This policy explains how we handle personal data on policebrutality.co.uk. We are a UK-based public-interest platform. We comply with the UK GDPR and the Data Protection Act 2018.
What we collect
- Account information — email, display name, password hash.
- Forum content — posts and replies you submit.
- Complaint case data (if you choose to use the complaint support service) — incident details, evidence, correspondence.
- Technical logs — IP address, user agent, request timestamps for security and abuse prevention.
How we protect it
- Strict row-level security on every database table — public users cannot read complaint data.
- Evidence files are stored in a private bucket, accessed only via signed URLs.
- Admin actions are recorded in an audit log.
- Multi-factor authentication is enforced for admin accounts.
Your rights
You may request access to, correction of, or deletion of your personal data at any time. Email privacy@policebrutality.co.uk.