Privacy and Data Policy
Effective date: 2026-05-16. This page explains what data The Retiree Report collects, why, who else may receive it, and the rights you have over it. If a term is unclear, write to trisstann@gmail.com.
Who we are
This site is operated by The Retiree Report. The data controller for purposes of GDPR and the business for purposes of the CCPA/CPRA is the operator at the email above.
What we collect automatically
When you visit this site, our hosting provider (Cloudflare) records standard server logs: your IP address, browser type and version, operating system, referring URL, the page you requested, response status, and the time of the request. These logs exist to operate and secure the site (rate limiting, abuse detection, debugging). They are retained for up to 30 days unless we need them longer to investigate a security incident.
We may use a privacy-respecting analytics tool that records aggregate page-view counts and approximate referrer category. Where possible, the analytics tool we use does not set cookies and does not build a cross-site profile of you.
Cookies and similar technologies
We classify cookies in two groups:
- Strictly necessary cookies: these store your cookie-consent choice and remember settings you change yourself. We set these without asking because the site cannot remember your preferences without them. They expire after one year.
- Non-essential cookies (advertising and measurement): set only after you click "Accept all" in the cookie banner. These come from third-party ad networks (such as Google AdSense) and audience-measurement services. They may set their own cookies, read existing ones, and use your IP address to deliver and measure ads, including personalized ads.
You can change your choice at any time by clearing this site's data in your browser; the banner will reappear and you can decline again.
Advertising and personalization
If you accept advertising cookies, third-party ad networks may use information about your visits to this and other websites to provide advertisements about goods and services of interest to you. Two industry opt-out tools cover most US ad networks:
For EEA / UK / Swiss visitors: if we serve ads to you we will use a Google-certified consent management platform to capture your preferences under the EU Transparency & Consent Framework. Until consent is granted, only non-personalized ads (where used at all) are served.
Affiliate links
The Retiree Report participates in the Amazon Services LLC Associates Program. When you click an affiliate link and make a qualifying purchase, we may earn a commission at no extra cost to you. Affiliate clicks may be tracked by the merchant for attribution. Affiliate relationships do not influence our editorial coverage.
Email correspondence
If you email the site (tips, corrections, partnership inquiries), we receive your email address and the contents of your message. We use this only to reply and follow up. We do not add you to any mailing list without your explicit request.
Third-party recipients
Standard third parties that may receive a limited slice of data:
- Cloudflare — hosting and CDN; receives request logs to deliver pages.
- Google AdSense (when ads are enabled) — receives ad-request data; may set cookies if you consent.
- Privacy-respecting analytics tool — receives aggregate visit data only.
- Amazon — receives affiliate click-through data when you click a tagged Amazon link.
We do not sell personal data. We do not share personal data with data brokers.
Your rights
Depending on where you live, you have some or all of the following rights regarding personal data we hold about you:
- Access — request a copy of the personal data we have about you.
- Correction — ask us to correct inaccurate data.
- Deletion / erasure — ask us to delete data we hold about you.
- Opt out of "sale" or "sharing" of personal information (CCPA/CPRA, US state laws) — we do not sell data, but if you want to formally opt out from personalized advertising, decline the cookie banner or use the industry opt-out links above.
- Withdraw consent (GDPR) — at any time, with no effect on prior lawful processing.
- Complain — to a data protection authority (in the EU, your national DPA; in the UK, the ICO).
Email trisstann@gmail.com to exercise any of these rights. We respond within 30 days. We may ask reasonable questions to verify the request comes from you.
Legal basis for processing (GDPR)
We process technical logs on the basis of legitimate interest (operating and securing the site). We process advertising and non-essential analytics on the basis of consent. We respond to correspondence on the basis of legitimate interest (replying to you) or contractual necessity if you are a partner.
Children
This site is intended for adult readers, primarily Americans aged 50 and over, and does not knowingly collect data from anyone under 16 (or under 13 for purposes of US COPPA). If you believe we have collected data from a minor, contact us and we will delete it.
International transfers
Cloudflare and other US-based service providers may process your data in the United States or other countries. Where required, we rely on Standard Contractual Clauses or equivalent transfer mechanisms.
Changes to this policy
If we change this policy materially, we will update the "effective date" at the top and post the new version at this URL. Continuing to use the site after the effective date constitutes acknowledgement of the updated policy.