Quoris is built to make civic ideas easier to explore and participate in. We collect the information needed to run accounts, keep the product safe, and show a local feed. We do not run ads, sell personal data, or use third-party analytics or cross-site tracking.
What we collect
When you create an account, we collect your username, email address, chosen password, and current self-reported ZIP code.
We store passwords only as secure password hashes. We also record sign-in session details: a hashed session token, expiration and use times, IP address, and browser user agent. Password-reset links expire after one hour, and we store their tokens only as hashes.
When you use Quoris, we store the ideas, reasons, implementation suggestions, votes, reports, and account updates you submit. Reports can include a reason and optional details. Administrators' moderation actions are also recorded so we can operate the service responsibly. We may use automated safeguards to help identify content for moderator review and record the resulting moderation status. To protect sign-in, account recovery, and participation features from abuse, we also use account identifiers, email addresses, and IP addresses in rate-limit records and operational logs.
What other people can see
Public Quoris pages show visible ideas, reasons, implementation suggestions, usernames, dates, and aggregate vote counts. They do not show your email address, personal vote history, reports, or account ZIP code.
Inside the signed-in product, an idea's origin ZIP is shown with the idea. That is the ZIP attached when the idea was created; it may not be the creator's current ZIP. Do not put sensitive personal information in an idea, reason, or implementation suggestion: visible content can be read, copied, and shared by others. Public pages may also be indexed by search engines. Hiding or removing content in Quoris does not remove copies that other people or search engines already have.
How we use it
- to create and secure accounts, sign you in, and send password-reset emails;
- to tailor Local Trending using your current self-reported ZIP;
- to count votes, display public civic discussion, and operate your dashboard;
- to prevent abuse, rate-limit requests, moderate content, and investigate reports; and
- to operate and improve the service.
When an idea is forwarded
Quoris has a limited, admin-reviewed forwarding workflow. If an administrator approves a packet for a verified public contact, it can include the idea text, selected visible reasons or implementation suggestions, an origin or forwarding-cohort ZIP, and aggregate support and oppose counts. It does not need to include your email address or your username.
Service providers
We use Railway to host Quoris and its database, and Resend to deliver transactional email such as password resets and approved forwarding packets. Those providers process the information needed to provide their parts of the service. We do not give personal data to advertisers, data brokers, or analytics vendors.
Cookies and tracking
Quoris uses one essential, secure session cookie after you sign in. It keeps you signed in and is not used for advertising or cross-site tracking. We do not use advertising cookies or analytics SDKs. We do not change how Quoris works in response to a browser's Do Not Track signal because we do not conduct cross-site tracking.
Retention and your choices
We keep account, participation, moderation, and security records while they are needed to operate, secure, and moderate Quoris. We have not set a separate public retention schedule, added a self-service account deletion control, or set up a dedicated privacy-request channel yet. You can update your ZIP in your account settings and sign out at any time.
Children
Quoris is not designed for children under 13, and we do not knowingly create accounts for them.
Changes
If this policy changes, we will update the date at the top of this page.