Effective 22 August 2026
Your GitHub account id and email address (from sign-in), the names and operating systems of devices you link, hashed access keys, plan and billing status, and short-lived operational logs (connections, errors). If a device agent crashes, it sends us its own recent log lines so we can fix the bug.
Terminal sessions, screens, keystrokes, files, and tunneled traffic are end-to-end encrypted between your devices. Our server introduces devices to each other and, when a direct connection is impossible, relays encrypted bytes it cannot decrypt. We do not see or store the content of your sessions.
Payments are processed by Stripe; your card details go to Stripe, not to us. We store your Stripe customer and subscription ids.
We use one short-lived cookie during GitHub sign-in (CSRF protection) and browser storage to keep you signed in. No advertising trackers, no analytics cookies, no data sold or shared with anyone.
Account data is kept while your account exists. Deleting your account (Sessions & machines → Delete account) removes your account, devices, and keys, and cancels any subscription; backups age out within 30 days. You can also email us to request deletion or a copy of your data.