Privacy Policy
Last Updated: August 17, 2026
ZNOWSOFT, LLC ("we," "us," or "our") operates the website zensailor.com and develops the ZenSailor self-hosted Platform-as-a-Service software (the "Software" or "Service").
We respect your privacy and are committed to protecting it. This Privacy Policy explains what information we collect, how we use it, and the choices you have.
1. The Scope of Data (Self-Hosted Model)
It is important to distinguish between data you provide to us directly and data hosted on your own infrastructure.
Your Instance Data: Because ZenSailor is self-hosted software installed on your own servers (VPS, bare metal, or cloud), ZNOWSOFT, LLC does not have access to your application code, databases, environment variables, or user data hosted within your ZenSailor instance. You remain the sole data controller of the content you deploy.
Our Interaction: Our interaction is limited to account management, billing, license validation, and account-linked usage telemetry as described in Section 2(B) below.
2. Information We Collect
A. Information You Provide to Us
- Account Registration: When you create an account, we collect your email address and authentication credentials (stored only as a cryptographic hash — we never store plaintext passwords).
- Payment Information: We use third-party payment processors (e.g., Stripe) via the ZnowSoft shop. We do not store full credit card numbers on our servers. We may store billing records, such as your billing address, tax identification numbers (if applicable), and transaction history.
- Support & Communications: Data contained in support tickets, bug reports, or emails you send to us.
B. Information Collected Automatically (Software Telemetry)
To keep the Software stable, to support you, and to detect abuse of the platform, the ZenSailor instance installed on your server communicates automatically with our central servers. This telemetry is linked to your account rather than anonymous, and we would rather state that clearly than describe it as something it is not.
- License Validation: Your instance confirms its subscription tier against our licensing endpoint using the credential it holds, identifying itself by its own instance identifier rather than by your email address. Responses are cryptographically signed and cached, so this check runs at most every few minutes.
- Usage & Diagnostic Telemetry: Product events are sent to our telemetry endpoint. Each event carries:
- The event name and category (usage, performance, lifecycle, or error).
- The email address of the owner account on your ZenSailor instance.
- The dashboard domain your instance is reached on.
- The ZenSailor version number and the component reporting the event.
- Event-specific context drawn from a fixed published list of permitted fields, such as whether a deployment succeeded or failed, which features were used, aggregate counts of nodes, services and projects, and error details when something goes wrong.
How your account and installation are identified. Every telemetry request is authenticated by the cryptographic credential your instance holds, issued when it was activated against your licence. Alongside it, your instance reports the email address of the owner account on that instance and the dashboard domain the instance is reached on. Both travel in a dedicated attribution field rather than inside the event data, and the address is resolved to an internal account identifier when it arrives. The credential remains authoritative: an instance cannot attribute its activity to any account other than the one its licence belongs to.
What we never receive. Telemetry does not include your source code, your environment variables, your secrets, your database contents, your application logs, or any data held inside the containers you deploy. Those never leave your server.
Why the account is attached. Tying events to an account is what allows us to identify and stop abuse of the platform, enforce our Terms of Service, and give you a useful answer when you contact support about a failed deployment. It is not used for advertising, and we do not sell it.
Turning it off. Any paid plan — Pro or Enterprise — can switch telemetry off entirely from Settings → Telemetry, and can switch it back on at any time. Community instances report usage and diagnostics. Licence validation is separate and continues either way: it is how your instance proves its entitlement, not telemetry.
C. Website Analytics
Our website records page views server-side (page path, referrer, and browser user-agent). This analytics data is not linked to your account, does not use cookies, and contains no advertising or cross-site identifiers.
3. Cookies
Our website uses a single strictly-necessary session cookie to keep you signed in to your account. We do not use tracking, advertising, or third-party analytics cookies.
4. How We Use Your Information
We use the collected data for the following purposes:
- Provisioning: To generate license keys and manage your subscription access.
- Product Improvement: We analyze usage and diagnostic telemetry to identify bugs, prioritize new features, and optimize performance across different server environments.
- Abuse Prevention & Support: We use the account identifier attached to telemetry to detect and stop abuse of the platform, to enforce license terms, and to diagnose issues you report to support.
- Communication: To send you invoices, technical notices, security alerts, and support messages.
- Security & Compliance: To prevent software piracy, enforce our Terms of Service, and comply with legal obligations.
5. Data Sharing and Disclosure
We do not sell, trade, or rent your personal data. We share data only in the following limited circumstances:
- Service Providers: With vendors who perform services on our behalf (e.g., payment processing, transactional email delivery, hosting our marketing site). These vendors are bound by confidentiality obligations.
- Legal Requirements: If required by law, subpoena, or legal process in the State of Wyoming or federal jurisdictions.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, customer records may be transferred to the acquiring entity.
6. Data Retention
We retain account and billing records for as long as your account is active and thereafter as required for tax, accounting, and legal purposes. Server-side website analytics records are retained for a limited period and then deleted or aggregated. Usage and diagnostic telemetry is retained in account-linked form while your account is active and for a limited period afterwards, after which it is aggregated or deleted. You may request deletion of your telemetry history at any time using the contact details in Section 11.
7. Data Security
We implement industry-standard security measures (including SSL/TLS encryption) to protect your account information on our systems. However, you are responsible for the security of your own ZenSailor instance. This includes securing your server's SSH access, managing your firewall, and keeping your base operating system updated.
8. International Transfers
ZNOWSOFT, LLC is a registered entity in Wyoming, USA. If you use our services from outside the United States, your information may be transferred to, stored, and processed in the United States. By using the Service, you consent to this transfer. We do not sell paid subscriptions to customers located in the European Union and do not knowingly market to EU residents.
9. Your Rights and Choices
Depending on your jurisdiction, you may have rights to access, correct, delete, or export your personal data, and to object to or restrict certain processing. To exercise these rights or request deletion of your account, contact us at info@znowsoft.com.
10. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or by placing a prominent notice on our website. The "Last Updated" date at the top of this policy indicates when the latest changes were made.
11. Contact Us
For privacy-related inquiries, please contact us at: info@znowsoft.com.