1. Introduction
As a federated social network, Mastodon operates through self-hosted instances. This policy outlines how your data is collected, used, and protected across the Mastodon ecosystem.
2. Data We Collect
- Account Information: Username, email, display name, and profile details.
- Posts & Interactions: Your content, likes, replies, and timeline activity.
- Technical Data: IP addresses, device information, and browser types.
- Connection Data: Users you follow and who follow you.
3. How We Use Your Data
Data is used to provide social features, improve services, enforce policies, and comply with legal obligations. Your content remains under your control with privacy settings to manage visibility.
4. Data Sharing
Data is stored on your instance server. Content may be shared with other Fediverse-compatible platforms you interact with. We never sell user data to third parties.
5. Your Privacy Controls
Adjust privacy settings to control:
- Who can see your posts (public, followers-only, etc.)
- Content filtering for sensitive material
- Notification preferences
6. Data Security
Instance administrators are responsible for securing user data. We recommend choosing instances with strong encryption and regular security audits.
7. Children's Data
Mastodon is not intended for users under 13. We do not knowingly collect data from children. Parents should monitor their child's activity on any social platform.
8. Policy Changes
Updates to this policy will be posted here. Substantial changes may require your consent where legally required.