IndieLogin.com keeps logs of attempted and successful authentications. Properties of each log record are:
Things that are not stored or logged in any way:
Developers who register an application at /developers sign in with their own website, and the following is stored for them:
This information is not shared with anyone, and is not shown to the users who sign in to those applications.
Since IndieLogin.com is a service for developers wishing to easily implement logging in to apps, this service provides some information to the developers of the applications users log in to.
After a successful authentication, this website returns the fully resolved profile URL of the user who authenticated to the developer.
If the user authenticates with an OAuth provider such as Twitter, GitHub, GitLab, or Codeberg, the access tokens and profile information from those providers are never shared with the developer. Developers may be able to see which provider and the username at that provider you used to authenticate (e.g. Twitter, GitHub, GitLab, Codeberg, email), but will not be able to access any information in those accounts.