Privacy policy

Takes effect 12 October 2026

This is the policy that takes effect on 12 October 2026. Until then, the current one applies.

hoardboard saves links to things you are thinking about buying. This page says what data that involves, in plain words, because you should not need a lawyer to know what an app knows about you.

What we collect

  • Your account: your email address and a one-way hash of your password — we cannot read the password itself. If you sign in with Google or X, we store which account vouched for you; X shares no email with us, so we ask you for one. If you ask for occasional updates, we keep when you asked.
  • What you save: your boards, links, notes, tags, prices and statuses. That is the product; it is yours, and it is fenced off from every other account at the database level.
  • Pages you point us at: when you save a link, our server reads that page to fill in the name, picture and price, and re-checks the price nightly. A few large shops turn servers away, so their pages are read by a reading service instead (see below) and re-checked weekly. We keep a resized preview image, not the page. When a page cannot be read, we keep a short excerpt of what came back for 14 days, to work out why, and then delete it.
  • Your sessions: the browser type and IP address of each sign-in, shown to you under Settings so you can spot and end a session that is not yours. Idle sessions expire after 30 days.

Emails we send

  • About signing in: confirming your address, and resetting your password when you ask.
  • Notices about your account: a change to this policy or the terms, a security problem that affects your account, or the service closing. Every account with a confirmed address gets these, and they are rare.
  • Updates about what is new: only if you ask for them, never by default. Every one has a link to stop them that works in one click, without signing in.

We keep a record of which address each notice or update went to for 30 days after it is sent, and after that only the totals.

What we do not do

  • No advertising, no selling or sharing of your data, no data brokers.
  • No analytics scripts, no trackers, no fingerprinting. The only cookie is the one that keeps you signed in.
  • We do not read your boards. Access to production data is limited to keeping the service running. To know the service is working we count things in totals — how many accounts there are, how often a page could be read — and never keep a record of what anyone saved or looked at.

Who helps us run it

Your data lives on servers in the United States: our own server (hosted with Hostinger, Boston), image previews in Cloudflare R2, and email delivered through Resend.

Links to a few shops that turn servers away — Amazon, Walmart and Target — are read through reading services, Jina and Diffbot. They receive the link and nothing about you.

Each of these processes data solely to provide their service to us.

Retention and deletion

Export everything as JSON from Settings whenever you like. Deleting your account deletes your data immediately — boards, items, images, the lot — and encrypted backups age out entirely within 14 days. Server logs are kept briefly for keeping the service healthy.

Questions

Email privacy@hoardboard.app. If this policy changes in a way that matters, we will email you before it takes effect.