Skip to content

Privacy Policy

Last updated on the system

Privacy Policy

Effective date: 5 August 2026

This Privacy Policy explains how Frontend Forever, operated from Tamil Nadu, India, collects, uses, shares and protects information when you use https://frontendforever.com, the API or the Android application. Contact admin@frontendforever.com for privacy questions or requests.

1. Information we collect

Depending on the features you use, the Service may process:

  • Account and profile data: email address, username, display name, avatar, biography, website, social links, location, company, plan, notification preferences, verification state and profile settings.
  • Content and community activity: elements and code, images, blog posts, comments, favorites, follows, collections, reports, badges, reputation, notifications and moderation history. Public profile and published content can be visible to other users and returned by public search, feeds, leaderboards and API endpoints.
  • Authentication and security data: password hashes, one-time-code hashes and expiry information, reset-token hashes, session identifiers, device name, user-agent, IP address or approximate location, failed-login and lockout details, two-factor authentication secrets/recovery-code hashes, and sign-in history. We do not expose password or token secrets in normal profile responses.
  • Billing and support data: plan and subscription records, store or gateway identifiers, invoice number, amount, currency, billing date, payment status, purchase/order reference, customer messages and support correspondence. Payment providers process card or bank details directly; the application stores provider references rather than full card numbers.
  • Device and notification data: Firebase or web-push registration tokens, platform, browser/device metadata and notification delivery information when you opt in to push notifications.
  • Usage and optional analytics: request and error logs, feature usage, performance information and Firebase Analytics events only after optional analytics consent on the web. Required operational logs may still be collected for security and reliability.
  • Communications: newsletter subscriptions, email-digest preferences and delivery status when you subscribe or enable them.

We collect information from you, from your use of the Service, from authentication or payment providers when you connect them, and from reports or support messages submitted by users.

2. How we use information

We use information to create and authenticate accounts; deliver profiles, feeds, search, previews, favorites, comments and collections; publish and moderate content; calculate reputation and badges; send transactional, push and opted-in email notifications; process and reconcile subscriptions; issue invoices; respond to requests; export or deactivate accounts; prevent abuse and fraud; secure and debug the Service; measure performance when analytics consent is given; and comply with law or enforce our Terms.

We do not sell personal information. We do not use private submissions as public examples unless you publish them or separately authorise that use.

3. Public information and sharing

Information you choose to make public, such as a username, display name, avatar, profile fields, published elements, blog posts, comments, favorites, follows, leaderboard position and reputation, may be visible to anyone and copied by other users. Do not publish information you need to keep confidential.

We share or permit access to information only as needed to provide the Service, including with:

  • hosting, database, caching, storage, monitoring and security providers;
  • Firebase authentication, messaging and (when consented) analytics services;
  • payment gateways and Google Play for checkout, purchase verification, refunds or subscription management;
  • email and push-notification delivery providers;
  • moderators, administrators and service providers who need it to review reports, operate support, or investigate abuse; and
  • authorities, advisers or other parties when required by law, to protect rights and safety, or during a corporate transaction.

Providers may process information outside India. We require appropriate contractual, technical or organisational safeguards where applicable, but no internet transmission is guaranteed to be completely secure.

4. Retention

We retain information for as long as needed for the purposes above. Public content can remain available while published. When an account is deleted, the current implementation soft-deactivates it and removes normal public access; related content, invoices, payment records, security logs, moderation records, backups or records needed for another user’s activity may be retained for legitimate operational, fraud-prevention, dispute-resolution or legal reasons. We delete or anonymise information when it is no longer needed, subject to those exceptions.

5. Your choices and requests

Subject to applicable law and reasonable verification, you may request access to, correction of, export of, or deletion/deactivation of your account information. The account area provides data-export and account-deactivation flows; you can also email admin@frontendforever.com. You may update profile and notification settings, unsubscribe from newsletters or email digests, revoke push permission in your device/browser, and withdraw optional analytics consent through the Cookie settings. Withdrawing consent does not affect processing that is necessary to provide the Service or required by law.

We may need to keep a limited record of a request, identity-verification evidence, invoices, security events or moderation decisions. We will respond within the period required by applicable law and explain if a request cannot be completed in full.

6. Security

The Service uses measures such as password hashing, HttpOnly authentication cookies, token expiry and rotation, rate limiting, input validation, access controls, encrypted transport where configured, and removal of secrets from normal user responses. Security is not absolute. If you discover a suspected vulnerability or account compromise, contact admin@frontendforever.com promptly and do not exploit it.

7. Children

The Service is not directed to children who cannot lawfully consent to online services. If a parent or guardian believes a child provided personal information without appropriate permission, contact us at admin@frontendforever.com so we can review the account and applicable request.

8. Changes and contact

We may update this Policy when the Service, law or processing changes. We will publish the revised version with a new effective date. Contact: Frontend Forever, Tamil Nadu, India — admin@frontendforever.com.

This Policy is a product disclosure describing the current application; it is not a substitute for advice about a particular legal or regulatory situation.