Privacy Policy
Last updated: July 26, 2026
Overview
Decker is a desktop application developed by fromzeroagain OÜ (registry code 17447933), registered at Sepapaja tn 6, 15551 Tallinn, Harju Maakond, Estonia. Local project scanning and runtime stay on your machine; account, licensing, optional Share/Deploy/backup, updates, and the website use the online services described below. This policy explains what data we collect when you use the app and our website. For any privacy-related inquiries, contact us at [email protected].
Legal Basis for Processing
Under the EU General Data Protection Regulation (GDPR), we process your personal data on the following legal bases:
- Account data — performance of a contract (Art. 6(1)(b)), necessary to provide the service you signed up for, including starter access
- Payment and license data — performance of a contract (Art. 6(1)(b)), processed only when you purchase a paid membership or manage billing
- Payment records — legal obligation (Art. 6(1)(c)), required for tax and accounting compliance
- Error monitoring — legitimate interest (Art. 6(1)(f)), to maintain service stability and fix bugs
- Web analytics — legitimate interest (Art. 6(1)(f)), to understand usage patterns and improve the service (DataFast cookieless analytics without persistent analytics cookies)
- Deploy and Share features — performance of a contract (Art. 6(1)(b)), activated only when you explicitly use these features
Account Data
When you create an account, we store your email address and the authentication provider you used (GitHub or Google). During an ordinary Desktop sign-in, the callback places the resulting session in an expiring, one-time server-side handoff without storing the provider token. The Desktop consumes that handoff once, stores its refresh credential in your operating system's credential store, and keeps the active access token in memory. A provider credential is included only when you explicitly connect GitHub Repository Access or Vercel for an integration feature.
Payment Data
If you purchase a paid membership, payments are processed by Stripe. We do not store your credit card details. We store your Stripe customer ID and the license, subscription, invoice, payment, cancellation, and refund identifiers or status needed to reconcile billing events and manage paid access. Starter users may have no payment data associated with their account.
Error Monitoring
We use Sentry to monitor errors and crashes in both the website and the desktop app. This includes error stack traces, device and operating system information, and application logs. On the website, 10% of user sessions are recorded as replays to help us debug issues, and 100% of sessions where an error occurs are recorded. Crash reports from the desktop app include native minidump data.
Deploy and GitHub Backup (Optional)
Deploy and GitHub Backup are optional paid features. If you use Deploy, Decker uploads your project files directly to Vercel via their API, excluding environment files such as .envfiles. If you choose to connect GitHub backup for a project, Decker can also copy your project files into a temporary Git repository and push a snapshot to the GitHub repository and branch you configured. Deploy and GitHub backup are separate actions. GitHub and Vercel OAuth callbacks use an expiring, one-time server-side handoff before the Desktop consumes the token. After that handoff, the tokens are stored in your operating system's credential store and are sent from the Desktop to GitHub or Vercel only for the integration actions you request.
Share Feature (Optional)
Share is an optional paid feature. It creates a Cloudflare tunnel to make your local development server accessible via a public URL. Network traffic is proxied through Cloudflare. When you stop sharing or the selected Share Duration expires, Decker stops the local connector and public session. The tunnel and DNS binding remain available for a later Share and are permanently removed when the associated account is deleted.
Third-Party Services
We use the following third-party services to operate Decker:
- Supabase — authentication and database (US)
- Stripe — paid membership processing and billing management (US)
- Sentry — error monitoring (US)
- Cloudflare — networking and file storage (US)
- GitHub — authentication and optional repository backup when used (US)
- Vercel — deployment when used (US)
- DataFast — cookieless web analytics
International Data Transfers
Most of our third-party service providers are based in the United States. When your data is transferred outside the EU/EEA, it is protected by appropriate safeguards, including EU Standard Contractual Clauses (SCCs) adopted by the European Commission, or equivalent mechanisms provided by each service provider in accordance with GDPR Article 46.
Data Retention
We retain different types of data for different periods:
- Account data— retained while your account is active. Account deletion starts a cleanup workflow; retryable provider failures can delay final removal, and terminal failures are retained for manual review instead of being reported as a completed deletion. Deletion covers your Rundecker account, service-stored data, and Decker-managed Share resources. It does not delete local project folders or files, existing GitHub repositories, or existing Vercel deployments. After a deletion request, we retain a domain-separated SHA-256 receipt derived from the account ID solely so Decker installations that were offline can remove that account's Decker-owned local metadata. The receipt does not contain the raw account ID, email address, or any project path or file content.
- Payment records — processed by Stripe. When your account is deleted, we delete our local Stripe customer mapping, while Stripe may retain payment records as required by law for tax and accounting purposes.
- Error reports — retained for 30 days.
- Session replays — retained for 30 days.
- Analytics data— processed through DataFast's cookieless mode without persistent analytics cookies. It may use session-only storage and a pseudonymous identifier that rotates approximately every 24 hours.
Your Rights
Under the GDPR, you have the following rights regarding your personal data:
- Access (Art. 15) — request a copy of your personal data
- Rectification (Art. 16) — request correction of inaccurate data
- Erasure (Art. 17) — request deletion of your data (also available via account settings)
- Restriction (Art. 18) — request that we limit how we process your data
- Data portability (Art. 20) — receive your data in a structured, machine-readable format
- Object (Art. 21) — object to processing based on legitimate interest
To exercise any of these rights, contact us at [email protected]. You also have the right to lodge a complaint with the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon) at www.aki.ee, or with the supervisory authority in your EU member state of residence.
Contact
If you have questions about this policy, please reach out at [email protected].