Scope of this policy
This Privacy Policy explains how Biomogging (“Biomogging,” “we,” “us,” or “our”) collects, uses, and shares information when you visit biomogging.com or any subdomain (the “Site”). By using the Site, you agree to the practices described here. If you do not agree, please do not use the Site.
This policy applies only to Biomogging. It does not cover third-party sites we link to, including scientific publishers, regulatory bodies, news outlets, and community platforms. Those sites have their own privacy practices.
Information we collect
We collect a limited set of information, in the following categories.
Information you provide directly. If you create an account, subscribe to a newsletter, post a comment, contact us, or fill in a form (e.g. the looksmax quiz), we collect the information you submit. That may include an email address, a username, a password hash, your message contents, and any quiz answers you choose to enter.
Information collected automatically. When you visit the Site, our servers and supporting infrastructure automatically receive limited technical information, including:
- IP address (used transiently for security, rate limiting, and abuse prevention).
- Browser user agent and operating system.
- Referring URL and the pages you request.
- Approximate geolocation derived from IP (country / region only).
- Performance and error telemetry (e.g. how long a page took to render, what errors occurred) so we can fix bugs.
Cookies and local storage. We use a small number of first-party cookies and browser local-storage entries that are strictly necessary for the Site to function — for example, to remember your theme preference (light/dark), keep you signed in if you have an account, and remember your view preferences (e.g. compact vs. list view on the compound library). We do not run banner ads, do not embed third-party advertising tags, and do not participate in cross-site behavioural ad networks. The one nuance: when you click an outbound affiliate link, the destination vendor (and their affiliate network) may set their own cookies on their domain and receive an attribution identifier so any commission can be credited to us. That happens on their site under their privacy policy, not ours — see the “Affiliate links” section below for detail.
Sensitive categories. Some content on the Site relates to compounds whose status is regulated, prescription-only, or controlled in many jurisdictions. We treat your reading patterns and quiz answers around this content as sensitive: we do not sell them, we do not share them with vendors, and we do not use them to build advertising profiles.
How we use information
We use the information we collect only for the following purposes:
- To operate, maintain, and secure the Site.
- To respond to messages you send us, including bug reports, content corrections, and partnership inquiries.
- To deliver content you have explicitly requested, such as a newsletter, a calculator result, a quiz outcome, or an account-related email.
- To detect, prevent, and respond to abuse, fraud, scraping, spam, and security incidents.
- To understand which content is useful and where the Site is broken, in aggregate. This means counts and trends, not individual profiles.
- To comply with legal obligations and enforce our Terms of Use.
We do not sell or rent your personal information to data brokers, compound vendors, supplement brands, or pharmacies; we do not hand over your reading history, quiz answers, account email, or other identifying data to any vendor we have a commercial relationship with; we do not build cross-site behavioural advertising profiles; and we do not train third-party generative AI models on identifiable user content. (See also “Affiliate links” below — affiliate commissions are paid to us by the vendor based on clicks and purchases, not by handing over data about you.)
Legal bases (EEA / UK)
If you are in the European Economic Area or the United Kingdom, we rely on the following legal bases under the GDPR / UK GDPR:
- Legitimate interests — to operate, secure, and improve the Site (e.g. server logs, error telemetry, abuse prevention).
- Performance of a contract — to provide accounts, subscriptions, and other services you have requested.
- Consent — for any optional features or communications that require it (e.g. opting in to a newsletter). You can withdraw consent at any time.
- Legal obligation — to comply with applicable law and lawful requests.
Affiliate links
Some outbound vendor links on compound, stack, and related pages are affiliate links. The full editorial policy lives in our affiliate disclosure; this section is just about the privacy mechanics.
What gets shared when you click an affiliate link:
- The link contains a referral / affiliate identifier in the URL (or in a short redirect through the affiliate network) that tells the vendor “this click came from Biomogging.”
- The vendor or their affiliate network typically sets a cookie on their domain (not ours) so that if you complete a purchase within their attribution window, the commission is credited to us.
- We receive aggregate reporting from the affiliate network — typically counts of clicks, qualifying orders, and commission earned. We do not receive your name, email, address, payment details, order contents, or any other personal information about you.
What we do not do: we do not pass your account email, reading history, quiz answers, or any other identifying information to vendors or affiliate networks. We do not load third-party tracking pixels, analytics tags, or advertising scripts from vendors on Biomogging itself.
Your choices. If you’d prefer not to be tracked by the destination vendor, you have a few options: copy the vendor name and navigate to their site directly (you’ll get the same product at the same price), use your browser’s tracking-protection settings, or use a private browsing window before clicking the link.
Once you’re on the vendor’s site, their privacy policy — not ours — governs what they collect and how they use it.
Data retention
We keep personal information only for as long as needed for the purpose it was collected. Concretely:
- Server access and security logs: short rolling retention (typically 30–90 days), then deleted or aggregated.
- Account information: retained while your account is active, and for a reasonable period afterwards if needed to comply with legal obligations or resolve disputes.
- Email correspondence: retained for as long as reasonably needed to handle your inquiry and any follow-up.
- Aggregate analytics: may be retained indefinitely once de-identified and aggregated.
Your rights and choices
Depending on where you live, you may have rights under laws like the GDPR / UK GDPR, the California Consumer Privacy Act (CCPA/CPRA), and similar regimes, including the right to:
- Access, correct, or delete personal information we hold about you.
- Object to, or request that we restrict, certain processing.
- Receive a portable copy of information you provided to us.
- Withdraw consent for any processing based on consent, without affecting the lawfulness of prior processing.
- Lodge a complaint with your local data-protection authority (e.g. the ICO in the UK, your national supervisory authority in the EEA).
To exercise any of these rights, contact us using the address in the Contact section below. We may need to verify your identity before responding. We will never charge you to exercise your rights, and we will not retaliate against you for doing so.
Do Not Track / Global Privacy Control. Biomogging itself does not rely on cross-site tracking, behavioural ad networks, or sale of personal information, so DNT and GPC signals do not change much on our side — we already don’t engage in the practices those signals are designed to limit. Outbound affiliate links to third-party vendors are governed by those vendors’ own DNT / GPC handling and privacy policies.
Minors
Biomogging is intended for adults of legal age in their jurisdiction (generally 18+, 21+ where required). We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided information to us, please contact us and we will delete it.
Security
We use reasonable technical and organisational measures to protect the information we hold — including encryption in transit (HTTPS), hashed passwords, access controls, and standard hardening of our infrastructure. No system on the public internet is perfectly secure, and we cannot guarantee absolute security. Use a strong, unique password if you create an account.
International transfers
Biomogging is operated for a global audience. Information you provide may be processed in countries other than your own, including the United States and the European Union, where data-protection laws may differ. Where required, we rely on appropriate safeguards (such as standard contractual clauses) for international transfers.
Changes to this policy
We may update this policy from time to time. The “Last updated” date at the top of the page reflects the most recent revision. For material changes, we will take additional steps to inform users (for example, a banner on the Site or an email to account holders).
Contact
Questions, requests, or complaints about this policy or our handling of your information can be sent to contact@biomogging.com. We aim to respond within a reasonable time and, where required by law, within the statutory deadline.