Privacy Policy

Last updated: June 1, 2026

This Privacy Policy explains what information sendrecv.io ("we", "us") collects when you use our ZFS replication service, how we use it, and the choices you have. By using the service you agree to the practices described here.

1. Information we collect

  • Account information — your email address and a securely hashed password.
  • SSH public keys — the public keys you add to authenticate to your conduits. We never receive or store your private keys.
  • Billing information — payments are processed by Stripe. We store a Stripe customer and subscription identifier, but we never see or store your full card number.
  • Technical information — when you sign in we record the IP address and browser user-agent associated with your session for security purposes.
  • Replicated data — the ZFS datasets and snapshots you send to your conduit. This is your data; see section 3.

2. How we use information

We use your information to provide and operate the service, process subscription payments, authenticate access to your conduits, send transactional email (such as password resets and quota or encryption notices), monitor for abuse and operational failures, and respond to support requests. We do not sell your personal information.

3. Your replicated data

Your conduit is a dedicated, isolated ZFS jail. We do not access the contents of the datasets you replicate except as strictly necessary to operate the service or as required by law. For sensitive data we strongly recommend ZFS native dataset encryption — when you send an encrypted dataset raw (zfs send -w), the decryption keys never leave your control and are never stored alongside your data.

4. Third-party services

We rely on a small number of processors to operate the service. Each receives only the information needed for its function:

  • Stripe — payment processing and subscription billing.
  • Resend — delivery of transactional email.
  • Infrastructure providers — hosting and block storage for our ZFS pools.
  • Honeybadger — error and uptime monitoring.

5. Cookies

We use a single, essential cookie to keep you signed in. It is HttpOnly and is not used for advertising or cross-site tracking. We do not use third-party analytics or advertising cookies.

6. Data retention and deletion

When you cancel a conduit, your datasets remain available until the end of the current billing cycle, after which they are destroyed and the capacity is returned to the pool. You may request deletion of your account and associated personal information at any time by emailing [email protected]. Some records may be retained where required for legal, tax, or accounting purposes.

7. Security

Access to the service is over SSH with key-based authentication only, and all web traffic is encrypted in transit (TLS). Passwords are stored using a strong one-way hash. No system is perfectly secure, so we encourage you to use a strong, unique password and to encrypt sensitive datasets.

8. Your rights

Depending on where you live, you may have the right to access, correct, export, or delete your personal information. You can update your email and password in Account Settings, manage billing through the Stripe portal, or contact us to exercise any other right.

9. Changes to this policy

We may update this policy from time to time. When we do, we will revise the "Last updated" date above and, for material changes, notify you by email.

10. Contact

Questions about this policy or your data? Email [email protected].