Legal

Privacy Policy

Effective date: 27 May 2026  ·  Questions? [email protected]

What we collect

When you create an account we collect your full name, email address, and a bcrypt-hashed password (your plain-text password is never stored or transmitted). We also store the timestamps for when you verified your email, agreed to the license terms, and started your trial, along with your Stripe customer ID and subscription status for billing.

When you connect a streaming platform inside the desktop app, we receive and store an OAuth access token, refresh token, platform user ID, and username for that platform. These are used solely to keep your streaming connections alive and deliver alerts.

The u-alert website uses Google Analytics 4 (property G-KLQM3ES51F) to collect anonymous usage data such as page views, session duration, and browser type. No personally identifiable information is passed to Google Analytics.

How we use it

We use your data solely to operate the service:

  • Authenticating your account and maintaining your session
  • Sending transactional emails (email verification, password reset) — no marketing emails
  • Processing subscription payments via Stripe
  • Reconnecting your streaming platforms when the desktop app starts
  • Delivering stream alerts and running the chat bot on your behalf

What stays on your machine

The u-alert desktop app stores the following data locally on your computer only in %APPDATA%\u-alert. This data is never transmitted to u-alert servers:

  • Your alert configurations and widget settings
  • Media files (images, audio, video) used in alerts
  • Chat bot commands and auto-timer messages
  • Loyalty point balances for your viewers
  • Your authentication token (JWT) and cached platform credentials

Uninstalling the app removes this local data entirely.

Third-party processors

We use a small number of trusted third parties to operate the service:

  • Stripe — payment processing. When you subscribe you are redirected to a Stripe-hosted checkout page. u-alert never sees or stores your card details. Stripe Privacy Policy ↗
  • Resend — transactional email delivery (verification and password reset emails only).
  • Google Analytics — anonymous website analytics. Google Privacy Policy ↗
  • Twitch / Kick / YouTube — OAuth 2.0 platform linking. Connecting a platform directs you through that platform's own authorisation flow. Their tokens are stored locally in the app and used only to subscribe to your channel's events.

Data sharing

We do not sell, rent, or share your personal data with any third party for advertising, marketing, or commercial purposes. Your data is never monetised. The only circumstances under which we would disclose your information are:

  • If required by law or a valid legal process
  • To the platform processors listed above, strictly as required for OAuth token exchange and payment processing

Data retention

Account data is retained for as long as your account is active. Temporary tokens (email verification, password reset) are short-lived and purged immediately after use or on expiry. If you delete your account, all server-side data associated with your account is permanently removed. Local app data is removed when you uninstall the app.

Cookies and session storage

The u-alert website does not use persistent tracking cookies. Your authentication token is stored in sessionStorage (not a cookie), which is cleared automatically when you close the browser tab. Google Analytics may set its own cookies in accordance with Google's privacy policy.

Your rights

You may delete your account at any time from your dashboard, which permanently removes all server-side data. For any other data request — access, correction, or export — contact us at [email protected].

Changes to this policy

If we make material changes to this policy we will update the effective date above. Continued use of the service after changes are posted constitutes acceptance of the revised policy.