◂ Back to OrionEye

◈ Privacy Policy

OrionEye v4.0 & facelive.net — Full GDPR / Datenschutz Compliance
Last updated: April 9, 2026  |  Version 2.0  |  Data Controller: Samuel La Manna

  • 1. Introduction & Data Controller
  • 2. Types of Data Processed
  • 3. Purposes & Legal Bases
  • 4. Data Retention
  • 5. Sharing & International Transfers
  • 6. Cookies & Similar Technologies
  • 7. Security Measures (TOMs)
  • 8. Your Rights (Art. 15–22 GDPR)
  • 9. Biometric Data & Video Analysis
  • 10. Children's Privacy
  • 11. Transparency & Accountability
  • 12. Changes to This Policy
  • 13. Contact
  • FAQ — Data Management

1. Introduction & Identity of the Data Controller

OrionEye v4.0 is a Cyber Intelligence, Geospatial Analysis and Space Technology platform accessible at https://facelive.net/orioneye/. It is developed and operated as a legitimate, non-commercial, educational and research-oriented service in full compliance with:

  • Regulation (EU) 2016/679 — General Data Protection Regulation (GDPR)
  • Bundesdatenschutzgesetz (BDSG) — German Federal Data Protection Act
  • Directive 2002/58/EC — ePrivacy Directive
  • Directive (EU) 2022/2555 — NIS2 Directive

Data Controller (Titolare del trattamento / Verantwortlicher)

Name: Samuel La Manna
Role: Software Engineer & Intelligence Architect
Email: privacy@facelive.net
Website: https://facelive.net/orioneye/
Domain: facelive.net

This Privacy Policy applies to the entire facelive.net domain, including the OrionEye web application, landing pages, API endpoints, and all subpages. By using any part of the service, you acknowledge this policy.


2. Types of Data Processed

OrionEye follows the principle of data minimization (Art. 5(1)(c) GDPR). We process only what is strictly necessary for service functionality.

2.1 Data Provided Voluntarily by the User

DataWhen CollectedPurposeRequired?
UsernameAccount registrationAuthentication, UI personalizationYes (if registering)
Email addressAccount registrationAuthentication, account recoveryYes (if registering)
Password (hashed)Account registrationAuthenticationYes (if registering)
AI chat messagesWhen using Gemini AI panelAI-assisted intelligence analysisNo — optional feature
Console commandsWhen using the command consoleExecuting platform functionsNo — optional feature

Note: Registration is optional. The vast majority of OrionEye features are accessible without any account, without submitting any personal data.

2.2 Technical Data (Collected Automatically)

DataSourcePurposeRetention
IP addressHTTP requestSecurity logs, abuse prevention30 days
Browser User-AgentHTTP headerCompatibility, security analytics30 days
Device type / screen sizeHTTP header / CSS mediaResponsive designNot stored
Referrer URLHTTP headerTraffic source analysis30 days (in logs)
Timestamp of accessServer logAudit trail, security30 days
Approximate geolocationIP-based lookup (ip-api.com)Map centering, local weatherSession only — not persisted
Page views / eventsGoogle Analytics 4 (if consented)Aggregate usage statistics14 months (anonymized)

2.3 Multimedia Data

OrionEye does not upload, store, or process user-uploaded images, videos, or audio files. The platform displays:

  • Google Maps tiles & Street View — rendered by Google, not stored by us
  • Traffic camera feeds — public streams, proxied in real-time, never recorded or stored
  • Satellite imagery (NASA GIBS) — public NASA tiles, not stored

No user-generated multimedia content is collected, processed, or retained.

2.4 What We Do NOT Collect VERIFIED

  • ❌ No biometric data — No facial recognition, fingerprint, voice print, or iris scan
  • ❌ No behavioral profiles — No user dossiers, scoring, or tracking graphs
  • ❌ No financial data — No credit cards, bank accounts, or payment info
  • ❌ No health data — No medical or wellness information
  • ❌ No political / religious data — No special category data per Art. 9 GDPR
  • ❌ No cross-site tracking — No fingerprinting, no third-party tracking pixels
  • ❌ No social media profiles — No scraping of personal social media accounts
  • ❌ No location history — Geolocation is session-only and never stored

3. Purposes of Processing & Legal Bases (Art. 6 GDPR)

Each category of data is processed for a specific, documented purpose with a corresponding legal basis.

