Privacy policy
Last updated
This privacy policy describes how agentskills (“we”, “this site”) handles information when you use the public directory. It is written for a small personal project — factual and short, not a marketplace privacy notice.
Who we are
agentskills is a hand-kept directory of AI coding tools, agent skills, plugins, MCP servers, and related resources. The operator is the individual who publishes this site (see About). There is no separate corporate “controller” entity beyond the site operator unless stated otherwise on About.
What we collect
We do not require accounts. We do not ask for names, emails, or payment details to browse the directory.
Automatically (when analytics is configured)
- Usage data: pages viewed, referrer, approximate region/locale, device and browser type
- Product events (for example install command copied, directory filter used) with related metadata such as entry name, category, or slug
- Identifiers assigned by the analytics SDK (cookie or local storage) so sessions can be distinguished
- Server or host logs that a hosting provider may keep (IP address, user agent, timestamps) as part of normal web infrastructure
You provide voluntarily
- Content in messages you send if you contact us (email, GitHub issues, or other channels listed on About)
- Information in the URL when you share a filtered link (for example search text or tags in the query string) — that text is visible to anyone with the link and may appear in analytics as part of the page URL
Public directory content (tool names, descriptions, install commands) is editorial data we publish, not personal data you submit.
How we use information
- Operate and improve the directory and its performance
- Understand aggregate usage (popular entries, whether filters help)
- Diagnose errors, abuse, or security issues
- Respond if you contact us
- Comply with law when required
We do not sell personal data. We do not use your data for third-party advertising or cross-site retargeting. Marketing-related practices are summarized in the Marketing policy.
Analytics provider (PostHog)
When a project token is configured, client-side analytics are handled by PostHog. The browser sends events to a first-party path on this site (/_ph), which is reverse-proxied to PostHog Cloud. PostHog processes data under its own terms and privacy documentation.
Session recording is off by default and only runs if the operator explicitly enables it in the deployment environment.
If no analytics token is set, the analytics SDK does not initialize and those client events are not sent.
Cookies and similar storage
- Analytics— identifiers used by PostHog (when enabled)
- Preferences— theme (light/dark/system) stored locally by the site
- Host / CDN— any cookies set by the hosting or edge platform for security or delivery
You can clear or block cookies and site data in your browser. Blocking analytics storage may limit measurement but does not block core browsing of the directory.
Sharing and processors
We use infrastructure and software vendors that may process data on our behalf, for example:
- Hosting / CDN (site delivery and access logs)
- PostHog (product analytics, when enabled)
- Source hosts for logos or favicons loaded when rendering entries (requests may go to third-party image CDNs)
Outbound links to tools listed in the directory leave this site; those services have their own privacy policies.
Retention
Analytics retention follows the project settings in PostHog and any limits of the hosting provider’s logs. Contact messages are kept only as long as needed to respond or for legitimate record-keeping. We do not keep a long-lived marketing profile of visitors.
Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, or restrict processing of personal data, or to object to certain processing. To exercise a request:
- Open an issue or discussion on the project repository, or use a contact method on About
- Include enough detail to locate the data (for example a PostHog distinct id if you have it, or approximate dates and pages)
You can also limit collection yourself via browser privacy settings, content blockers, or by not enabling cookies for this site.
Children
The site is intended for developers and professionals. It is not directed at children under 16 (or the minimum age in your jurisdiction). We do not knowingly collect personal data from children for this service.
International processing
Hosting and analytics providers may process data in the United States, the EU, or other regions depending on how the project is configured (for example PostHog US vs EU cloud). By using the site, you understand that data may be transferred to those locations under the providers’ safeguards.
Changes
We may update this policy when the product or tooling changes. The “Last updated” date will change. Continued use of the site after an update means the revised policy applies to new activity.
Related
- Marketing policy — ads, outreach, and how analytics is used for product understanding
- About — why this list exists
Contact
Privacy questions or data requests: @m0nle0z on X, or see About.