Privacy policy

Last updated: August 22, 2026

1. What data we process

  • Account: email and password (stored as a hash, never in plain text).
  • Billing: handled entirely by Stripe. We don't store card data on our own servers.
  • Cloudflare token: stored encrypted (AES-256-GCM) in our database and only decrypted in memory at the moment of an API call to Cloudflare. It's never shown in plain text again after being saved.
  • Domains: the names of the Cloudflare zones the customer chooses to manage with the service.
  • Activity log: a history of proxy status changes (on/off) per domain, with date and time, so the customer can audit the service's activity.

2. What we use this data for

Exclusively to provide the service: authenticating the customer, managing their subscription, and enabling/disabling the Cloudflare proxy on their domains based on the detected blocking status.

3. Who we share data with

With Stripe (payment processing) and with Cloudflare (through the official API, using the token the customer themselves provides). We don't sell or share data with third parties for advertising purposes.

4. Retention

Data is kept while the account remains active. The customer can request deletion of their account and data at any time.

5. Rights

The customer can exercise their rights of access, rectification, erasure and portability by contacting us through the channels listed on the site.