Privacy

Collect less.
Explain the rest.

A practical privacy notice for a static-first project with no advertising, analytics profiles or central user-progress database.

Independent & non-commercialOne-person projectLast reviewed: 1 September 2026

Privacy by using less data.

The easiest personal data to protect is data that was never collected. These sites are therefore designed to work without user accounts, advertising profiles or behavioural analytics.

Current model: no advertising cookies, no analytics cookies, no tracking pixels and no central database of quiz progress or election priorities.

Who is responsible for personal data?

The data controller for this project is [REPLACE WITH YOUR REAL NAME OR LEGAL CONTROLLER NAME].

Privacy contact: contact@swedensmart.se.

Before publishing: replace the controller placeholder above. A public project should not hide who determines how personal data is processed.

What the browser stores locally

Some tools use browser storage such as localStorage to remember user-requested functionality. Depending on the tool, this can include:

  • light or dark theme;
  • quiz progress, wrong answers or completed chapters;
  • temporary election priorities or checklist state.

This information is designed to remain on your device. It is not uploaded to a project database. Clearing site data in your browser removes it.

Swedish PTS treats local storage as a technology related to terminal storage rules. Non-essential storage such as analytics generally requires consent, while storage necessary for a service requested by the user can be exempt. This project avoids non-essential tracking rather than presenting a decorative cookie banner. Read PTS guidance on cookies and similar storage ↗

Ordinary server logs

Like most web servers, the hosting environment may create technical access or security logs. These can include IP address, date and time, requested path, response code and browser-related information.

They are used for operating and protecting the service, diagnosing faults and investigating abuse — not for advertising or behavioural profiling. Logs are kept only for a limited operational period according to server rotation and backup practices.

If you email the project

If you send an email, the project receives your email address, message, normal mail metadata and anything you choose to include. This is processed to read and respond to the message, handle a correction or accessibility report, or investigate a security issue.

The intended legal basis where GDPR applies is generally legitimate interests: running the project, responding to correspondence and keeping the content/security reliable. Messages should be deleted when they are no longer reasonably needed, except where a limited record is needed to document a correction, abuse or security matter.

Please do not email sensitive case material. Do not send personal identity numbers, passports, medical information, migration case files, detailed political opinions or other sensitive personal data unless there is a genuinely necessary reason.

External services and links

When you follow a link to an authority, party, statistics provider or other external site, that site receives your request under its own privacy practices.

On the citizenship-learning platform, official UHR audio may be streamed directly from UHR. When you press play, your browser connects to UHR’s servers; normal connection information such as your IP address may therefore be visible to UHR.

Your rights

Where GDPR applies, you may have rights including information, access, correction, deletion, restriction and objection depending on the processing. You can contact the project using the email above. You can also contact the Swedish Authority for Privacy Protection (IMY).

If the technology changes

If accounts, analytics, advertising, newsletters, payments or other data-heavy features are introduced, this notice and any required consent mechanism must be reviewed before those features go live.