Privacy Policy

Last Updated: August 15, 2026

Welcome to TheStoneDB (“we,” “us,” or “our”). We are committed to protecting your privacy and handling your personal data with transparency and care. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website https://www.TheStoneDB.com (the “Site”), and describes your rights under applicable data protection laws, including the EU General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

Please read this Privacy Policy carefully. By using the Site, you consent to the collection and use of your information as described herein. If you do not agree with any part of this policy, please do not use our Site.

1. Information We Collect

1.1 Information You Provide to Us
  • Comments: When you leave a comment on the Site, we collect the data shown in the comments form (such as your name, email address, and comment content), along with your IP address and browser user agent string to assist with spam detection.
  • Media: If you upload images to the Site, please avoid uploading images with embedded location data (EXIF GPS). Visitors to the Site can download and extract location data from images.
1.2 Information Collected Automatically
  • Cookies & Tracking Technologies: We use cookies, web beacons, and similar tracking tools to operate the Site, personalize content, and analyze performance.
    • Comment Cookies: If you leave a comment, you may opt-in to saving your name, email address, and website in cookies for convenience (expires after 1 year).
    • Account & Login Cookies: Temporary cookies check browser support upon visiting the login page. Login cookies persist for 2 days (or 2 weeks if “Remember Me” is selected). Screen preference cookies last for 1 year.
    • Embedded Content: Articles on this Site may include embedded content (e.g., videos, maps, articles). Embedded content from third-party websites behaves identically to a direct visit to those sites.

2. Google AdSense & Third-Party Advertising (Crucial for AdSense Approval)

This Site uses Google AdSense and other third-party advertising companies to serve ads when you visit our website.

  • Third-Party Vendors & Cookies: Third-party vendors, including Google, use cookies to serve ads based on a user’s prior visits to our website or other websites on the Internet.
  • Personalized Advertising: Google’s use of advertising cookies enables it and its partners to serve ads to our users based on their visit to our site and/or other sites on the Internet.
  • Opting Out: Users may opt out of personalized advertising by visiting Google Ads Settings. Alternatively, you can opt out of third-party vendors’ use of cookies for personalized advertising by visiting www.aboutads.info.

3. How We Use Your Information

We process your personal data for the following legitimate purposes:

  • To display and manage user comments and Gravatar profile pictures.
  • To manage your user account (if applicable) and personalize interface display settings.
  • To serve relevant, non-intrusive advertisements and support site operations.
  • To detect, prevent, and mitigate spam, security threats, and fraudulent activity.
  • To analyze aggregated, anonymized usage metrics to optimize site design and speed.

4. Legal Basis for Processing (GDPR)

If you are located in the European Economic Area (EEA), United Kingdom, or Switzerland, our legal basis for collecting and using your personal data depends on the data concerned and the context in which we collect it:

PurposeData TypesLegal Basis (GDPR)
Comments & ProfileName, email, IP address, comment textLegitimate Interests (Art. 6(1)(f))
Spam PreventionIP address, user agent, comment payloadLegitimate Interests (Art. 6(1)(f))
Account OperationsRegistration credentialsPerformance of a Contract (Art. 6(1)(b))
Ad Serving & AnalyticsAnonymized cookies, usage metricsConsent (Art. 6(1)(a)) / Legitimate Interests
Legal ComplianceAs legally mandatedLegal Obligation (Art. 6(1)(c))

5. Data Subject Rights (GDPR)

Residents of the EEA, UK, or Switzerland hold the following rights regarding their personal data under Articles 15–22 of the GDPR:

  • Right of Access & Portability: Request copies of your personal data in a structured, machine-readable format.
  • Right to Rectification: Request correction of inaccurate or incomplete personal records.
  • Right to Erasure (“Right to be Forgotten”): Request deletion of your personal data, subject to lawful exceptions.
  • Right to Object & Restrict: Object to data processing based on legitimate interests or demand processing restrictions.
  • Right to Lodge a Complaint: File a grievance with your local Data Protection Authority (DPA).

To exercise any of these rights, please contact us using the information in Section 11.

6. California Consumer Privacy Act (CCPA/CPRA) Rights

If you are a California resident, you have specific rights regarding your personal information:

  • Right to Know: Request disclosures regarding the categories and specific items of personal data collected over the past 12 months.
  • Right to Delete: Request deletion of personal information collected from you.
  • Right to Opt-Out of Sale or Sharing: We do not sell your personal information for monetary consideration. However, third-party advertising cookies may be considered “sharing” under CCPA. You may opt out of personalized cookie tracking via your browser controls or the Google Ads Settings.
  • Right to Non-Discrimination: You will not receive discriminatory treatment from us for exercising any of your privacy rights.

7. Third-Party Data Sharing & International Transfers

We do not sell, rent, or trade your personal data. We only share information under the following scenarios:

  • Spam & Security Services: Visitor comments may be processed through automated spam detection software (e.g., Akismet).
  • Service Providers: Trusted hosting partners, database administrators, and analytics tools who process data strictly under contractual privacy agreements.
  • International Data Transfers: When data is transferred outside your home country (including to servers in the US), we ensure safeguards like European Commission Standard Contractual Clauses (SCCs) are maintained.

8. Data Retention

  • Comments and Metadata: Retained indefinitely to maintain continuous discussion threads and automated approval of follow-up comments.
  • Registered User Accounts: Retained for as long as the account remains active or until deletion is requested.
  • Log Data & Security Records: Retained for a limited operational window to enforce site security.

9. Data Security & Children’s Privacy

  • Data Security: We employ standard encryption protocols (HTTPS/TLS) and modern administrative controls to safeguard your data. However, no internet transmission is 100% secure.
  • Children’s Privacy: TheSite is not directed at children under the age of 13 (or 16 for California/EEA residents). We do not knowingly collect personal data from children.

10. Changes to This Privacy Policy

We may update this Privacy Policy periodically to reflect technological, operational, or legal changes. Updates will be posted on this page with a revised “Last Updated” date.

11. Contact Us

For questions, privacy inquiries, or to exercise your GDPR/CCPA rights, please reach out to us at: