Privacy Policy
Last updated: 2 August 2026
This policy explains what Terminox does with your data. The controller is ANKA STUDIO LTD, registered in England and Wales. Contact: support@terminox.org.
The short version. Your hosts, passwords, SSH keys and settings are encrypted on your own device before they ever leave it, using keys derived from a master passphrase we never receive. What our server stores is ciphertext it has no way to open. We cannot read your credentials, and we cannot hand them to anyone else — including if we were compelled to try.
What we collect
- Account identity — your email address, and (if you sign in with Google or GitHub) the account identifier that provider gives us. Used to know which account is yours.
- Encrypted vault records — for Pro subscribers only: opaque encrypted blobs holding your hosts, credentials, groups and snippets, plus the non-secret parameters needed to derive your key (a random salt and its settings). We cannot decrypt these.
- Session data — a session token per signed-in device, an optional device name you choose, and a "last seen" timestamp, so you can see and revoke your devices.
- Operational logs — minimal request/error logs from our infrastructure, used to keep the service running and diagnose faults.
What we do not collect
- Your master passphrase, or any key derived from it.
- The contents of your terminal sessions or file transfers — those go directly between your machine and your servers, never through us.
- Your command history, which stays on your device.
- Analytics, advertising or tracking data. There are no third-party trackers on this website or in the app.
Why we're allowed to process it (UK GDPR)
- Performance of a contract — account identity and encrypted vault records, so we can provide the service you signed up for.
- Legitimate interests — session data and operational logs, to keep the service secure and working.
- Legal obligation — records we must keep for tax and accounting.
Who processes data for us
- Cloudflare — hosting, database and website delivery.
- Paddle.com Market Ltd — our reseller and Merchant of Record. Paddle handles payment and billing; it holds your billing details, and we never see your card number. Paddle acts as its own controller for that data.
- Resend — delivery of sign-in emails.
- Google / GitHub — only if you choose to sign in with them.
Data may be processed outside the UK by these providers, under the transfer safeguards required by UK GDPR.
How long we keep it
- Account and vault data — until you delete it. You can erase all server-side data from inside the app at any time, and that is immediate and permanent.
- Sessions — until they expire or you sign the device out.
- Logs — a short retention window, then discarded.
- Billing records — as long as tax law requires (held by Paddle).
Your rights
You can ask us to access, correct, export or delete your personal data, to restrict or object to processing, and to withdraw consent where processing relies on it. Email support@terminox.org and we will respond within one month.
One honest limitation: for your encrypted vault records we can export or delete the ciphertext, but we cannot produce a readable copy — we have no key. Your own app can, using your passphrase.
If you think we have handled your data improperly you can complain to the UK Information Commissioner's Office (ico.org.uk) or your local supervisory authority.
Cookies
This website sets no cookies and runs no analytics. It stores one item in your browser's local storage — your light/dark theme choice — which never leaves your device. Paddle's checkout, when you open it, is governed by Paddle's privacy policy.
Children
Terminox is a developer tool and is not directed at children under 16, and we do not knowingly collect their data.
Changes
If we change this policy materially we will give reasonable notice by email or in the app before it takes effect.