Privacy
Last updated 6 October 2026
The short version: your Cloudflare, Stripe and Paddle credentials stay in your Mac's Keychain and go only to those services. The app shares anonymous usage counts, which you can turn off with one switch. This website sets no cookies and runs no analytics.
In the app
Your credentials. API tokens and keys you add are stored in the macOS Keychain on your Mac. Flarewatch uses them to call Cloudflare's, Stripe's and Paddle's APIs directly from your Mac. They are never sent to us, and the data those services return is kept on your Mac.
Anonymous usage. Flarewatch shares anonymous usage by default so we can see which parts of the app get used and where things go wrong. It counts which parts of Flarewatch get used and whether actions fail, with a random ID for this install, app version and build, macOS version, Mac model, display size, language and region. Never your name, or any account, zone or credential names.
- The install ID is random. It isn't derived from your Mac's hardware and is never joined to your Cloudflare account, your license or your email.
- It is used only for analytics: never for advertising, never combined with data from other companies, never sold.
- It goes to our own analytics service, not to a third-party analytics or ad network. Individual events are kept for 90 days; after that only daily totals remain.
- To turn it off, switch off Share anonymous usage in the account popover. Turning it off also discards anything not yet sent.
Updates. Flarewatch asks before it starts checking for updates automatically. A check downloads a small update feed from updates.flarewatch.co, which is hosted on GitHub Pages. When you install an update, the update itself is downloaded from GitHub — a release file on github.com, delivered from GitHub's download servers (objects.githubusercontent.com and similar). Like any web request, each of these reveals your IP address, and the update check's User-Agent header carries the app's name and version. No other information is sent. GitHub's handling of that data is covered by the GitHub Privacy Statement.
License checks. Your license is verified on your Mac. At launch and then about once a week, every copy of Flarewatch — including one still in its free trial, with no license entered — downloads the signed public list of refunded license IDs from flarewatch.co, and checks it on your Mac. That request contains no license, email, install ID or other identifier. Like any HTTPS request it reveals your IP address, and its standard User-Agent header includes the app's name and version and your macOS version.
When you buy
Purchases are processed by Paddle, our reseller and merchant of record. Paddle collects your payment and billing details under its own privacy policy; we never see your card. Paddle tells us your email address, name (if given) and a transaction ID so we can issue your license.
Here is everything the licensing service stores, and for how long:
- Your license — your email address, name (if given), Paddle transaction ID and the license itself. Kept for as long as the license exists, so we can re-send it and handle refunds. Deleted on request.
- Payment notifications — a minimal record of each notification Paddle sends us: Paddle's event and transaction IDs, the event type and status, and timestamps. Never payment, card or address details. Deleted after 90 days.
- Emails we send you — the address, subject and whether our email provider accepted it. Deleted after 90 days.
- Early refunds — if a refund or chargeback reaches us before the purchase itself, only Paddle's transaction and adjustment IDs, until the purchase arrives or for at most 90 days.
- License recovery requests — the email address entered in the recover form, with when and how often it was used, so a license is re-sent at most once every 15 minutes and five times a day. Deleted 7 days after the last request.
We use your email only for your license — no newsletters or marketing unless you separately sign up for them.
On this website
flarewatch.co sets no cookies and loads no analytics, advertising or tracking scripts. It is served by Cloudflare, which processes standard request data (such as your IP address) to deliver and protect the site. Paddle's checkout script is loaded only when you click Buy.
Your choices
You can turn off usage sharing in the app at any time. To ask what we hold about you, or to have it corrected or deleted, contact us. We'll keep only what we're legally required to keep for tax and accounting purposes.
Changes
If this policy changes, we'll update this page and the date at the top.