PhenoMap — Privacy notice
PhenoMap is a citizen-science project for recording plant phenology — what an individual plant is doing, and when. This notice says what it collects about you, who can see it, and what you can ask for. It is written to be short and accurate rather than exhaustive.
1. Who is responsible
PhenoMap is a personal project run by Yilun Li. It is not run, endorsed or backed by any university or institution, and nothing here should be read as institutional research.
Contact for anything in this notice, including access and deletion requests: phenomap@cpelab.net.
2. What is collected
- Your email address, from the account you sign in with (GitHub, or an email and password issued to you).
- A credit name you choose. This is published as the credit for your records under the CC-BY licence. It is public and it cannot be changed afterwards. It does not have to be your real name, and we suggest it is not.
- The observations you record: photographs, the exact location of the plant, the date and time, the phenological stages you score, any notes and place descriptions you write, and whether you marked the plant as indoors or cut.
- Your sharing setting and the record of the consents you gave, with their dates and versions.
What is deliberately not collected: your real name, phone number, postal address, date of birth, or any identity document. There is no analytics or advertising tracking of any kind.
3. Photographs
Photographs are re-encoded in your browser before upload, which removes EXIF metadata — including any camera-embedded GPS position. Only the capture time is read out deliberately. The location stored with an observation is the one shown on the map, not one taken from the file.
Photographs are stored in a private bucket and are served through short-lived signed links.
4. Approximate location for the map
When you open the map, Cloudflare tells the page the approximate city your internet connection appears to be in, so the map opens somewhere useful. It is rounded to about a kilometre, used only to position the map, and not stored.
When recording a plant you have observed before, you can press Sort by distance from me to put the nearest plants at the top of the list. Your browser asks your permission first. That position is used inside the page to order the list and nothing else: it is not stored, not attached to the record, and never sent to us.
5. Who can see your records
- You — always, in full.
- The lead of your task and the site administrator — always, in full, including exact locations, notes and photographs, whether or not you turn sharing on. This is how mistakes get corrected and how anything harmful is removed. There is no setting that hides your records from them.
- Other people in your task — only records you made while your sharing setting was on. The setting is off unless you turn it on, and it is stamped onto each record when you make it, so changing it later moves future records and not past ones unless you ask for that as well.
- The general public, not signed in — a scattered map of displaced points and three totals. Nothing else: no photographs, no notes, no dates, no species, no names.
Public points are deliberately moved before they leave the database — by roughly 200 m where plants are clustered and up to about 3 km where they are isolated. The real coordinates are never sent to a browser that is not signed in, and the public map cannot be zoomed in far enough to imply a precision the published data does not have.
6. Publication and licence
Records you choose to share are published under CC-BY-4.0, credited to your chosen credit name. Publication is not reversible. Once data has been published under an open licence, other people may have copied it, and it cannot be recalled from them. You can stop future publication and ask for your records to be removed from this service, but not from anyone who has already taken a copy.
7. Where the data is, and who else touches it
Named plainly, because a general statement would be misleading:
- Supabase — database, accounts and photograph storage. The data is held in Seoul, South Korea.
- Cloudflare — serves the app and provides the approximate city described in section 4.
- GitHub — if you sign in with GitHub, it confirms your email address to us. We do not receive your password or your repositories.
- Pl@ntNet — if you ask for a species suggestion, that photograph is sent to Pl@ntNet for identification. This only happens when you request it.
- Brevo — sends account emails, such as confirmation and password reset.
- OpenFreeMap — supplies the map background; your browser fetches map tiles directly from them.
8. How long it is kept, and how to have it removed
Records are kept while the project runs. Accounts that never record anything may be removed after a period of inactivity.
Write to phenomap@cpelab.net to see what is held about you, to correct it, or to have your account and records deleted. Please allow a reasonable time — this is a personal project, not a staffed service. The limit on deletion is the one in section 6: anything already published under CC-BY may already have been copied.
9. Age
You must be 16 or older to create an account. If you believe someone under 16 has registered, write to the address above and the account will be removed.
10. Photographs of people
Do not upload photographs in which a person is identifiable, unless that person has agreed. Records containing identifiable people will be removed.
11. Changes
This notice is versioned. If it changes materially you will be asked to read it again before continuing to contribute. The version you agreed to is recorded with your account.
