Privacy Policy - AT Container Registry (atcr.io)
+Last updated: January 2025
+ +Data We Collect and Store
+ +Data Stored on Your PDS (Controlled by You)
+When you use AT Container Registry, records are written to your Personal Data Server (PDS) under the io.atcr.* namespace. This data is stored on infrastructure you or your PDS hosting provider controls. We do not control this data, and its retention and deletion is governed by your PDS provider's policies.
Data Stored on Our Infrastructure
+ +Layer Records: We maintain records on our own PDS that reference container image layers you publish. These records are public and link your AT Protocol identity (DID) to content-addressed SHA identifiers.
+ +OCI Blobs: Container image layers are stored in our object storage (S3). These blobs are content-addressed and deduplicated—meaning identical layers uploaded by different users are stored only once.
+ +Authentication Data:
+-
+
- OAuth tokens obtained during sign-in +
- Web UI session tokens +
- Docker credential helper device tokens, including:
+
-
+
- IP address +
- Device name +
- Token creation and last-used timestamps +
+
Cached PDS Data: We may cache data from your PDS in our database to improve performance and reduce load on your PDS. This cached data mirrors public information already stored on your PDS.
+ +Server Logs: Our logs may include your handle, DID, IP address, timestamps, and actions performed. Logs are currently ephemeral but may be retained in the future for security and debugging purposes.
+Data Sharing and Deduplication
+ +OCI container images use content-addressable storage. When you push an image layer, it is identified by its cryptographic hash (SHA256). If another user pushes an identical layer, both users reference the same underlying blob. This is standard practice for container registries and enables efficient storage and distribution.
+ +What this means for your data:
+-
+
- Layer content is not uniquely "yours" if other users have pushed identical content +
- Public SHA references may be associated with your AT Protocol identity +
- Deleting your records does not delete blob data that other users also reference +
Your Rights Under GDPR
+ +If you are located in the European Economic Area (EEA), you have the following rights:
+ +Right to Access
+You may request a copy of all personal data we store about you. This includes:
+-
+
- Layer records associated with your DID on our PDS +
- Server logs containing your handle, DID, IP address, or actions (if retained) +
- OAuth tokens, web UI sessions, and device tokens +
- Cached PDS data +
- List of registered devices (credential helper) +
Note: Data stored on your own PDS is already under your control and accessible to you directly.
+ +Right to Erasure ("Right to be Forgotten")
+You may request deletion of your data via the account settings page. Due to our technical architecture, deletion works as follows:
+ +Immediately deleted:
+-
+
- Layer records on our PDS that reference your DID +
- OAuth tokens, web UI sessions, and device tokens +
- Cached PDS data +
- Server logs containing your identifiers (deleted or anonymized, if retained) +
Deleted within 30 days:
+-
+
- OCI blobs in our object storage that are no longer referenced by any user after your records are removed (via our orphan blob pruning process) +
Cannot be deleted by us:
+-
+
- Records stored on your own PDS (you control these, or your PDS provider does) +
- Blob data that is also referenced by other users (deduplicated content) +
Optional: Delete AT Protocol Records
+When deleting your account, you may optionally authorize us to delete io.atcr.* records from your PDS. This requires an active OAuth session and is optional because:
-
+
- Your PDS is controlled by you or your hosting provider, not us +
- You may delete these records yourself at any time +
- We have no ongoing obligation to manage data on infrastructure we do not control +
Right to Rectification
+You may update your data through normal use of the service. Data stored on your PDS is under your direct control.
+ +Right to Data Portability
+AT Protocol is designed for data portability. Your records are stored in an open, documented format on your PDS and can be exported or migrated at any time.
+ +Right to Object / Restrict Processing
+You may revoke our OAuth access at any time through your PDS provider's settings. This will prevent us from reading or writing records to your PDS.
+Your Rights Under CCPA
+ +If you are a California resident, you have the following rights under the California Consumer Privacy Act:
+ +Right to Know
+You may request disclosure of:
+-
+
- The categories of personal information we collect +
- The purposes for which we use your personal information +
- The categories of third parties with whom we share your personal information +
Right to Delete
+You may delete your personal information via the account settings page, subject to the same technical limitations described in the GDPR section above. For data not accessible through self-service, we will respond to requests within 45 days, except where retention is necessary for:
+-
+
- Completing the transaction for which the data was collected +
- Security and fraud prevention +
- Legal compliance +
Right to Non-Discrimination
+We will not discriminate against you for exercising your CCPA rights.
+ +Categories of Personal Information Collected
+| Category | +Examples | +Collected | +
|---|---|---|
| Identifiers | +DID, handle, IP address, device name | +Yes | +
| Internet activity | +Access logs, usage data, actions performed | +Yes | +
| Geolocation | +Approximate location via IP | +Yes | +
We do not sell or share your personal information for cross-context behavioral advertising.
+Data Retention
+ +| Data Type | +Retention Period | +
|---|---|
| OAuth tokens | +Until revoked or logout | +
| Web UI session tokens | +Until logout or expiration | +
| Device tokens (credential helper) | +Until revoked by user | +
| Cached PDS data | +Refreshed periodically; deleted on account deletion | +
| Server logs | +Currently ephemeral; this policy will be updated if log retention is implemented | +
| Layer records (our PDS) | +Until you request deletion | +
| OCI blobs | +Until no longer referenced (pruned monthly) | +
Important Notes on AT Protocol Architecture
+ +AT Container Registry is built on the AT Protocol, which has a unique data architecture:
+ +-
+
- You control your data. Most data associated with your use of AT Container Registry is stored on your Personal Data Server (PDS), which you or your chosen provider controls. +
- Public by design. AT Protocol data is designed to be public and distributed. Records you create, including container image references, are publicly visible and may be replicated across the network. +
- Content-addressed storage. OCI blobs are identified by their cryptographic hash. This means blob data is inherently pseudonymous—it cannot be attributed to you without the corresponding records that reference it. +
- Deletion limitations. Because AT Protocol is distributed, we cannot guarantee that copies of public records have not been made by other participants in the network. We can only delete data on infrastructure we control. +
How to Exercise Your Rights
+ +Self-Service (via Settings)
+Most data management can be done directly through your account settings at atcr.io:
+-
+
- Delete your data: Use the "Delete Account" button in settings. This will remove your layer records, cached data, and authentication tokens. You may also choose to have us delete
io.atcr.*records from your PDS (requires active OAuth session).
+ - Revoke device tokens: Manage and revoke credential helper devices in settings. +
- Update your data: Corrections happen through normal use of the service. +
Contact Us
+For requests we cannot fulfill through self-service, such as:
+-
+
- Copies of server logs containing your data +
- Database records not exposed in the UI +
- Questions about this policy +
Email: privacy@atcr.io
+ +Please include your AT Protocol DID or handle so we can verify your identity.
+ +We will respond to requests within 30 days (GDPR) or 45 days (CCPA).
+Contact
+ +For questions about this privacy policy or to exercise your data rights, contact:
+ +Email: privacy@atcr.io
+Website: https://atcr.io
+