Legal

Privacy, plainly.

Cyber Library is free to read without an account. We collect as little as we can, we show no ads, we sell nothing, and we use no tracking cookies.

Last updated: October 9, 2026

Who we are

Cyber Library (www.cyberlibrary.com) is run by the company below. It is the data controller for the processing described on this page.

Company
CC CYBER COURSES
Trade name
Cyber Courses
Legal form
SASU, a French simplified joint-stock company with a single shareholder
Share capital
100 EUR
Head office
12 rue de Port-Mahon, 75002 Paris, France
SIREN
919 933 184
Registration
RCS Paris 919 933 184
VAT number
FR87919933184
President and directors
FAKGROUP, Florian Amette

When you read the library

You can read every page without an account. To send you a page, our host Vercel receives the technical data any website receives: your IP address, your browser and device type, the page you ask for and the page you came from.

Vercel uses this data to deliver the site and to protect it against abuse. It may keep it for a short time in its logs, under its own retention rules. We do not use it to identify you.

When you use the site search, your search words are sent to our server to find matching pages. We do not store them.

Audience measurement

We use two audience tools to understand which pages are useful. Neither sets a cookie or stores anything on your device, and neither is used to identify you.

Vercel Web Analytics counts page views with the page address, the referring site, your country, and your browser, system and device type. To count unique visitors it uses a hash of the request that is discarded after 24 hours. We also send a few anonymous events to it:

  • a click on a link to another website, with only that site's domain name and where on the page the link was;
  • a copy action, with only the kind of content copied (code, table or text), never the content itself;
  • a search, with only whether it was typed or submitted, never the search words.

Ahrefs Web Analytics counts visits in a similar way. According to Ahrefs, your IP address is used only to estimate your city and is then discarded, never stored. Unique visitors are counted with a hash of your IP address and browser that uses a random value replaced and deleted every 24 hours.

Content from GitHub

Pages show the number of stars of our GitHub repository and the names and pictures of the people who contributed to them. Your browser loads the star count and the pictures directly from GitHub, so GitHub receives your IP address and browser data under its own privacy statement.

The library is written in public on GitHub (github.com/Cyber-Courses/cyber-library). If you contribute, your GitHub name, picture and contributions are public under GitHub's terms and the repository license, and your name may appear as a contributor on the pages you edited. A contributor may ask us to link their name to a personal website instead of their GitHub profile.

When you sign in

Signing in is optional. It goes through Cyber Auth (www.cyberauth.co), the account service of the Cyber family, run by the same company. Cyber Auth has its own privacy policy for the account you create there.

When you sign in, Cyber Library receives from Cyber Auth and stores in its database:

  • your Cyber Auth identifier, your name, your email address, whether that address is verified, and your profile picture if you have one;
  • the sign-in tokens Cyber Auth gives us, so we can act for you with the Cyber family services;
  • for each signed-in session: a session token, its expiry date, and the IP address and browser that opened it, which help us keep your account secure.

This database is a PostgreSQL database hosted by Neon.

Your reading progress

When you are signed in, the pages you read are recorded so you can see your progress and build your skills profile across the Cyber family, for example in Cyber Courses.

For each page you spend at least a few seconds on, we send to CyberBackend, our learning service: the page address, its title and language, your active reading time, how far you scrolled, and whether you reached the end. It is linked to your Cyber Auth identifier.

Nothing of this is recorded when you are not signed in. To stop it, sign out.

The MCP server

Our MCP server (/api/mcp) lets AI assistants read the library. It is public and read only, and needs no account. It sets no cookie. Requests to it are handled by Vercel like any other page, with the same short-lived technical logs. We do not store the questions sent to it.

Cookies and local storage

We use only cookies that the site needs to work or that keep a choice you made. None is used for advertising or tracking, so we do not ask for your consent and show no cookie banner.

CookiePurposeDuration
__Secure-better-auth.session_tokenKeeps you signed in.30 days, renewed while you use the site
__Secure-better-auth.session_dataCaches your session so pages load faster.5 minutes
__Secure-better-auth.stateProtects the sign-in against forgery. Only set while you sign in.5 minutes
NEXT_LOCALERemembers your language.1 year
sidebar_stateRemembers whether the sidebar is open.7 days

Your browser also keeps a few settings in its local storage. They stay on your device and are never sent to us:

KeyPurpose
themeYour theme (dark, black or light).
cl-recent-pagesThe last pages you opened from the search, to show them first.
nl-star-engagedWhether you clicked the GitHub star button, to stop showing the reminder.
nl-stars:*The star count, cached for this browser tab.

You can delete cookies and local storage in your browser settings at any time. If you delete the session cookie, you are signed out.

Who helps us

These providers process data for us, only to run the service described here.

ProviderWhat it doesWhere
Vercel Inc.Hosting, delivery, logs and Vercel Web AnalyticsUnited States, with servers worldwide
NeonDatabase for accounts and sessionsEuropean Union (Frankfurt)
Ahrefs Pte. Ltd.Ahrefs Web AnalyticsSingapore
GitHub, Inc.Source of the content, star count and contributor picturesUnited States
Google WorkspaceEmail, if you write to usEuropean Union and United States

Cyber Auth and CyberBackend are our own services, run by the same company.

Transfers outside the European Union

Some providers above are based outside the European Union or may process data there. When that happens, the transfer is covered by a safeguard recognized by the GDPR, such as the European Commission's standard contractual clauses or, for a certified company, the EU-US Data Privacy Framework.

Why we may do this

The GDPR requires a legal basis for each use of your data. Ours are:

  • Contract: your account, your sessions and your reading progress, because you asked for them by signing in.
  • Legitimate interest: delivering and protecting the site, and measuring its audience without cookies and without identifying you.
  • Strictly necessary or at your request: the cookies and local storage listed above.
  • Legal obligation: answering your requests about your data.

How long we keep it

  • Account data and reading progress: until you ask us to delete your account.
  • Sessions: a session ends 30 days after you last used it, or when you sign out.
  • Audience measurement: kept only as counts. The hashes used to count visitors are discarded after 24 hours.
  • Hosting logs: a short time, under Vercel's retention rules.
  • Your emails to us: as long as needed to answer you and to keep a record of your request.

Your rights

You can ask us to access your data, correct it, delete it, or send it to you in a portable format. You can also object to a use of your data or ask us to limit it.

Write to privacy@cyberlibrary.com from the email address of your account. We answer within one month. We may ask you to confirm your identity first. Deleting your Cyber Library data does not delete your Cyber Auth account: ask for both if you want both.

Complaints

If you think we do not respect your rights, you can complain to the French data protection authority, the CNIL (www.cnil.fr), or to the authority of the country where you live.

Children

Anyone can read the library. Accounts are not meant for children under 15. If you are under 15, ask a parent or guardian before you sign in.

Changes to this policy

We update this page when what we do changes. The date at the top shows the latest version. If a change matters, we will say so on the site.