Privacy Policy
Last updated: July 25, 2026
1. Introduction
This Privacy Policy explains how Zoneless ("we", "us", "our") collects, uses, and protects your information when you use our software and Zoneless Cloud service at zoneless.com. Zoneless is software tooling only — it does not hold, custody, or transmit funds.
2. Information We Collect
We collect the following types of information:
- Account information: Email address, company name, and billing details provided during signup.
- Platform data: Connected account information, payout records, transfer records, and wallet addresses stored by the Zoneless platform as part of its normal operation.
- Usage data: API call logs, error logs, and performance metrics used to operate and improve the Service.
- Website analytics: Anonymous usage data collected via standard analytics tools on zoneless.com.
- Self-hosted telemetry (opt-in only): When an operator explicitly enables anonymous usage reporting, we receive coarse aggregate heartbeats (random instance ID, software version, environment flags, and order-of-magnitude payment/volume buckets). This is off by default.
3. What We Do Not Collect
- Private keys or wallet seed phrases — these never leave the user's device.
- Payment card details — billing is handled by Paddle, our Merchant of Record.
- From opted-in telemetry: emails, business names, domains, API keys, wallet addresses, customer PII, exact payment amounts, or IP addresses.
4. How We Use Your Information
We use your information to:
- Provide and maintain the Zoneless Cloud Service
- Process billing through Paddle
- Send transactional emails (account setup, billing receipts)
- Monitor and improve Service reliability and performance
- Understand open-source adoption via opted-in anonymous usage telemetry
- Respond to support requests
- Comply with legal obligations
We do not sell your personal information to third parties. We do not send marketing emails unless you explicitly opt in.
5. Self-Hosted Telemetry
Operators may opt in to share anonymous usage statistics during setup or in Settings. Consent can be revoked at any time. Force disable with ZONELESS_TELEMETRY=0.
6. Data Storage and Security
Platform data is stored in MongoDB Atlas with encryption at rest and in transit. The Service is hosted on cloud infrastructure with industry-standard security practices. API keys are stored as hashed values — we cannot retrieve your plaintext API key after it is issued. Opted-in telemetry events are stored in Firestore and are not exposed to end-user clients.
7. Third-Party Services
We use the following third-party services:
- Paddle: Payment processing and billing. Paddle acts as the Merchant of Record and has its own privacy policy.
- MongoDB Atlas: Database hosting and management.
- Google Cloud: Infrastructure hosting.
- Firebase: Website hosting, authentication, and storage for zoneless.com (including opted-in telemetry ingest).
8. Cookies
The zoneless.com website uses minimal cookies for essential functionality and anonymous analytics. The Zoneless Cloud dashboard uses a session token stored in your browser's local storage for authentication — this is not a tracking cookie.
9. Data Retention
We retain your platform data for the duration of your subscription. Upon cancellation, we retain your data for 30 days to allow for reactivation or data export, after which it is permanently deleted. Usage logs are retained for up to 90 days. Anonymous self-host telemetry snapshots may be retained longer in aggregate form for historical growth reporting.
10. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Export your data in a portable format
- Object to processing of your data
To exercise any of these rights, contact us at hello@zoneless.com. Operators can stop telemetry immediately via Settings or ZONELESS_TELEMETRY=0; contact us to request deletion of a specific instance_id.
11. Children's Privacy
The Service is not intended for use by anyone under the age of 18. We do not knowingly collect information from children.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email. The "Last updated" date at the top of this page indicates when the policy was last revised.
13. Contact
Questions about this policy? Contact us at hello@zoneless.com.
