Privacy

What is public, private, and shared.

Surplus should collect only what is needed to publish a listing, connect a pickup, or answer a message.

Plain-language policy

Your address is not a public listing field.

This page describes the current prototype. Before public launch, the operator must set documented retention periods and have the policy reviewed for the launch location.

Public

Listing information

The donor name, food description, quantity, general area, pickup window, storage condition, allergens, and other listing details are visible to people browsing Surplus.

Shared

Pickup connection information

A collector supplies a name, contact method, proposed arrival time, and optional note. Once a request is recorded, Surplus reveals the donor’s pickup contact, address, and instructions in that browser so the parties can coordinate directly.

Support

Contact messages

The contact form records the supplied name, email, topic, subject, message, submission time, IP address, and browser user agent. Those details are used to respond, investigate misuse, and protect the form from spam.

Technical

Sessions and service data

The prototype uses an essential session cookie to preserve listings, pickup requests, form security tokens, and temporary access to connection details. It does not need advertising cookies.

Maps

Third-party map requests

Listing pages can load an embedded Google map. Google may receive technical request data such as an IP address and browser information. The map shows only a general area until a pickup request unlocks the address.

Control

Questions and corrections

Use the contact page to ask about personal information, request a correction, or report an address or contact detail that should not be visible.

Launch requirement

Data retention, deletion procedures, responsible organization details, and any legally required regional disclosures must be finalized before Surplus accepts real public submissions.