How this site uses your data

This page tells you what this site can read, what it can write, and what it can never do. It uses simple English on purpose.

Where your data lives

Your Bluesky account keeps all of its data on your own server. Bluesky calls this server a PDS. This site does not have a database. This site does not store your data.

What this site reads

This site reads only public data:

  • The public list of ring members.
  • The public posts on this site.
  • The public messages and likes that guests attach to these posts.
  • Public profile names and avatars, to show who wrote each message.

You do not need an account to read this site. All pages work without sign-in.

What this site asks for when you sign in

When you sign in, the site asks your server for two permissions:

  1. Permission to add or remove your own guestbook messages.
  2. Permission to add or remove your own likes.

The permission names are pub.didring.guestbook.entry and pub.didring.guestbook.like. Your server shows both names on its consent screen. Your messages and likes go into your own account, on your own server. They stay under your control.

What this site can never do

The two permissions do not give more access. This site cannot:

  • Read your private data or direct messages.
  • Make posts on Bluesky for you.
  • Follow, mute, or block anyone for you.
  • Change your profile, your password, or your settings.
  • See your password. You type your password on your own server, never here.

How sign-in works

This site uses the AT Protocol OAuth standard. The steps are:

  1. You type your handle here.
  2. Your browser goes to your own server.
  3. You approve or decline on your server’s consent screen.
  4. Your server sends your browser back here with a limited pass.

If you decline, nothing is shared. You can decline and still read everything.

How long sign-in lasts

The pass expires after a maximum of 2 weeks on one device. Sign out at any time with the Sign out button. Sign-out removes the pass from your device.

How to revoke access

You can remove this site’s access at any time:

  1. Open your Bluesky settings.
  2. Find the list of connected apps.
  3. Remove Jonathan Pearce — DID Ring Guestbook.

Who curates this site

The site owner controls what appears here. The site shows messages only from accepted ring members. Your message stays in your account either way. This design comes from the open-source DID Ring project. The code for this page is public, so you can inspect what it does.