PurposeData InvolvedLegal BasisConsent?
User authentication Username, email, hashed password Art. 6(1)(b) — Contract performance No (necessary)
Platform functionality Console commands, map interactions, AI chat Art. 6(1)(b) — Contract performance No (core service)
Security & abuse prevention IP, User-Agent, timestamps, access logs Art. 6(1)(f) — Legitimate interest No (overriding)
Infrastructure protection Rate-limit counters, error logs Art. 6(1)(f) — Legitimate interest No
Traffic analytics Anonymized page views (GA4) Art. 6(1)(a) — Consent Yes
Map centering / weather IP-based approximate geolocation Art. 6(1)(a) / Art. 6(1)(f) Implicit
Language preference Language code (EN/IT cookie) Art. 6(1)(f) — Legitimate interest No (essential)
OSINT data aggregation Public API queries (no personal data) Art. 6(1)(f) — Legitimate interest No (public data)

Legitimate Interest Assessment (LIA): For all processing based on Art. 6(1)(f), we have conducted a balancing test confirming that our legitimate interest (security, service delivery, OSINT research) does not override the data subject's rights. Full LIA documentation is available upon request at privacy@facelive.net.


4. Data Retention

We retain data only for as long as necessary to fulfil the purpose for which it was collected.

Data CategoryRetention PeriodAfter ExpiryCriteria
Server access logs
(IP, UA, timestamp)
30 days Automatically deleted (log rotation) Industry-standard security period
User account data
(username, email, hash)
Until account deletion Permanently erased within 30 days of request User-controlled — Art. 17
Google Analytics 4 data 14 months Auto-anonymized/deleted by Google GA4 default retention; anonymized at collection
AI chat messages (Gemini) Session only Discarded on tab close No server-side persistence — in-memory
Console command history Browser session only Cleared on tab close Client-side only — never sent to server
Cached API responses
(RSS, Charging, Facebook)
5–15 minutes Evicted from server memory Performance cache — RAM only, zero disk
Language preference cookie 1 year Expires naturally Standard UX preference duration
Authentication token (JWT) 24 hours Automatically invalidated Short-lived for security

4.1 Anonymization & Pseudonymization

  • Google Analytics: IP anonymization enabled (last octet masked). Data pseudonymized via client IDs, not linked to identifiable users.
  • Server logs: After 30 days, permanently deleted — not anonymized, simply removed.
  • API caches: Contain only public data (no personal data) — evicted from RAM automatically.
  • Passwords: Stored as bcrypt hashes (irreversible one-way function) — the original password is never stored or retrievable.

No long-term personal data storage: OrionEye maintains no permanent database of user behavior, browsing history, search queries, or personal profiles. The longest retention period for identifiable data is 30 days (server logs).


5. Data Sharing & International Transfers

5.1 Third-Party Services

OrionEye integrates public APIs for intelligence data. All backend queries are executed server-side, meaning your IP address and identity are never exposed to third-party API providers.

ServiceData SentNOT SentLocationPrivacy
Google MapsViewport coordinatesUser IP, PIIUS (DPF)Link
Google Gemini AIChat textUser IP, name, emailUS (DPF)Link
Google Analytics 4Pseudonymized eventsReal IP (masked)US (DPF)Link
OpenChargeMapCountry codeAny PIIUK/EULink
OpenSky NetworkBounding boxAny PIIEU (CH)Link
ACLEDRegion/date filtersAny PIIUS/EULink
GDELT ProjectKeyword queriesAny PIIUSLink
NASA EONET / GIBSEvent type queriesAny PIIUS (gov)Link
RIPE Atlas / RIPEstatPublic IP / ASNUser PIIEU (NL)Link
Windy.comMap coordinatesAny PIIEU (CZ)Link
CelesTrakSatellite catalog queryAny PIIUSN/A — public
Launch Library 2Launch schedule queryAny PIIUSLink
ip-api.comUser IP (server-side)Name, email, accountEULink
NewsAPI.orgKeyword queriesAny PIIUKLink

5.2 International Data Transfers

Transfers to the US are covered by the EU-US Data Privacy Framework (DPF) — Commission Decision (EU) 2023/1795. Google LLC is a certified DPF participant. For all other APIs, no personal data is transmitted — only functional query parameters.

5.3 No Sale of Data GUARANTEED

OrionEye never sells, rents, trades, or shares personal data with third parties for commercial, marketing, or advertising purposes. This is an absolute, unconditional commitment.


6. Cookies & Similar Technologies

6.1 Cookie Inventory

CookieTypePurposeDurationConsent?
_gaAnalyticsGA4 — distinguishes users14 monthsYes
_ga_*AnalyticsGA4 — session state14 monthsYes
langFunctionalLanguage preference (EN/IT)1 yearNo (essential)
gn_tokenAuthJWT session token (localStorage)24 hoursNo (essential)

6.2 Consent Mechanism

  • Analytics cookies are loaded only after explicit user consent, per Art. 5(3) ePrivacy Directive.
  • Essential cookies (language, auth) are exempt — strictly necessary for service functionality.
  • OrionEye does not use: tracking pixels, fingerprinting, social widgets with tracking, retargeting, or any cross-site tracking technology.

