Privacy

How Bouleon handles your data

Bouleon is built around public civic discussion, source-grounded proposal reading, and user control. This private alpha policy explains the practical data boundaries before formal legal review.

What we collect

We may store your email, display name, handle, profile details, follows, votes, entries, replies, reports, notifications, membership state, and basic system logs needed to keep the service reliable. Passwords are protected with salted, one-way scrypt hashes and are never stored as readable text. Email verification and password-reset codes are stored only as short-lived cryptographic hashes, become unusable immediately after use, and are purged after a short operational retention period. Abuse-prevention limits use keyed hashes rather than readable email addresses or IP addresses.

Public activity

Entries, replies, profile handles, badges, and public contribution history are meant to be visible to other users. Votes are used for proposal-level signals and should not be treated as official EU voting.

AI features

Ask AI requests are intended to stay bound to the selected proposal, its official sources, and civic context. Bouleon AI is not legal advice and should not replace reading the official source.

Official sources

EUR-Lex and other official-source metadata may be cached so proposals can be easier to read and discuss. Official source links remain available for verification.

Private alpha requests

During private alpha, account deletion, data export, and privacy requests can be handled manually by the project owner until self-service controls are implemented.

Last updated July 5, 2026. These pages are product-facing alpha policies and should be reviewed before a broad public launch.