Privacy Policy
We collect as little as possible, we never sell personal information, and we never pass a homeowner’s details to an operator. This policy explains exactly what the site does with data, service by service.
Who is responsible for your data
Alessio Deidda Digital, VAT number IT04110950922, Italy (referred to below as “we”), runs Wild Animals Central. For any privacy question, or to exercise the rights listed below, write to the contact form. A postal address and a named data-protection contact are provided on request to that address.
What we collect, and why
Visitors reading the site
Nothing that identifies you. The site sets no tracking cookies of its own and analytics are cookieless (see the Cookie Policy); advertising cookies come from Google AdSense, and only after you accept them in the consent message. Our web server keeps short-lived technical logs (IP address, requested URL, user agent) for security and abuse prevention. Legal basis: legitimate interest in keeping the site available and safe.
Contact form
If you write to us through the contact form we receive your name, your email address, the topic you selected and your message. We use them only to answer you, and we keep the correspondence while the matter is open and for a short period afterwards. Legal basis: legitimate interest in answering inquiries, and consent when you send the form.
Newsletter subscribers
If you subscribe to The Seasonal Wildlife Brief we store your email address, the date, the page you subscribed from and the exact wording you agreed to, and we record the moment you confirmed. The list works with double opt-in: until you open the confirmation link in the first email, nothing at all is sent to you, so an address typed in by somebody else never joins the list. Every email carries an unsubscribe link that works in one click, and after you unsubscribe we keep only a minimal record that the address asked not to be contacted again. Legal basis: your consent, which you can withdraw at any time with that link.
Business owners claiming a listing
Claiming a directory listing stores your name, email address, the operator listing you claim, any verification note you add, and the date. If you later buy a plan, we also store the Stripe customer and subscription identifiers and the plan status. We use this to verify that you represent the business, to give you access to the dashboard, and to bill a paid plan. Legal basis: performance of a contract with you, plus legitimate interest in keeping the directory accurate.
Operator accounts and sessions
Login works with a single-use link sent by email. We store the email address, a one-time token that expires after 15 minutes, and a signed session cookie that keeps you logged in. You can end a session at any time from your account page.
Payments
Card details are entered on Stripe’s own checkout and never reach our servers. We receive and store only the customer identifier, the subscription identifier, the plan and the billing status. Stripe acts as an independent controller for the payment data it processes; see Stripe’s own privacy policy.
Analytics
We use a self-hosted Umami instance to count page views. It is cookieless, does not build a profile of you and does not fingerprint your device. It does not run at all when your browser sends Do Not Track or Global Privacy Control, and you can switch it off permanently with the opt-out link in the Cookie Policy.
Advertising
Advertising on the site is served by Google AdSense, which can set cookies and use your device information to select ads. Consent is collected by Google's certified consent platform: in the EEA, the UK and Switzerland personalized ads and their cookies stay off until you accept them in that message, and in the US states with privacy statutes the same message carries the "Do Not Sell or Share My Personal Information" link. You can also manage personalized ads in your Google ad settings.
Affiliate links
Some product links are affiliate links, including Amazon Associates. When you click one, the retailer may set its own cookie to attribute a purchase. That happens on the retailer’s site and under the retailer’s policy; we only ever receive aggregate commission reports, never your identity or order details. See the Affiliate Disclosure.
Directory listings themselves
Business names, phone numbers, counties served and license or authorization details come from published state agency lists (FWC, NCWRC, SCDNR). Where the state list names the licensed individual as well as the business, we publish the name the agency publishes. If a listing is wrong, or you want it corrected or removed, use the corrections and removal page; we act on those requests without requiring you to claim the listing.
Who else sees your data
| Provider | What it processes | Why |
|---|---|---|
| PurelyMail | Mailbox contents, email address, message content | Hosts our mailboxes and sends transactional email (login links, claim confirmations) and contact form messages |
| Amazon SES | Email address and delivery events (delivered, bounced, marked as spam) | Sends the monthly newsletter from our own mailing service, and reports bounces and complaints so bad addresses come off the list |
| Stripe | Billing details, card data | Processes operator plan payments and subscriptions |
| Self-hosted Umami | Cookieless page views | Aggregate traffic statistics on our own server |
| Google AdSense | Ad cookies, device data | Serves advertising, once consent has been given where required |
| Amazon Associates | Click and purchase attribution | Credits affiliate commissions for product links |
We do not sell personal information, we do not share it with data brokers, and we do not pass homeowner inquiries to operators. Our providers may process data outside your country, including in the United States, under their own contractual safeguards.
How long we keep it
- Contact form correspondence: while the inquiry is open, then a short period for reference.
- Newsletter subscription: while you are on the list, and afterwards a minimal suppression record so an address that unsubscribed is not contacted again.
- Claim and account records: while the account is open, and afterwards only as long as needed to evidence verification and meet accounting obligations.
- Login tokens: 15 minutes, or until used.
- Session cookie: until it expires or you log out.
- Server logs: a short operational window, then deletion.
Your rights
Under the GDPR you can ask for access to your data, correction, deletion, restriction, portability, and you can object to processing based on legitimate interest. Under California law (CCPA/CPRA) and comparable state laws you can request to know, correct, or delete personal information, and to opt out of sale or sharing and of targeted advertising. We do not sell personal information for money or hand it to data brokers, but online advertising can count as "sharing" for targeted advertising under those laws: where the privacy message appears you can opt out there with the "Do Not Sell or Share My Personal Information" link, and where it does not appear you can ask us to opt you out and we will confirm your request in writing.
Write to the contact form with the request. We answer within the timeframe the applicable law sets (normally within 30 days) and we may ask you to confirm control of the email address concerned. You also have the right to complain to your data protection authority, and in Italy to the Garante per la protezione dei dati personali.
Children
The site is written for adults dealing with wildlife at their property. It is not directed to children and we do not knowingly collect data from anyone under 16.
Security
Traffic is encrypted, sessions are signed with a server-side secret, login links are single-use and short-lived, and the database runs on our own server rather than a shared third-party service. No system is perfect: if you believe your data has been exposed, tell us and we will investigate.
Changes
When this policy changes we update the date at the top of the page. Last updated September 26, 2026.
