1. TL;DR
We collect the absolute minimum to run a Minecraft host: your email and the bare technical stuff your server needs. There's no payment processing built into the site yet, so the site doesn't take or store card details. We don't sell anything to anyone, we don't run ad trackers, and you can ask us to wipe your data at any time. Hosted in the Netherlands.
- Email + password (hashed, never readable)
- Server names, IPs, subdomains, and your server's files
- A log of actions taken in the panel (restarts, file changes, whitelist changes)
- No analytics trackers, no ad pixels, no Facebook SDK
2. What we collect
Account info: the display name, email, and password hash you submit at signup. Optionally your Twitch handle (so we can verify partner perks).
Payment info: none in our database. Payments aren't wired up on the site yet, so there's nothing here for the site to collect — no card numbers, no card tokens, no last-4 digits, no billing addresses, no invoice history. There are no payment fields in our database at all.
Server data: server names, allocated RAM, IPs and subdomains assigned to you, plugin and mod lists, and your actual world/config files on disk. Backups are ordinary .tar.gz archives — we don't encrypt them ourselves before they're stored, and copies go to Google Drive (see section 4).
Logs: a log of actions taken in the panel — restarts, file writes, whitelist and collaborator changes, backups — recording who did it, what it was, and when. It can include email addresses, server and file names, and the in-game usernames of players you whitelist, op, ban, or kick. Kept for 90 days. We don't record login timestamps, and the site itself doesn't write web access logs.
Optional integrations: none. There is no third-party sign-in — accounts are email and password only, and we hold no third-party account IDs, access tokens or refresh tokens. The Twitch handle above is free text you type yourself; we never check it against Twitch or fetch anything from them. There is no Discord login either; the Discord in our footer is just a link to the server.
Things that end up public: the subdomain we create for your server is a public DNS record, and it's built from the server name you pick. Your server's MOTD, icon, version, and who's online can be read by anyone who pings the address — that's how Minecraft's server list works, not something we add on top.
3. Why we collect it
Every bit of data here exists for a specific reason:
- Email: log in, recover password, reply to your messages, warn about outages
- Server files: obviously — that is the product
- Panel action log: work out what changed on a server and when, and spot abuse
- Twitch handle: verify streamer perk eligibility (and only that)
We don't profile you. We don't try to predict what other services you might want. We don't have a marketing automation funnel.
6. Where data lives
All Minecraft servers, backups, and user data are physically hosted in the Netherlands, inside the EU — so none of it leaves the bloc by default. Backups are the exception: they're uploaded to Google Drive, and we don't control which region Google keeps them in. Email is sent through Resend — your email address, the content of your message, and anything you attach to the contact form go through them, but never your worlds or login credentials.
7. How long we keep it
| Data type | Kept for |
|---|---|
| Account & profile info | While your account exists, deleted within 30 days of account closure |
| Server worlds & configs | While your subscription is active, then 30 days after cancellation |
| Backups | Set per server — by default 7 daily and 4 weekly copies. Our own nightly site backups go to Google Drive and aren't automatically deleted there yet. |
| Invoices & tax records | None exist yet — billing isn't wired up on the site. Once it is: 7 years (Dutch tax law requirement) |
| Panel action log | 90 days |
| Support tickets & emails | 2 years |
8. Your rights under GDPR
Because we're an EU-based business (a sole trader registered in the Netherlands), you get the full set of rights under the GDPR — no matter where you live:
- Access: ask for a copy of everything we have on you. We'll send it within 30 days.
- Correction: change anything that's wrong (most things are editable from the dashboard directly).
- Deletion: ask us to delete your account. We will — there's no invoice history to withhold today since billing isn't wired up yet. Once it is, we'd keep only what Dutch tax law requires, per the retention table above.
- Portability: download a full backup of your server — worlds, configs and all — from the dashboard at any time. It comes as a
.tar.gzarchive. For a copy of your account data, use the access request above. - Object to processing: you can opt out of optional things (like product update emails) without losing service.
To exercise any of these, use the privacy request form. We don't charge for any of it.
9. Minors
You need to be at least 16 to make an account on your own. If you're younger, a parent or guardian needs to set the account up and supervise it. We don't knowingly collect data from anyone under 13 — if we find out we have, we delete it immediately.
10. Contact & complaints
For privacy questions, data requests, or anything else, use the privacy contact form. Flag it as urgent if you need a fast reply.
If you're not happy with how we handled a privacy concern, you have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens). Their contact info is at autoriteitpersoonsgegevens.nl. But honestly — email me first, we can almost always sort it out.