> Privacy
The short version
You can browse PhD Sky without an account and without giving us anything. If you create an account to save searches, follow handles, or get email digests, we store the minimum needed to do that. We don't sell your data, and we don't collect sensitive categories (health, race, politics, finances, precise location, etc.).
What we collect from you
If you just browse: nothing is required. If you accept analytics in the cookie banner, Google Analytics records a pseudonymous visit (IP, country, page path, referrer, browser). We don't combine it with anything to identify you.
If you create an account, we store:
- Your email address — to sign you in and send digests you ask for.
- A password, if you use email sign-up — stored hashed by our auth provider (Supabase); we never see it in plain text.
- Basic profile info — an optional display name/handle. If you sign in with Google or GitHub, we receive your name and email from that provider (not your password).
- Your saved searches — the filters you save (disciplines, countries, position types, keywords) and how often you want emails.
- Your follows — the Bluesky handles and topics you follow, so we can build your feed.
Our infrastructure providers also process technical data (IP address, device/User-Agent, timestamps) as a normal part of serving requests and keeping the service secure.
How we use it
- To run your account, saved searches, feed, and follows.
- To send the email digests you opted into (see below).
- To keep the service working, secure, and free of abuse.
We do not sell your data, run ads, or use your account data to train AI models. (Public position text is classified by AI models to tag discipline/country/type, but that processing uses the public post — not your account information.)
Email digests
If you set up a saved search with email delivery, we send you digests of new
matching positions at your chosen frequency. Every email has a one-click
unsubscribe link and a List-Unsubscribe header, and
you can change or turn off delivery any time from your account. We stop
emailing that search as soon as you unsubscribe.
Cookies and local storage
-
_ga,_ga_*— Google Analytics. Only set after you click Accept in the cookie banner. Retained 24 months. - Auth session (localStorage) — if you log in, our auth provider stores your session token on your device so you stay signed in. Cleared on logout.
-
cookieConsent(localStorage) — your accept/decline choice so we don't keep nagging you. Never sent to any third party. -
aggregatorHide(localStorage) — your "Hide aggregator reposts" toggle state. Stays on this device.
Decline analytics → no analytics cookies are set. The auth session and consent/preference items are essential to features you use and aren't tracking.
Third parties (processors) we share data with
We use a few service providers to run PhD Sky. They process data on our behalf under their own privacy terms, and may store it in the United States:
- Supabase — accounts, authentication, and the database (email, hashed password, profile, saved searches, follows).
- Resend — sends the digest emails (receives your email address and the digest content).
- Vercel — hosts the site and provides cookieless Web Analytics.
- Google — Analytics (only after you accept), Fonts, and Google sign-in if you use it.
- GitHub — GitHub sign-in, if you use it.
- jsDelivr CDN — serves front-end libraries.
What we do with positions
Each position links back to its original public post. The post text and author handle are public on Bluesky (or another public source); we re-display them with a link to the source. The author always controls the original.
Removing your content: to remove your own post from this aggregator, email eli.eydlin@gmail.com. We'll delete it from our database within a few days.
Data retention and deletion
We keep account data for as long as your account exists. When you delete your account, your profile, saved searches, and follows are removed automatically. Analytics data expires on its own schedule (up to 24 months). To delete your account or request a copy of your data, use your account settings or email us.
Your rights
- Access, correct, delete, or export your account data — from your account settings, or by emailing the address below.
- Unsubscribe from emails — via the link in any digest or your account settings.
- Opt out of analytics — click Decline in the cookie banner, or
install the
Google Analytics Opt-out add-on.
Already accepted? Clear
cookieConsentfrom localStorage and reload. - EU/UK/California residents — you have rights to access, correction, deletion, portability, and to object to or restrict processing. Our legal bases are your consent (analytics, emails) and legitimate interest / performing the service you requested (accounts, aggregating public postings). Contact us to exercise any of these.
Contact
Questions, removal requests, data requests, or anything privacy-related: eli.eydlin@gmail.com.