How this site handles your information
This site (sklopossa.com) collects information only when you choose to send it through one of its forms or unlock the literary-agent materials. This page describes what each one collects, where it goes, and how to ask for a correction or deletion.
Who runs this site
S.K. Lopossa is the author and operator. Contact: contact@sklopossa.com. The author name is a pen name; no other personal details are published here.
The services involved
- Netlify hosts the site and its small server-side functions, and stores submissions from the contact and access-request forms. Like any host, Netlify may also keep its own technical logs (such as IP addresses and request details); those are managed by Netlify under its own policies, not by this site.
- Supabase stores the database behind the literary-agent materials area (registrations, sessions, and download activity) and the private file storage for the manuscript materials.
- Kit holds the book-release notification list and sends the confirmation email.
- Google Fonts serves the typefaces; your browser requests them from Google when a page loads.
Nothing on this site uses advertising trackers or analytics scripts.
What is collected, by purpose
These five kinds of information are kept separate and are not combined with one another.
| What | You provide | Where it goes | Used for |
|---|---|---|---|
| Contact messages | Name, email, optional subject, message | Netlify Forms (form name "contact"); email notification to the owner's inbox | Reading and replying to your message |
| Access requests | Name, agency, email | Netlify Forms (form name "agent-access-request"); email notification to the owner's inbox | The author personally reviewing whether to share access. Submitting does not grant access, and nothing is sent automatically. |
| Self-reported agent identity | Name, agency, email, and the shared access code, entered to unlock the materials | Supabase database. A session cookie (httpOnly) keeps you unlocked for up to 30 days. | Recording who unlocked the materials. This is self-reported: the site does not verify that an email address belongs to the person typing it. |
| Document-link activity | Nothing extra; recorded when you click a download | Supabase database: which agent record, which document, when, and whether a download link was issued | The owner's own record of access. It records that a link was issued, not that a file was opened or read. New records do not store IP addresses. |
| Book-release notifications | Email, optional name | Kit, in a dedicated list. A confirmation email is sent if one is needed. | One email when Daughter of Lunacy is available. Not a newsletter. Every email includes Kit's unsubscribe link. |
Abuse protection
To limit guessing of the access code and misuse of the notification signup, the site counts requests per visitor using a keyed, one-way hash of the visitor's IP address (not the address itself), stored in Supabase. This is a pseudonymous identifier, not an anonymous one. Automatic cleanup of these counters is not currently enabled.
Cookies
The only cookie this site sets is a functional one, agent_session, and only after a literary agent unlocks the materials. It is not used for tracking or advertising. Netlify Forms and Kit may set their own cookies on their own pages (for example the confirmation page).
Correcting or deleting your information
Email contact@sklopossa.com from the address you used, say what you would like corrected or removed, and which of the five categories above it concerns. Today, these requests are handled by hand:
- Contact messages and access requests: deleted from the Netlify Forms inbox and from the owner's email.
- Agent identity and document-link activity: the matching record is edited or deleted in Supabase. Deleting an agent record also deletes its sessions and download history.
- Book-release notifications: you can unsubscribe yourself at any time using the link in any email from Kit; the owner can also remove you on request.
How long information is kept
This site does not currently delete contact messages, access requests, agent records, download records, abuse-protection counters or the notification list on a fixed schedule. Login sessions expire after 30 days, after which they cannot be used to access materials; expiration does not automatically delete the stored session record. You can ask for your information to be removed at any time (see above).
- Book-release notifications stay on the list until you unsubscribe or ask to be removed.
- The counters used for abuse protection are kept only for that purpose; their counting windows expire separately from deletion of the stored records.
- Older download records may include an IP address collected before the site stopped recording them. Ask if you would like yours removed.
What this page does not claim
- Signed download links stay valid for a short time and could be used by anyone who has the link during that time. Downloaded files can be forwarded by whoever holds them; the site cannot prevent that.
- No compliance certification (such as GDPR or CCPA readiness) is claimed here.
Changes
If this page changes, the update will appear here.