Privacy Policy
Last updated: July 3, 2026
Did I Miss It? (“we”, “us”) is a search tool that helps developers find open-source projects, at didimiss.com. It is operated by Sames Consulting Inc. This policy explains what we collect and why. We keep it short because we collect very little.
What we collect
- Search is anonymous. You can search without an account. We may log search queries to improve results and prevent abuse. Queries are not tied to your identity. We process your IP address transiently to apply rate limits and block abuse; we do not use it to build a profile of you.
- Cookies. If you sign in, we set one signed session cookie to keep you logged in. We use no advertising or third-party tracking cookies.
Google user data
Signing in with Google is optional and only needed to get a personal API
key for the MCP endpoint. When you sign in, we request the minimum Google OAuth scopes
openid,
email, and
profile. This section
describes exactly how we handle that data.
- Data we access. From Google we receive only your Google account identifier, your email address, and your basic profile (your name). We do not request or access your contacts, Drive, Gmail, calendar, or any other Google data.
- How we use it. Solely to create your account, identify you on subsequent sign-ins, and issue and validate your personal API key. We do not use Google user data for advertising, and we do not use it to train, or provide to others to train, any AI or machine-learning models.
- How we share it. We do not sell Google user data or share it with third parties, except with the infrastructure sub-processors listed below that operate the service on our behalf, or where required by law.
- How we store & protect it. Google user data is stored in a private database on our hosting provider (Hetzner, EU), transmitted only over TLS, and access is restricted to the operator. Your API key is never stored in plaintext — only a SHA-256 hash is kept.
- Retention & deletion. We retain your account identifier, email, and name until you delete your account. You can revoke your API key at any time from your account page, or email james@samesconsulting.ca to request full deletion of your account and associated Google user data; we action such requests within 30 days.
Our use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
How we use data generally
To run the service: return search results, issue and validate your personal key, keep the service available, and prevent abuse. That’s it — we do not sell your data or share it for advertising.
Who processes data for us
We rely on a small set of providers to operate: our hosting provider (Hetzner) and Cloudflare (content delivery and security). Sign-in is handled by Google. If you choose to donate, payment is handled by Ko-fi — we never see your card details.
Your choices
You can regenerate or revoke your key at any time from your account, or email us to delete your account entirely.
Security & children
We serve everything over TLS and store keys hashed at rest. The service is not directed at children under 13, and we do not knowingly collect their data.
Changes & contact
If this policy changes, we’ll update the date above. Questions or requests: james@samesconsulting.ca.