The planned cs2ed extension retrieves Premier match codes and the user Faceit API key. A dedicated retrieval Worker may use that Faceit key ephemerally to GET a demo and must discard it. Durable facts stay in steam-hypergraph. CS2ED is not a second source of truth.
Privacy
No secrets on this page.
This public site is a static product shell. It does not collect Steam passwords, Steam auth codes, Premier share codes, Faceit API keys, cookies, or credential-bearing demo URLs.
What this site processes
- Public pages. Static HTML, CSS, fonts, and the illustrative product shell. No account is required to read them.
- Preview telemetry. Experiment assignment uses namespaced localStorage, UUID visitor/session identifiers, a 30-day expiry, and an explicit reset. It is not a live conversion endpoint and is not authenticated authority.
- Private origin (when bound). Authenticated canary routes may carry a bearer on the Worker. Operator tokens are not forwarded to origin. Query strings and headers are not written into Worker invocation logs by this checkout.
What this site does not process
- Steam OpenID or password capture — SCDB owns identity, and
/authis not shipped here. - Browser demo parse or upload as a live ingest path. Manual upload on the integrations page is an illustrative recovery control only.
- A public credential form for Faceit, Steam auth codes, or sharing codes.
- Deletion of another user’s valid basis when one customer revokes. Many users may attach revocable bases to one canonical match; erasure is store-owned.
Revocation and deletion
Privacy and erasure are steam-hypergraph / target SteamGraph transactions, not a local CS2ED database. This product plane cannot honor a deletion by rewriting a fixture. When live reports exist, revoke/delete will hide the caller’s basis without deleting another user’s valid basis. Until publication is live, there is nothing to revoke on this hostname.
See methodology and data status for evidence rules and blockers.