What I collect
This page is the privacy policy for cooperdelo.com and the private admin tools at cooperdelo.com/admin. It also covers third-party API integrations (Instagram, TikTok, YouTube, Spotify, Strava, etc.) that connect those services to my personal admin dashboard.
I'm Cooper Delo, a solo creator. I built and personally operate everything on this domain. No company. No team. No third-party analytics vendor selling your data.
What this site collects from visitors
The public pages of cooperdelo.com (Home, Music, Athletic, Lens, Plugverse, Now) are static HTML. They do not run analytics scripts, do not set cookies, and do not log visitor IP addresses anywhere I control.
The site is hosted on Vercel. Vercel may collect standard server logs (IP address, request URL, user agent) for the purpose of delivering the site and protecting against abuse. Vercel's own privacy policy governs that data — see vercel.com/legal/privacy-policy.
What the admin area at /admin collects
The admin area is private and gated by magic-link authentication. Only my email address is on the allowlist. No one else can sign in or see any data inside it.
Inside the admin, I store data about my own life and projects in a private Supabase database I control: financial transactions, merchandise inventory, investment positions, and analytics snapshots pulled from the third-party APIs I authorize (see below). I do not collect, store, or process data about other people through the admin area, except where another person's name appears in a transaction record that I personally entered (e.g., merch sale to "Jake").
Third-party API integrations
The admin dashboard connects to several third-party APIs to pull my own data from those services into one place. When I authorize an app I created with one of these providers, the resulting access token is stored encrypted in my private database and is used only to read my own account data.
- Instagram / Meta: reads my Instagram posts, view counts, reach, and engagement metrics. Subject to Instagram's privacy policy and Meta's privacy policy.
- TikTok: reads my own posted videos and their per-video metrics (views, likes, comments, shares). Subject to TikTok's privacy policy.
- YouTube / Google: reads my own channel and video analytics. Subject to Google's privacy policy.
- Spotify: reads my own listening history, top tracks, and saved music. Subject to Spotify's privacy policy.
- Strava: reads my own workout activities. Subject to Strava's privacy policy.
- Stripe: reads payments and payouts for businesses I operate. Subject to Stripe's privacy policy.
- Supabase: hosts my private databases. Subject to Supabase's privacy policy.
None of this data leaves my admin database. I do not share it with anyone. I do not sell it. I do not use it to advertise anything to anyone.
Cookies, ads, and trackers
I do not run advertising. I do not embed third-party tracking pixels (no Google Analytics, no Meta Pixel, no Hotjar, none). The only cookies set anywhere on this domain are the session cookie used by the admin login, and that cookie is only ever set in my own browser.
How long I keep data
I keep API-synced data and personal records indefinitely while I'm actively using the admin tools. If I delete an integration or shut down a feature, the corresponding data is removed within 30 days.
Your rights
If you appear in a personal record I keep (e.g., a contact, a merch buyer, a person owed money), you can email me to ask what I have, request a copy, or ask me to delete it. I will respond within 14 days.
Contact
Email: cooperdelo6@gmail.com
Based in Chapel Hill, North Carolina, United States.