物候志 — 隐私声明
物候志是一个记录植物物候的公众科学项目——记录某一株植物正在发生什么,以及发生的时间。本声明说明我们收集关于你的哪些信息、谁能看到、以及你可以提出什么要求。我们力求简短准确,而非面面俱到。
1. 责任人
物候志是 Yilun Li 的个人项目,并非由任何大学或机构运营、认可或支持,也不应被理解为机构研究。
与本声明有关的任何事项,包括查阅与删除请求,请联系:phenomap@cpelab.net。
2. 收集的信息
- 你的电子邮件地址,来自你用于登录的账户(GitHub,或发给你的邮箱与密码)。
- 你选择的署名。它将依 CC-BY 许可作为你记录的署名公开发布。它是公开的,且此后无法更改。它不必是真实姓名,我们也建议不要使用真实姓名。
- 你记录的观测:照片、植株的精确位置、日期与时间、你评定的物候期、你写下的备注与地点描述,以及你是否将该植株标记为室内或切花。
- 你的分享设置,以及你所作同意的记录及其日期与版本。
刻意不收集的信息:真实姓名、电话号码、通讯地址、出生日期或任何身份证件。本站没有任何分析统计或广告追踪。
3. 照片
照片在上传前会在你的浏览器中重新编码,因而移除 EXIF 元数据,包括相机嵌入的 GPS 位置。只有拍摄时间会被刻意读取。与观测一同存储的位置是地图上显示的那个,而非取自文件的那个。
照片存放于私有存储空间,通过短期有效的签名链接提供。
4. 用于地图的大致位置
打开地图时,Cloudflare 会告知页面你的网络连接大致所在的城市,以便地图打开在有用的位置。该信息精度约为一公里,仅用于定位地图,不会被存储。
记录以前观察过的植株时,你可以按按距离排序,把最近的植株排在列表前面。浏览器会先征求你的许可。该位置只在页面内用于排序:不会被存储,不会附加到记录上,也不会发送给我们。
5. 谁能看到你的记录
- 你自己——始终可见全部内容。
- 你所在任务的负责人与网站管理员——始终可见全部内容,包括精确位置、备注与照片,无论你是否开启分享。这是纠正错误、移除有害内容的方式。没有任何设置可以对他们隐藏你的记录。
- 同一任务中的其他人——仅限你在分享设置开启期间所作的记录。该设置默认关闭,且在你创建每条记录时即被写入该条记录,因此日后更改只影响之后的记录,除非你另外要求一并更改。
- 未登录的公众——一张由偏移点位构成的地图与三个总数。除此之外没有任何内容:没有照片、备注、日期、物种或姓名。
公开的点位在离开数据库之前就已被刻意偏移——植株密集处约 200 米,孤立处最多约 3 公里。真实坐标绝不会发送给未登录的浏览器,公开地图也无法放大到超出已发布数据实际精度的程度。
6. 发布与许可
你选择分享的记录将依 CC-BY-4.0 发布,并标注你所选的署名。发布不可撤回。数据一经以开放许可发布,他人可能已经复制,无法从他们手中收回。你可以停止今后的发布,并要求从本服务中移除你的记录,但无法要求已取得副本的人删除。
7. 数据所在地,以及还有谁接触它
逐一列明,因为笼统的说法会造成误导:
- Supabase——数据库、账户与照片存储。数据存放于韩国首尔。
- Cloudflare——提供本应用,并提供第 4 节所述的大致城市。
- GitHub——如果你用 GitHub 登录,它会向我们确认你的电子邮件地址。我们不会取得你的密码或代码仓库。
- Pl@ntNet——如果你请求物种识别建议,该照片会被发送至 Pl@ntNet 进行识别。此事仅在你主动请求时发生。
- Brevo——发送账户邮件,例如确认信与密码重设。
- OpenFreeMap——提供地图底图;你的浏览器会直接向其获取地图瓦片。
8. 保存多久,以及如何要求删除
记录在项目运行期间予以保存。从未记录任何内容的账户可能在一段时间不活跃后被移除。
请写信至 phenomap@cpelab.net,以查阅我们持有关于你的哪些信息、更正它,或删除你的账户与记录。请给予合理的处理时间——这是个人项目,并非配备人手的服务。删除的限制见第 6 节:已依 CC-BY 发布的内容可能已被复制。
9. 年龄
你必须年满 16 岁才能开立账户。如你认为有未满 16 岁者已注册,请写信至上述地址,该账户将被移除。
10. 涉及人物的照片
请勿上传可辨识出个人的照片,除非该人已同意。包含可辨识人物的记录将被移除。
11. 变更
本声明有版本编号。若发生实质变更,我们会在你继续贡献之前请你重新阅读。你所同意的版本会与你的账户一同记录。
