NOTICE VERSION — · BACK TO STAR LOG
STAR Log runs in a container on a server owned and run by the operator. There is no cloud database, no SaaS backend and no third-party processor holding your entries.
LimitOne machine in one place. There is no uptime guarantee and no redundancy beyond the operator's backups.
The database sits in its own encrypted shared folder on the NAS (folder encryption in UGOS Pro). If the drives are pulled or the NAS is taken while that folder is locked, the database is not readable. The app is also built to refuse to start unless that folder is unlocked, so it cannot quietly fall back to unencrypted storage after a reboot.
LimitThis protects against physical theft and locked storage. It does not protect against someone with access to the running, unlocked system. The NAS vendor has not published the implementation details of its folder encryption.
Every read, edit, delete and export is restricted to the signed-in account in the server code. Other users cannot list, open or change your entries or records.
LimitEntries are stored as readable text in the database. Isolation is enforced by the application, not by per-user encryption keys.
Passwords (10 characters minimum) are hashed with bcrypt at cost 12 and a unique salt. The operator never sees or stores your plaintext password. Session tokens are random 256-bit values stored only as SHA-256 hashes. Sessions last 30 days. Signing out ends that session, and changing your password ends your other sessions.
LimitThere is no email and no password reset. If you forget your password, ask the operator to delete the account, then register again.
You should reach the site over HTTPS. The app sets HSTS on secure connections and issues session cookies as HttpOnly, SameSite=Lax and Secure. It rejects cross-origin writes and rate-limits sign-in and sign-up attempts.
LimitTLS ends at the operator's reverse proxy, which runs on the same server.
Purge removes your entries, your awards/certs/degrees, or both, and keeps your account. Delete account removes everything. In both cases the server runs SQLite with secure_delete on, flushes the write-ahead log and rewrites the database file, so the removed text does not linger in the database or its journal.
LimitBackup copies the operator made earlier can still contain your data until they age out or are cleared. Ask the operator to clear them if you want that gone too (see below).
There are no analytics, ads or tracking scripts. Your entries are never sent to any third party, and the server does not call any AI service.
LimitPages load fonts from Google Fonts, so Google sees your IP address when they load. The "Copy prompt for Claude" button only copies text to your clipboard. If you paste it into an AI tool, that tool's own terms apply, so keep it to material you are cleared to share.
If that level of trust is not enough for what you want to store, do not store it here. Use the "Create and copy backup" option and keep your own copy, or keep entries more general.
Contact the operator: your server operator. If you find a security problem, please tell the operator privately before sharing it with anyone else.