Privacy notice.
This site keeps almost nothing: no cookies, only anonymous visit counts. The PARADA system is built to process what a gate camera and a parking session need, and no more.
Last updated 5 October 2026.
This website
The site has no accounts, forms or advertising, and sets no cookies. Fonts, models and code are all served from the site itself. If you switch the sound on or off, that choice is saved in your own browser’s local storage; clear your site data to remove it. Drive mode runs entirely in your browser and sends nothing anywhere.
The site counts visits with Vercel Web Analytics, served from the site’s own address. It uses no cookies: visitors are told apart by a hash of the request that Vercel discards after 24 hours, and each page view records the page address, the page you came from, and your browser and its version. It is used only to see which pages are read.
Like any website, the host that serves these pages (Vercel) processes standard request data such as your IP address and browser details to deliver them, under its own privacy policy, and may do so outside the Philippines. If you email the team, we see your email address and message and use them only to reply. Links to GitHub take you to a site with its own terms.
The PARADA system
PARADA is not yet deployed: no establishment runs it today, so it holds no one’s data. When an establishment does run it, that establishment decides why and how parking data is processed and is responsible for it, and must give drivers its own privacy notice. The rest of this page describes what the system is built to process, from its documentation, so that notice can be accurate.
Why it is processed
- To count cars in and out at each zone’s gate cameras and show live availability.
- To open and close parking sessions and calculate fees where the establishment sets them.
- To run reservations, zone assignments, guest admission, violations and appeals.
- To run your account: sign-in, verification, password recovery and notifications.
- To keep the counts honest: mismatches such as an unknown plate or an exit with no session are recorded for an administrator to review.
Source: README.md, docs/database/model.md
What the system processes
A plate number can identify the person who drives or owns the car, so plates and every record tied to them are personal information, the same as account details.
| Driver accounts | Name, optional username and phone, email, a password stored only as an argon2id hash, an optional profile picture (up to 2 MB), and verification codes stored only as a keyed hash. |
|---|---|
| Vehicles | Licence plate (the key the cameras match), type, and optional make, model and colour. |
| Gate events | For each car a gate camera reads: the plate as read, its normalised form, the OCR confidence, the camera, zone and time. Events are kept for unregistered plates too, so counts stay right and anomalies can be reviewed. |
| Parking records | Sessions (entry, exit, duration), fees, reservations, zone assignments, violations and appeals, and notifications. |
| Location | Only when you tap Navigate in the driver app, and only with your permission: your phone reads its position once and passes it to Apple Maps or Google Maps as the start of the route, where that app’s own privacy policy applies. PARADA does not send it to its servers, store it, or track you in the background. |
| Camera images | Frames are processed in memory by the vision service and are not saved or uploaded. In the recommended deployment, cameras and raw frames never leave the facility. |
Source: docs/database/model.md, docs/api/README.md, docs/mobile/README.md, docs/vision/architecture.md, docs/how-to/deploy.md
How it is protected
- Every request is checked against the signed-in user; drivers only ever see their own vehicles and records, and admin actions need the admin role.
- Sign-in tokens are kept in the phone’s secure storage, or an HttpOnly cookie for the admin app, and can be revoked on the server.
- Cameras must present an API key; repeated or malformed events are rejected and rate-limited.
- Recovery emails are generic, and reset tokens are single-use, expiring and stored hashed.
How long it is kept
Records are built to be kept as history: an unregistered vehicle is marked inactive rather than deleted, and zones are deactivated rather than removed, so past sessions and reports stay intact. You can remove your profile picture and change your email or phone at any time. The documented system has no self-service way to delete an account; ask the establishment that runs it.
Retention periods, production log redaction and the policy on raw camera images are listed in the project’s threat model as open items to settle before deployment. The establishment running PARADA sets them.
Source: docs/api/README.md, docs/database/model.md, docs/security/phase15-threat-model.md
Your rights
In the Philippines, the Data Privacy Act of 2012 (Republic Act No. 10173) gives you the right to be informed, to access, to object, to correct, to have data erased or blocked, to data portability, to be compensated for damage from inaccurate or unlawfully used data, and to complain to the National Privacy Commission. For a deployed PARADA, exercise them with the establishment that runs it. For this site or the project, write to lorenzlanzmalabanan@lpubatangas.edu.ph.
