Security and compliance
Updated: 30 September 2026
Hosted in France
Contexte Tech's server and database are hosted in France by Scaleway. Scaleway is ISO/IEC 27001:2022 certified (information security) and HDS certified (health data hosting); details of its certifications are published on its trust center (security.scaleway.com).
Public files are delivered by the Bunny CDN, which offers a GDPR-compliant data processing agreement.
Encryption
All pages and the API are served over HTTPS only. The connection between the API and the database is encrypted (TLS).
Accounts and sessions
Passwords are never stored in plain text: they are hashed with Argon2, the recommended algorithm for this purpose.
The session lives in a protected cookie (HttpOnly, SameSite, secure); every write checks where the request comes from, and rate limiting curbs abuse.
Personal data (GDPR)
Contexte Tech only collects what the service needs: email address, username and content published by members. No advertising trackers are used.
Fonts are served by the site itself: displaying a page sends no data to an external service. Traffic statistics are public (stats.contextetech.com).
Each resource shows its license, whether commercial use is allowed and whether it contains personal data (none, fictional, anonymized or real).
Transparency
The code of Contexte Tech's first version is open source (AGPL-3.0): anyone can check how the service works.
Reporting a problem
Illegal content can be reported from the resource page (“Illegal content? Report”).
A security vulnerability can be reported confidentially to coucou@contextetech.com; please do not make it public before it is fixed.