Privacy Policy
Last updated 15 July 2026
This Privacy Policy explains how Uniq (“Uniq”, “we”, “us”) collects, uses, and protects personal data when you use the website at uniq.dev (the “Site”), purchase or license the Uniq macOS app (the “App”), or contact us through in-app feedback. We aim to collect only what is needed to provide and improve Uniq.
1. Who is responsible for your data
Uniq is the data controller for the personal data described here. For a privacy question or to exercise your rights, contact [email protected].
2. What we collect
- Contact and purchase data. We store the email address used for a purchase, Stripe transaction identifiers, price, currency, tax, order status, and required consent records. Stripe processes your payment details; Uniq does not receive or store your full card number.
- License and activation data. We store license and installation identifiers, an installation public key, the device label you choose, Mac model, App version, macOS version, activation status, and relevant timestamps. The App must not send the Mac’s system computer name.
- Feedback you choose to submit. A bug report or feature suggestion includes its title and message. You may explicitly attach up to three screenshots. The App does not attach screenshots or logs automatically. Avoid including passwords, license keys, database credentials, personal records, or other confidential information.
- Waitlist data. If you join the waitlist, we store your email address and one-way, truncated hashes of your IP address and browser user-agent to prevent spam and duplicate registrations. We do not store the original IP address or user-agent in the waitlist record.
- Security and service data. Cloudflare and our hosting provider may process network and request metadata needed to deliver and secure the service. Temporary access tokens, service events, and audit records are stored where needed for account security and support.
- Aggregated analytics. If you consent, DataFast provides aggregated Site usage analytics without tracking cookies. It is not loaded when analytics consent is declined.
3. How we use data and our legal bases
- To process purchases, deliver and manage licenses, activate devices, provide the customer portal, and handle requested support, as needed to perform our contract with you (Art. 6(1)(b) GDPR).
- To investigate submitted bug reports, consider suggestions, improve Uniq, prevent abuse, maintain audit records, and protect the service, based on our legitimate interests in operating a secure and reliable product (Art. 6(1)(f) GDPR).
- To meet tax, accounting, consumer-protection, and other legal duties, based on our legal obligations (Art. 6(1)(c) GDPR).
- To send launch or waitlist communications and to run optional Site analytics, based on your consent (Art. 6(1)(a) GDPR), which you may withdraw at any time.
4. Sharing and service providers
We do not sell personal data. We share it only as needed with providers that help operate Uniq: Stripe for payments; Cloudflare for network security, access control, email delivery, and private R2 object storage; our hosting provider; and DataFast for optional aggregated analytics. We may also disclose data where required by law. Where data is processed outside the EEA, we rely on applicable safeguards provided by the processor, such as adequacy decisions or standard contractual clauses.
5. Storage and retention
Feedback text and attachment metadata are stored in PostgreSQL. Screenshot bytes are stored in a private Cloudflare R2 bucket and are available only through the authenticated admin service. We retain feedback while it is needed to investigate or act on it and ordinarily remove it within 24 months after resolution. Purchase records are kept for the period required by tax and accounting law. License and activation records are kept while the license and related support obligations remain active and for a reasonable period afterward for security and dispute handling. Expired access tokens and temporary operational records are regularly removed. Encrypted backups follow a limited rotating schedule.
Waitlist records are kept until you ask us to remove them or the waitlist is no longer needed, whichever comes first.
6. Your rights
Under the GDPR, you may have rights to access, correct, delete, restrict, or object to processing, to data portability, and to withdraw consent. These rights can be limited where we must retain data by law or to establish or defend legal claims. Email [email protected] to make a request. You may also complain to your local supervisory authority. In Portugal, this is the Comissão Nacional de Proteção de Dados (CNPD).
7. Cookies and local storage
We use strictly necessary storage to remember waitlist membership (uniq_member), maintain a secure customer session (uniq_customer_session), and remember your analytics choice (uniq_analytics_consent). Cloudflare Access may set cookies when an authorized administrator signs in. Optional analytics loads only after consent. You can change analytics consent through Cookie settings in the footer.
8. Security
We use access controls, encryption in transit, private object storage, signed installation requests, limited request sizes, audit records, and encrypted backups. No system can be guaranteed completely secure, so users should review screenshots before submitting them.
9. Children
Uniq is not directed to children under 16, and we do not knowingly collect their personal data.
10. Changes and contact
We may update this policy and will revise the date above when we do. For any privacy question or request, contact [email protected].