This policy explains what personal data we collect when you use
chord.run, why, and what rights you have over it.
It's written in plain language; if anything's unclear, ask.
Data controller
Giuseppe Barletta, Italian sole proprietor,
VAT ID IT11194240963.
Contact: privacy@chord.run.
What we collect
We try to collect as little as possible. The categories are:
Account data: email address, password hash, account preferences. Provided by you at signup.
Billing data: name, billing address, VAT ID where applicable, payment method tokens. Provided by you and processed via Stripe.
Application data: the code you deploy and the data your application stores in its database, KV store, or environment variables. Stored encrypted at rest.
Operational logs: server logs (timestamps, request paths, status codes, IP addresses) and audit logs (authentication events). Retained for security and debugging.
Email metadata: when you send email through Chord, we process recipient addresses, subjects, and delivery status (sent, bounced, complained) to operate the service and protect deliverability.
We do not collect: tracking cookies for advertising, device fingerprints,
cross-site behavioral data, or anything from third-party trackers. The Service uses only
strictly necessary cookies (session). See the cookie policy for details.
Why we process it
Provide the Service (contract, GDPR Art. 6(1)(b)): hosting your code, running your application, sending email on your behalf, processing payments.
Security and abuse prevention (legitimate interest, Art. 6(1)(f)): detecting and stopping fraud, attacks, and policy violations; rate-limiting; maintaining audit logs.
Legal compliance (Art. 6(1)(c)): tax records, responding to lawful requests from authorities.
Service communications (legitimate interest, Art. 6(1)(f)): transactional email about your account, billing, and incidents. No marketing without separate opt-in.
Who processes it on our behalf
We use the following sub-processors. Each is bound by a Data Processing Agreement
and has been selected for their compliance posture.
Sub-processor
Purpose
Location
Hetzner
Server hosting
Germany / Finland (EU)
Amazon Web Services
Transactional email delivery (SES)
EU regions
Cloudflare
DNS
Global
Stripe
Payment processing
EU / US (SCCs in place)
Data transfers outside the EU
Some sub-processors (Stripe, Cloudflare) are based outside the EU. Transfers happen
under the European Commission's Standard Contractual Clauses or under adequacy decisions
where applicable.
How long we keep it
Account and application data: while your account is active, plus 30 days for export after deletion, plus up to 90 days in backups.
Billing records: 10 years (required by Italian tax law).
Operational logs: 90 days unless retained longer for security investigation.
Email delivery metadata: 12 months for deliverability reporting.
Your rights
Under GDPR, you have the right to:
access the personal data we hold about you.
correct inaccurate data.
delete your data ("right to be forgotten"), subject to legal retention requirements.
restrict or object to processing.
data portability: export your data in a structured, machine-readable format.
withdraw consent at any time, where processing is based on consent.
complain to the Italian Data Protection Authority (Garante per la protezione dei dati personali, garanteprivacy.it).
To exercise any of these rights, email privacy@chord.run. We respond within
30 days.
Security
Application databases are encrypted at rest. Network traffic uses TLS. Authentication
uses argon2id password hashing and httpOnly session cookies. We log security events
and review them periodically. We don't claim perfection; if you find a vulnerability,
please report it to security@chord.run.
Changes to this policy
We'll announce material changes by email and on this page at least 30 days before they
take effect.