7. Security & Technical/Organizational Measures (TOMs) — Art. 32 GDPR

7.1 Encryption

  • TLS 1.3 enforced on all connections (HTTPS mandatory)
  • HSTS active — prevents protocol downgrade attacks
  • SSL certificates auto-renewed via Let's Encrypt / Certbot
  • Passwords stored as bcrypt one-way hashes — never in plaintext

7.2 Firewall & Network

  • UFW firewall — only ports 80, 443, 22 open
  • Nginx rate limiting — anti brute-force and DDoS
  • IP-based access controls on admin endpoints

7.3 Access Control

  • SSH key-only authentication (password login disabled)
  • No shared credentials — single administrator
  • API keys server-side only — never exposed to client

7.4 Application Security

  • CSP (Content Security Policy) headers
  • X-Frame-Options: DENY — anti-clickjacking
  • X-Content-Type-Options: nosniff
  • Referrer-Policy: strict-origin
  • Path traversal prevention — .env, .git, node_modules blocked
  • Input validation & sanitization on all endpoints
  • No SQL database — zero SQL injection surface

7.5 Audit & Monitoring

  • Server access logs — 30 days with automatic rotation
  • PM2 process manager — crash recovery, error logging
  • Application error logs — separate from access logs

7.6 Privacy by Design & by Default (Art. 25 GDPR)

OrionEye was architected from inception with privacy as a core principle:

  1. Data minimization — Only strictly necessary data collected
  2. No registration required — Core features work without account
  3. Server-side proxying — User IP never exposed to third parties
  4. Ephemeral sessions — No persistent user data after session
  5. Consent-first analytics — GA4 loads only after opt-in
  6. Default = maximum privacy — Opt-in for all non-essential data

8. Your Rights Under GDPR (Art. 15–22)

RightArticleDescription
AccessArt. 15Obtain a copy of all personal data we hold about you
RectificationArt. 16Correct any inaccurate personal data
ErasureArt. 17Request deletion ("right to be forgotten")
RestrictionArt. 18Limit processing of your data
PortabilityArt. 20Receive data in structured, machine-readable format (JSON/CSV)
ObjectionArt. 21Object to processing based on legitimate interest
Withdraw ConsentArt. 7(3)Withdraw consent at any time without affecting prior processing

To exercise any right: privacy@facelive.net. Response within 30 days (Art. 12(3)). Free of charge unless manifestly unfounded.

8.1 Right to Lodge a Complaint

  • 🇮🇹 Italy: Garante per la Protezione dei Dati Personali — garanteprivacy.it
  • 🇩🇪 Germany: Bundesbeauftragte für den Datenschutz — bfdi.bund.de
  • 🇪🇺 EU: Your local national Data Protection Authority

8.2 Account Deletion

Email privacy@facelive.net to delete your account. Within 30 days: username, email, and password hash are permanently erased. Tokens are immediately invalidated. No backups with your data are kept.


9. Biometric Data & Video Analysis

Clear statement: OrionEye does NOT collect, process, store, or analyze biometric data in any form.

9.1 What OrionEye Does NOT Do

  • ❌ No facial recognition — No detection, comparison, identification, or verification of faces
  • ❌ No fingerprint processing
  • ❌ No voice biometrics — No voiceprint or speaker identification
  • ❌ No iris / retina scanning
  • ❌ No gait analysis
  • ❌ No deepfake generation — No synthetic media, face swaps, or AI-generated impersonations
  • ❌ No behavioral biometrics — No keystroke dynamics, mouse profiling, or typing pattern analysis

9.2 Traffic Camera Feeds

OrionEye displays publicly available traffic camera feeds operated by government transportation agencies. These streams are:

  • Displayed in real-time — never recorded, stored, or analyzed
  • Proxied through our server solely to render in the map — no processing occurs
  • No face detection, license plate recognition, or object tracking is performed

9.3 Facebook OSINT Feature

The Facebook OSINT module uses the public Facebook Graph API to search for public pages. It:

  • Returns only publicly accessible information
  • Does not access private profiles, messages, or restricted content
  • Does not perform facial analysis on any images
  • Caches results for 5 minutes in RAM, then discards

9.4 Conditions for Biometric Processing (Hypothetical)

Should OrionEye ever introduce any biometric processing feature in the future (which is not planned):

  • It would require explicit, informed, freely given consent per Art. 9(2)(a) GDPR
  • A Data Protection Impact Assessment (Art. 35) would be conducted beforehand
  • Data would not be retained without ongoing explicit consent
  • No unauthorized profiles would be generated
  • Users would be informed in advance through an updated Privacy Policy

10. Children's Privacy

OrionEye is designed for professional, educational, and research use. It is not directed at children under 16 (or under 13 where that threshold applies). We do not knowingly collect data from minors. If you believe a child has provided personal data, contact privacy@facelive.net for immediate removal.


