Skip to content

Privacy, by design

The calculator has no salary database and no calculation API. Your inputs are used locally to work out the answer.

Calculator inputs

Salary, pension and ruling answers remain in browser memory and the URL fragment. Fragments are not sent in HTTP requests. There are no form trackers or third-party browser resources.

What we count

We run Plausible analytics ourselves, on our own server in the EU. It records which page was opened, which site linked to it, and whether a comparison was made or its link copied. It sets no cookie and keeps no identifier that follows you from one day to the next. It is sent the page's path only: never the fragment, never anything you typed. Automated traffic is filtered out before anything is counted.

Sharing is your choice

A copied link contains your salary and assumptions. A downloaded image shows the answer. Anyone you give either to can read it. Images are generated locally and are not uploaded.

Number reports

The Feedback page sends only the topic, the words you type, optional page context and an optional reply address. It never attaches your calculation. The first-party service emails the message without storing it.

Sources and hosting

Following an official citation opens the authority’s website, which has its own privacy policy. The deployment is designed for our own EU server with path-only logs and truncated IPs; that production deployment has not yet been verified. Source code and CI use GitHub.

How this is worked out

Does closing the tab delete my calculation?

The application keeps no saved calculator profile. A fragment may remain in your own browser history or in a link you copied; manage those using your browser’s controls.