物候誌 — 隱私聲明
物候誌是一個記錄植物物候的公眾科學項目——記錄某一株植物正在發生什麼,以及發生的時間。本聲明說明我們收集關於你的哪些資料、誰能看到、以及你可以提出什麼要求。我們力求簡短準確,而非面面俱到。
1. 責任人
物候誌是 Yilun Li 的個人項目,並非由任何大學或機構營運、認可或支持,亦不應被理解為機構研究。
與本聲明有關的任何事項,包括查閱與刪除要求,請聯絡:phenomap@cpelab.net。
2. 收集的資料
- 你的電郵地址,來自你用於登入的帳戶(GitHub,或發給你的信箱與密碼)。
- 你選擇的署名。它將依 CC-BY 授權作為你紀錄的署名公開發布。它是公開的,且此後無法更改。它不必是真實姓名,我們亦建議不要使用真實姓名。
- 你記錄的觀測:照片、植株的精確位置、日期與時間、你評定的物候期、你寫下的備註與地點描述,以及你是否將該植株標記為室內或切花。
- 你的分享設定,以及你所作同意的紀錄及其日期與版本。
刻意不收集的資料:真實姓名、電話號碼、通訊地址、出生日期或任何身分證件。本站沒有任何分析統計或廣告追蹤。
3. 照片
照片在上傳前會在你的瀏覽器中重新編碼,因而移除 EXIF 中繼資料,包括相機嵌入的 GPS 位置。只有拍攝時間會被刻意讀取。與觀測一同儲存的位置是地圖上顯示的那個,而非取自檔案的那個。
照片存放於私有儲存空間,透過短期有效的簽署連結提供。
4. 用於地圖的大致位置
開啟地圖時,Cloudflare 會告知頁面你的網路連線大致所在的城市,以便地圖開在有用的位置。該資訊精度約為一公里,僅用於定位地圖,不會被儲存。
記錄以前觀察過的植株時,你可以按按距離排序,把最近的植株排在清單前面。瀏覽器會先徵求你的許可。該位置只在頁面內用於排序:不會被儲存,不會附加到記錄上,也不會傳送給我們。
5. 誰能看到你的紀錄
- 你自己——始終可見全部內容。
- 你所在任務的負責人與網站管理員——始終可見全部內容,包括精確位置、備註與照片,無論你是否開啟分享。這是糾正錯誤、移除有害內容的方式。沒有任何設定可以對他們隱藏你的紀錄。
- 同一任務中的其他人——僅限你在分享設定開啟期間所作的紀錄。該設定預設關閉,且在你建立每筆紀錄時即寫入該筆紀錄,因此日後更改只影響之後的紀錄,除非你另外要求一併更改。
- 未登入的公眾——一張由偏移點位構成的地圖與三個總數。除此之外沒有任何內容:沒有照片、備註、日期、物種或姓名。
公開的點位在離開資料庫之前就已被刻意偏移——植株密集處約 200 公尺,孤立處最多約 3 公里。真實座標絕不會傳送給未登入的瀏覽器,公開地圖亦無法放大到超出已發布資料實際精度的程度。
6. 發布與授權
你選擇分享的紀錄將依 CC-BY-4.0 發布,並標註你所選的署名。發布不可撤回。資料一經以開放授權發布,他人可能已經複製,無法從他們手中收回。你可以停止日後的發布,並要求從本服務中移除你的紀錄,但無法要求已取得副本的人刪除。
7. 資料所在地,以及還有誰接觸它
逐一列明,因為籠統的說法會造成誤導:
- Supabase——資料庫、帳戶與照片儲存。資料存放於韓國首爾。
- Cloudflare——提供本應用程式,並提供第 4 節所述的大致城市。
- GitHub——如果你用 GitHub 登入,它會向我們確認你的電郵地址。我們不會取得你的密碼或程式碼儲存庫。
- Pl@ntNet——如果你要求物種辨識建議,該照片會被傳送至 Pl@ntNet 進行辨識。此事僅在你主動要求時發生。
- Brevo——發送帳戶郵件,例如確認信與密碼重設。
- OpenFreeMap——提供地圖底圖;你的瀏覽器會直接向其取得地圖圖磚。
8. 保存多久,以及如何要求刪除
紀錄在項目運行期間予以保存。從未記錄任何內容的帳戶可能在一段時間不活躍後被移除。
請寫信至 phenomap@cpelab.net,以查閱我們持有關於你的哪些資料、更正它,或刪除你的帳戶與紀錄。請給予合理的處理時間——這是個人項目,並非配備人手的服務。刪除的限制見第 6 節:已依 CC-BY 發布的內容可能已被複製。
9. 年齡
你必須年滿 16 歲才能開立帳戶。如你認為有未滿 16 歲者已註冊,請寫信至上述地址,該帳戶將被移除。
10. 涉及人物的照片
請勿上傳可辨識出個人的照片,除非該人已同意。包含可辨識人物的紀錄將被移除。
11. 變更
本聲明有版本編號。若發生實質變更,我們會在你繼續貢獻之前請你重新閱讀。你所同意的版本會與你的帳戶一同記錄。