Last updated: August 31, 2026
Privacy Policy
Pásame Exámenes is an educational, open-source website with no sign-up or visible accounts. It keeps preferences and study progress in the browser, uses Appwrite for weekly presence, and analyses use to find errors and improve the website.
Controller
The controller for this website is Pablo Portas López. You can contact the controller about privacy matters at pablo.portas@udc.es.
Data We Process
The website may process technical access data, local preference data, local study progress, weekly presence, and analytics data.
- Technical data: IP address, browser, device, requested URL, referrer, language, date and time, and similar server or CDN logs.
- Local preferences: student name, selected language, selected theme, interface sound volume, selected question sources, viewed tours, GitHub star popup state, and recently visited subjects.
- Study progress stored locally: attempts, scores, topics, and subject progress saved in your browser.
- Weekly presence: last-visit time linked to an anonymous Appwrite technical identifier. The student name is only published when you choose to share it and it passes the content filter; the Umami identifier is not stored.
- Analytics data: page views, interaction events, performance data, approximate device/browser information, the non-unique student name, appearance and language preferences, and an anonymous local identifier for Umami.
- Session replays and heatmaps in the self-hosted Umami instance, enabled with a random 30% sample rate.
- Temporary GitHub star-count cache stored in session storage after requesting public repository data from GitHub.
Purposes
Data is processed only for purposes connected to operating, securing, measuring, and improving the website.
- Provide the website and route requests through hosting and CDN infrastructure.
- Remember your language, theme, recent subjects, tours, and dismissed prompts.
- Save study progress locally so you can continue practicing on the same device.
- Show the weekly student count and Blobatars.
- Measure usage, performance, errors, navigation patterns, and feature interactions.
- Improve content, usability, accessibility, and reliability.
- Prevent abuse, diagnose technical issues, and maintain security.
Legal Basis
Under the GDPR, the main legal basis is legitimate interest: keeping the website available, secure, understandable, and useful for students. This includes analytics, performance measurement, heatmaps, and session replays, which are limited by data minimization and a 30% random sample rate for replays and heatmaps.
Local preferences and progress are processed to provide the functionality requested by the user. Legal obligations may also apply where necessary.
Local Storage
Most study-related data is stored only in your browser through localStorage or sessionStorage. It is not part of a user account and may be deleted by clearing this website's data in your browser settings.
The anonymous Umami identifier is also stored locally as umami_uid. Deleting this site's local data resets that identifier and removes locally stored preferences and progress.
Appwrite creates an anonymous session to distinguish visits from the same browser. It does not require sign-up, but it cannot be recovered if the browser clears its data.
Analytics, Replays, and Heatmaps
Analytics are collected with a self-hosted Umami instance at analytics.pablopl.dev. Umami is operated by the controller for this website; data is not sent to Umami Software as a cloud analytics provider.
The student name is sent as a session attribute alongside the anonymous local Umami identifier; it is not used as a unique identifier. The active language and appearance preferences are also sent.
Umami is configured to respect Do Not Track for the standard analytics script. Session replays and heatmaps are used to understand usability problems and are sampled randomly at 30% of visits.
Ahrefs Analytics is also used to understand traffic and website performance. Ahrefs processes data according to its own privacy policy.
Retention
Weekly presence data is deleted from Appwrite after eight days. Local browser data is kept until you delete it or your browser removes it. Analytics and technical data are kept for the time necessary to produce statistics, improve the service, diagnose incidents, and maintain security. Aggregated or anonymized data may be kept longer where it no longer identifies a user.
International Transfers
Some external providers may process data outside the European Economic Area. Where this happens, it is handled under the safeguards described in each provider's privacy policy or data processing terms. The self-hosted Umami setup does not imply a transfer of analytics data to Umami Software.
Your GDPR Rights
You may request access, rectification, erasure, restriction, portability, or object to processing where applicable. You may also lodge a complaint with a data protection authority.
To exercise your rights, email pablo.portas@udc.es. Because there are no accounts, some data may only exist in your browser and can be deleted directly by clearing this site's local data.
Changes
This policy may be updated when the website changes its data practices, analytics configuration, or providers. The latest version is available from the footer of the website.
External Providers and References
These providers or references are relevant to the operation and measurement of the website:
Vercel
Hosting and deployment infrastructure.
Privacy policyCloudflare
CDN, security, caching, and traffic delivery.
Privacy policyAppwrite
Weekly-presence backend that stores the last visit for each anonymous session and only shows names shared voluntarily.
Privacy policyUmami
Self-hosted analytics software used at analytics.pablopl.dev; linked as software documentation/reference, not as a cloud processor for this site.
Umami privacyUmami Docs
Documentation for tracker functions and collected analytics payloads.
Tracker docsAhrefs
External analytics for traffic and website performance.
Privacy policyGitHub
Repository hosting and public API used to display the repository star count.
Privacy statement