Privacy Policy
Last updated: September 24, 2026
1. What We Collect
CronCommander collects the minimum data necessary to provide the Service:
- Account data: Email address, name, profile picture, and authentication-provider identifier. Authentication is handled by Auth0; CronCommander does not store your password.
- Agent metadata: Hostname, OS, architecture, environment tags, and connection timestamps.
- Job metadata: Job name, schedule (cron expression), and command string.
- Execution data: Start/end timestamps, exit codes, execution duration, and captured stdout/stderr output.
- Usage data: Page views, feature usage, and session data for product improvement.
2. What We Don't Collect
Your commands run on your servers.
CronCommander agents execute jobs locally. We receive the execution results and metadata — but we do not execute, intercept, or modify your commands. The command itself runs entirely within your infrastructure.
3. How We Use Your Data
- To operate and deliver the Service (displaying agents, jobs, and executions).
- To enforce plan limits and billing.
- To send transactional emails (account confirmations, alerts, invoices).
- To improve the Service based on aggregated, anonymized usage patterns.
- To respond to support requests.
We do not sell your data. We do not use it for advertising.
4. Data Storage & Security
- Infrastructure: All data is stored on Google Cloud Platform (GCP) in secured, access-controlled environments.
- Encryption at rest: GCP-native encryption is applied to all stored data.
- Encryption in transit: All communication between agents and the gateway uses TLS-encrypted HTTPS connections.
- Access control: Internal access to production data is restricted to authorized personnel only.
5. Data Retention
Audit events are retained for 12 months on Free, Starter, and Pro plans, and for three years on Agency. Account data is retained for 30 days after account closure before permanent deletion, unless a longer retention period is required by law.
6. Third-Party Services
We use the following third-party services:
- Google Cloud Platform: Infrastructure and data storage.
- Google Analytics: Website analytics to understand visitor behavior, page views, and traffic sources. Google Analytics uses cookies to collect anonymized usage data.
- Paddle: Payment processing (we do not store card numbers).
- Typeform: Early access request forms.
7. Your Rights
You may request access to, correction of, or deletion of your personal data at any time by contacting us. If you are in the EU/EEA, you have additional rights under GDPR including data portability and the right to lodge a complaint with a supervisory authority.
8. Cookies
We use essential cookies for authentication and session management. We also use Google Analytics, which sets cookies to collect anonymized data about page views, traffic sources, and visitor behavior. No advertising or tracking cookies are used beyond analytics. You can opt out of Google Analytics by installing the Google Analytics Opt-out Browser Add-on.
9. Changes to This Policy
We may update this privacy policy from time to time. Material changes will be communicated via email or an in-app notification. Continued use of the Service after changes constitutes acceptance.
10. Contact
For privacy-related questions, contact us through our website.