Privacy Policy

What we collect, why we collect it, and what you can ask us to delete.

Last updated · 24 July 2026

1. Data we collect

Account data: your email address, a securely hashed password, and an optional username. Passwords are hashed with bcrypt and are never stored or readable in plain text.

Order data: which products you bought, amount, currency and order status. Card and crypto payment details are handled by our payment processors — we never receive or store your full card number.

Licence data: the keys issued to you and the hardware ID they are bound to.

Technical data: server logs containing IP address, request path and timestamp, retained for security and abuse prevention.

2. Why we use it

To create and secure your account, deliver and validate licence keys, provide support, prevent fraud, chargeback abuse and key sharing, and to meet our accounting obligations.

We do not sell your personal data, and we do not share it with advertisers.

3. Cookies

We set one essential cookie, cs_token, which holds your authentication session. It is httpOnly, meaning site scripts cannot read it. Without it you cannot stay logged in. We do not use advertising or cross-site tracking cookies.

4. Processors

We share the minimum necessary data with: our payment processors (to take payment), our hosting and database provider (to run the service), and our object storage provider (to serve downloads and images). Each processes data on our instructions only.

5. Retention

Account and order records are retained while your account is active and afterwards for as long as required for accounting and fraud-prevention purposes. Server logs are retained for a short rolling window.

6. Your rights

You may request access to the data we hold about you, correction of inaccurate data, deletion of your account and associated personal data, or a copy of your data in portable form.

Send requests to [email protected] from the email address on the account. We will respond within 30 days. Deleting your account revokes any active licence keys and does not entitle you to a refund.

7. Security

We use hashed passwords, httpOnly session cookies, role-based access control on administrative endpoints, and encrypted transport (HTTPS). No system is perfectly secure; if a breach affects your data we will notify affected users.

8. Children

Our services are not directed at anyone under 18 and we do not knowingly collect their data.

Contact

Questions about this document? Reach us at [email protected].