Privacy policy
What geturui.com collects, why, who processes it, how long it is kept and what you can do about it.
Last updated
Who we are
geturui.com, an independent developer based in [Country], is the controller of the personal data described here. Contact: [email protected].
What we collect
- Account: your email address, an optional name, and, if you sign in with GitHub, your GitHub name, avatar and account id.
- Orders: product, seats, amount, currency, status, the Dodo Payments payment id and your license key. Teammates you invite: their email address.
- Sessions and tokens: sign-in sessions and registry tokens, stored only as hashes, with when they were created and last used.
- Downloads: which items you downloaded, when, and how (zip, registry or MCP).
- Country: to show regional pricing, our hosting provider tells us the country your IP address belongs to. We use the country only and don’t store your IP address. If you choose a country in your settings, it is saved on your account.
- Messages: what you send through the contact form or a refund request, and release-notes subscriptions.
Why we use it
- To provide what you asked for: signing in, delivering purchases, seats and support (contract).
- To keep accounting and tax records of orders (legal obligation).
- To prevent abuse, enforce seat and refund rules and show regional prices (legitimate interests).
- To send release notes, only if you subscribe (consent; you can withdraw it at any time).
Who processes it
We don’t sell personal data. These providers process it for us, only for the purposes above:
- Dodo Payments, merchant of record: checkout, payment, tax, invoices and refunds. Card and payment details go straight to Dodo and never reach our servers. See Dodo’s privacy policy.
- Resend: sends sign-in links, receipts, invites and release notes.
- Our hosting provider: runs the site and its database and keeps standard server logs.
- GitHub: only if you choose GitHub sign-in.
Template photos come from Pixabay but are served from our own site, so Pixabay receives no data about you. Some providers may process data outside your country; where the law requires it, they use safeguards such as standard contractual clauses.
Cookies and local storage
We use only what the site needs to work. There are no analytics, advertising or tracking cookies, so there is no cookie banner.
gu_session: keeps you signed in, for up to 30 days.gh_oauth: protects GitHub sign-in, deleted after 10 minutes.- Local storage in your browser: your theme, preferred package manager and Background Studio settings. They never leave your device.
Dodo Payments’ checkout may set its own strictly necessary cookies while you pay.
How long we keep it
- Order and payment records: as long as accounting and tax law requires, even after you delete your account (they are then unlinked from it).
- Sessions: until you sign out or they expire after 30 days. Sign-in links expire after a short time.
- Account, tokens, seats, downloads and settings: until you delete your account.
- Support messages: as long as needed to handle the request, or until you ask us to delete them.
Your rights
You can ask for a copy of your data, a correction, a change of email address, or deletion, and you can object to or restrict processing.
- In Dashboard → Settings you can export your data, change your email, unsubscribe from release notes and delete your account.
- Or write to [email protected] and we reply within 30 days.
You can also complain to the data protection authority where you live.
Changes to this policy
We’ll update the date at the top and email account holders about material changes.
Contact
Questions about this page: [email protected]. We reply within two business days.