Privacy
ttoppen keeps as little about you as it can.
Who runs ttoppen
ttoppen is run by CRS Webbproduktion AB, which is responsible for your personal data here (the data controller). Contact: Stefan Bergfeldt, stefan@crswebb.se.
What we store
- Your email address and chosen language, to log you in and send you login codes.
- Your votes for 30 days after the chart they counted in; after that only the chart's totals remain, which don't say who voted.
- Your display name and which groups you're in, if you use groups. Only fellow members of the same group see your name, never your email address.
- A login token in your browser's local storage, so you stay logged in. It's not a tracking cookie and isn't shared with anyone.
- A scrambled form of your IP address (a keyed hash, not the address itself) to limit how often codes can be requested and to spot mass sign-ups.
What we don't do
No ads, no analytics, no tracking cookies, and nothing is sold or shared. Song data and the 30-second previews come from Deezer when you search or press play.
Where it lives
In data centres in the EU (Sweden and the Netherlands): the site and API on Microsoft Azure, the database on Supabase in Stockholm. Login emails are sent through Azure Communication Services.
Your rights
You can delete your account yourself under Account; everything tied to your email address goes with it. You can also ask us what we have stored about you, have it corrected or deleted: write to stefan@crswebb.se. If you think we handle your data wrongly, you can complain to the Swedish Authority for Privacy Protection (IMY).