Privacy Policy

LAST UPDATED โ€” JUNE 10, 2026

This policy describes what KeyStackz collects, why, and what we will never do with it. Short version: we run a secrets manager, so we collect as little as possible and encrypt what matters most.

What we collect

  • Account data โ€” your name and email, handled through our auth provider, Clerk, so you can sign in.
  • Your secrets โ€” the API keys you paste, stored only as AES-256-GCM ciphertext. We cannot read them in plaintext in our logs or analytics, because they never appear there.
  • Service metadata โ€” which integrations you've connected and toggled, so pulls resolve correctly.
  • Billing data โ€” payments are processed by Stripe; we never see or store full card numbers.

Error monitoring

We use Sentry, a third-party error-monitoring service, to detect and diagnose failures. When something breaks, Sentry may receive technical details about the error โ€” the page, your browser, and a stack trace. It never receives your keys. Plaintext secrets, tokens, and key material are stripped from every report before it leaves our servers, and session recording is disabled entirely.

What we never do

  • We never sell your data. To anyone. Ever.
  • We never log secret values or display them after entry.
  • We never send your secrets to an AI model or chat window.
  • We never fetch or create credentials in your provider accounts.

Your controls

You can revoke any token instantly, delete any connected service, or delete your entire account from Settings โ€” which permanently erases your encrypted keys and tokens. Questions or data requests: privacy@keystackz.com.