying authors’ email addresses. Operators with database access can access private account relationships. Google, Supabase, Vercel, and Cloudflare process data needed to provide sign-in, storage, hosting, and security.
Appointed community admins receive only their assigned tools and areas. Network owners can see team members’ account emails, their permission assignments, and the private history of access changes. This team list does not identify the authors of confessions. Assignment records and reasons are kept out of public pages.
A residence, faculty, department, or other small community can make details easier to connect to a person. Community labels describe where a conversation is posted; they do not verify where anyone studies or lives. Leave out room numbers, schedules, and other identifying clues.
Cookies and security.
An unfinished website post and its private receipt stay in memory in the current tab while you browse Looseword. They are not written to browser storage or shared with another tab. Reloading or closing the tab loses them. Discard draft erases the retained text and choices; switching accounts clears private account work. Guest work remains separate from account sign-in. Save a confirmed guest receipt somewhere safe before reloading or closing the tab.
Save keeps up to 50 public conversation identifiers in this browser profile, without storing post text or linking the list to an account. Anyone using the profile can see the saved list, including after you sign out. Saved checks each conversation’s current published version when you open or refresh it. Remove a saved link or use Clear in Saved to erase the list; clearing this site’s browser data also removes it.
If you pin a community, its name is saved in this browser so you can find it again. Pins are not added to your account or shown to other readers. Someone using the same browser can see them. You can unpin communities in Explore; clearing this site’s browser data also removes them. Looseword does not automatically save a list of communities you visit.
Hiding conversations stores up to 100 public identifiers in this browser profile, without storing their text or linking the choices to an account. The preferences stay after sign-out and do not sync to other devices. Someone using this profile can restore hidden conversations or clear these preferences. Reading preferences shows the number hidden without loading their text or displaying their identifiers. Hiding does not remove a public post, report it, or block its author. Use Show conversation on its placeholder or Clear hidden list in Reading preferences to undo it; clearing this site’s browser data also removes these preferences.
An admin can explicitly save an export design in this browser. It stores design settings such as a title, colours and layout, without saving the selected confession or account details. People using the same browser profile can load that design. Clear saved in the export studio removes its saved design. Editions can save a separate design for each community; use Clear saved design for that community to remove it. Downloaded template files remain wherever you save them.
Sign-in cookies keep your account session active. Guest submission and receipt requests omit account cookies. Cloudflare Turnstile verifies guest submissions and receives network information for that check. Infrastructure providers may also process network information and operational logs. Looseword does not add advertising trackers.
To limit spam, Looseword stores a code derived from a guest’s network address that changes each day, together with request identifiers and times. We do not store raw network addresses in the application database or directly link those limit records to posts. Records older than 24 hours are removed when a guest submission succeeds; they can remain longer during an idle period. Shared networks may share a posting limit. These controls do not make activity untraceable to hosting providers or prevent timing-based connections between records.
Sharing outside Looseword.
Approved posts have public links and downloadable cards. Other people may copy or share them. Removing a post here cannot remove copies elsewhere. Avoid putting anything in a submission that you would not want someone to recognize.
The export studio draws images locally in the admin’s browser. Public card downloads are rendered on our server and may request font or emoji assets from external providers to display characters in approved public text. Downloading or publishing a card does not change who owns the original submission.
Export and deletion.
Shared links can include a preview of approved post text and its community. Messaging apps and social networks may keep their own preview copies. We request that search engines do not index individual conversations, but that is not an access restriction or a guarantee that text cannot be found. Removing a post here cannot recall previews already held elsewhere.
With a valid guest receipt, withdrawing a confession hides it and its discussion publicly and replaces its stored text with a withdrawal notice. Its identifier, community, status, times, and receipt record remain. Replies, reports, and moderation records may also remain and may contain quoted text. This is not the same as erasing every copy.
Removing an imported form post hides it publicly, scrubs its imported confession text in Looseword, and prevents the same form response from being published again through sync. Private source, response, status, and decision records can remain. The form owner must separately handle the original response and copies in Google Forms, linked Sheets, and exports. Provider backups and copies already shared by others have separate retention; removal here cannot recall them.
My space lets you download your account data and delete your account. Account deletion removes your account-linked posts, replies, reactions, reports, conversation follows, read markers, and authentication account. Your account export includes your follows and read markers. Linked identity references and free-text reasons in the moderation audit are cleared. An audit record of actions and timestamps can remain. Provider backups and security logs expire separately under the provider’s retention practices.
Deleting a team member’s account also removes their assignments and clears account references and free-text reasons in access history where they were the actor or recipient. Records of access actions, areas and times can remain. The last network owner must transfer ownership to an active successor before deleting their account.
Where data is processed.
Our database is hosted in the United States. Hosting, authentication, security services, and backups may also process data in other regions. We do not promise that your data stays in Canada.
Concerns about content.
Use the report action on a post or reply for a privacy or community concern. Account exports and deletion are available in My space. For account support or a privacy concern you cannot report through the site, contact andy.v3sr@gmail.com. We will keep this notice aligned with changes to the service.