Privacy
What this site stores, and what it does not.
Gerode sells work to people whose employers have opinions about where their data goes. So this notice describes the code rather than the intention, it is short enough to read in full, and the date above is the day it was last read against the source rather than the day a template was bought.
Last checked against the code · 10 September 2026
What is stored in your browser.
One value, under the key gerode-theme, and only if you press the theme toggle in the header. It holds the word light or the word dark. It is written by your browser, stays on your device, and is never sent anywhere — this site has no way to read it and no code that tries.
If you never touch the toggle, nothing is written at all: the site follows the light or dark preference your operating system already reports.
The diagnostic stores a second value while you are taking it, under the key gerode-diagnostic: your answers so far, and which question you had reached. It exists so that a reload does not cost you thirty-two answers. It is written to session storage rather than to the storage the theme uses, which means your browser discards it when you close the tab — a record of how your organization makes decisions is not something to leave on a machine you might be borrowing.
Your answers are scored by code running in your browser. They are not sent to this site, because there is no part of this site that receives them: the report you see is drawn on your own device from your own answers. Nothing about your result reaches Gerode unless you choose to send it.
The report offers you a link that re-opens your result. Your answers are carried inside that link, after the #, and everything after a # is removed by your browser before it makes any request — so opening the link scores the answers again on the device that opened it, and no server, this one included, ever receives them. The link is not stored here; there is no copy of your result anywhere except in the link itself. Anyone you send it to can read the result, and it cannot be revoked, so treat it as you would treat the answers. Opening someone else’s link does not write anything to your browser and does not disturb a set of answers of your own.
No cookies are set on any page. Not a functional cookie, not a preference cookie, not a consent cookie — which is also why there is no consent banner asking you to accept things you were never given.
What this site loads from other companies.
Nothing. Every font, image, stylesheet and script comes from this domain. The typefaces are files stored with the site rather than requested from a font service, so no third party is told which pages you read or when.
This is checked automatically rather than by memory. An automated test opens every public page on this site and fails if any of them requests anything from another domain, or sets a single cookie. That is the only version of this promise worth publishing, because the hand-checked version stops being true the first time somebody pastes in a script.
What happens to the contact form.
What is kept is what you typed, and nothing around it:
- Your name.
- Your email address.
- Your organization, if you choose to give one — the field is optional and stays empty if you leave it empty.
- Which subject you chose, from the seven the form offers.
- What you wrote in the message box.
- The date and time it arrived.
Your IP address is not recorded with the message. Nothing about your browser, your screen, your location or how you arrived is recorded with it either.
There is a hidden field in the form and a check on how long the page was open before you sent it. Both exist to turn away automated submissions. Neither is used to identify you, and the timing check measures one interval — page opened, form sent — not what you did in between.
It goes to two places: this site’s own server, and its host. Your browser posts the form to this site, which checks it and then hands it to Netlify Forms — the form service built into the company that hosts this site. Netlify stores the message and emails it to the principal, who answers it. It does not go to a marketing platform, a customer-relations system, an advertising network or an analytics product, and it is not sold, shared or used to build a profile of you.
Netlify never learns anything about you that you did not type. The handoff happens on the server after you press the button, not in your browser — which is why clause 2 is still true, and why no request leaves your machine for any domain but this one. Netlify is the host and the processor; Gerode is the controller, and clause 5 says what that means.
This paragraph changed on 10 September 2026, when the site was published. Until then the form wrote to a file on a machine that was never online, and this clause said so. If the destination changes again, this page changes on the same day and the date at the top changes with it.
How long it is kept.
Two copies exist of anything you send: the one in the principal’s email, and the one in the host’s form dashboard. Asking for deletion, below, removes both.
Until it is deleted. There is no automatic expiry, because a message that has been answered is often worth keeping — a conversation that resumes eighteen months later should not start from nothing.
Write to Quson@gerodec.com and ask for a copy of what is held, or ask for it deleted, and it will be done. You do not have to give a reason, and asking for it deleted does not end anything else.
Who is answerable for it.
Gerode LLC, a Virginia limited liability company organized 22 September 2023 — on record with the Virginia State Corporation Commission and searchable there by name — is the controller of anything you send. There is no second company and no parent.
There is one processor, and it is the host. This site runs on Netlify, which necessarily handles what passes through it: the pages it serves, the ordinary server logs any web host keeps, and — since 10 September 2026 — contact form submissions, which it stores and forwards by email. Netlify acts on Gerode’s instructions and for no other purpose. Nothing reaching this firm is passed to anyone beyond that, and there is nobody else in the chain.
No postal address is published here, deliberately. The registered address of a one-person company is a home, and publishing it so that this page looks more like the notices you are used to would be a worse privacy outcome than the gap it fills. Quson@gerodec.com reaches the principal directly and is the fastest route to a person. If you need a postal address on file — a public body with a records requirement usually does — ask, and it will be given in writing.
Where the site is served from.
Netlify, since 10 September 2026. The pages you read are served from their network, which means their servers necessarily see the requests your browser makes for them — the page asked for, the time, the IP address it came from, and the browser string it sent. That is what any web host sees; it is the cost of the site existing at an address at all.
Gerode does not read those logs, does not export them, and has built nothing that joins them to anything else. There is no analytics product sitting on top of them, which is why clause 02 is short. Their retention is Netlify’s to set and is described in their own notice, not invented here.
Before that date this clause said no host had been configured, which was true: the site existed only on one machine and had never been online.
Links that leave this site.
A few pages link out — to LinkedIn, and to the principal’s own two sites. Following one of those links takes you somewhere Gerode does not control and where a different notice applies. Nothing about you is attached to the link on the way out.
How to check this yourself.
You should not have to take a firm’s word for what its website does, and on a site this size you do not have to.
Open your browser’s developer tools, switch to the network tab and reload any page. Every request will be to this domain. Then open the storage tab: there will be no cookies, on any page, ever. Local storage will hold at most one entry, gerode-theme, and only if you have pressed the theme toggle. Session storage will hold one more, gerode-diagnostic, but only while you are part-way through the diagnostic — and it will be gone when you close the tab. That takes about ninety seconds and it settles the question better than this page does.
When this notice changes.
The date at the top of this page is the day it was last read line by line against the code, not the day a file was touched. If the site starts doing something this page does not describe, this page is wrong and the fix is to correct it, not to add a clause reserving the right to change it without telling you.
Questions about any of it go to Quson@gerodec.com and reach the principal.