11. Transparency & Accountability

11.1 Our Commitment

As Data Controller, Samuel La Manna commits to:

  • Full transparency about all processing activities
  • Accountability under Art. 5(2) GDPR
  • Maintaining a Record of Processing Activities (Art. 30)
  • Conducting DPIAs (Art. 35) when needed
  • Continuously improving Privacy by Design
  • Notifying authorities of data breaches within 72 hours (Art. 33)
  • Responding to all data subject requests within 30 days (Art. 12(3))

11.2 Documentation Available on Request

  • Record of Processing Activities (Art. 30)
  • Legitimate Interest Assessment (LIA)
  • Technical and Organizational Measures (TOMs) — detailed report
  • Data Breach Response Procedure
  • Voluntary Data Protection Impact Assessment

Request via: privacy@facelive.net


12. Changes to This Policy

We may update this policy to reflect changes in practices, features, or legal requirements. The "Last updated" date and version number at the top indicate the latest revision. For significant changes, we will provide prominent notice. Continued use after changes constitutes acceptance.

Version history:

  • v2.0 — April 9, 2026 — Complete rewrite: expanded biometric, retention, transfer, and FAQ sections
  • v1.0 — April 9, 2026 — Initial publication

13. Contact

For any privacy-related requests, questions, data subject rights, or complaints:

Data Controller: Samuel La Manna
Email: privacy@facelive.net
Website: https://facelive.net/orioneye/
Response time: Within 30 days (Art. 12(3) GDPR)
Languages: English, Italian, Deutsch


FAQ — Data Management

Q: OrionEye effettua riconoscimento facciale?

No. OrionEye non effettua alcuna forma di riconoscimento facciale, face detection o analisi biometrica. Nessuna foto degli utenti viene raccolta, elaborata o conservata.

Q: OrionEye crea deepfake o media sintetici?

No. La piattaforma non genera, modifica o manipola immagini, video o audio. Mostra solo dati reali e pubblicamente disponibili.

Q: Devo creare un account per usare OrionEye?

No. Le funzionalità principali sono accessibili senza registrazione. La creazione dell'account è opzionale.

Q: Cosa succede ai miei dati se cancello l'account?

Username, email e hash della password vengono eliminati permanentemente entro 30 giorni. I token di autenticazione sono invalidati immediatamente. Nessun backup con i tuoi dati viene conservato.

Q: OrionEye mi traccia su internet?

No. Non usiamo cross-site tracking, fingerprinting, retargeting o tracker pubblicitari. Google Analytics (opzionale, previa consenso) traccia solo visite anonimizzate su OrionEye.

Q: Il mio indirizzo IP viene condiviso con terze parti?

No. Tutte le chiamate API esterne vengono effettuate dal nostro server (proxy server-side). Il tuo IP non viene mai trasmesso ai provider di API terze.

Q: Dove è ospitato OrionEye?

OrionEye è ospitato su infrastruttura europea conforme al GDPR.

Q: OrionEye vende i miei dati?

Assolutamente no. Non abbiamo mai venduto e non venderemo mai dati personali. OrionEye è una piattaforma gratuita, non commerciale, per la ricerca e l'educazione.

Q: Cos'è l'OSINT ed è legale?

OSINT (Open-Source Intelligence) è la raccolta e analisi di dati pubblicamente disponibili da fonti aperte. È pienamente legale ai sensi del diritto UE, basata sul legittimo interesse all'accesso alle informazioni pubbliche (Art. 6(1)(f) GDPR), e ampiamente utilizzata da giornalisti, ricercatori, forze dell'ordine e professionisti della sicurezza.

Q: Posso vedere quali dati avete su di me?

Sì. Ai sensi dell'Art. 15 GDPR, hai il diritto di richiedere una copia di tutti i dati personali che conserviamo su di te. Scrivi a privacy@facelive.net e risponderemo entro 30 giorni.

Q: Come posso revocare il consenso per gli analytics?

Cancella i cookie del browser per facelive.net oppure usa le impostazioni di gestione cookie del tuo browser. Gli script analytics non si ricaricheranno senza il tuo consenso esplicito.

Q: OrionEye accede a profili social privati?

No. La funzionalità Facebook OSINT utilizza solo l'API pubblica ufficiale di Facebook e restituisce esclusivamente informazioni accessibili pubblicamente. Non accede a profili privati, messaggi o contenuti riservati.

© 2026 OrionEye v4.0 — Created by Samuel La Manna. All rights reserved.
Terms of Service · Versione Semplice · Mobile Version