Privacy Policy

Effective 2026-05-27 · Clayrune Android app · v1.x
Short version: The Clayrune Android app collects nothing. It's a thin client to a server you run yourself. No Clayrune backend observes your activity, ever.

1. What you provide to the app

To connect on first launch (typically by scanning a QR code from your own Clayrune dashboard), you supply:

These values are stored locally on your device using Android's EncryptedSharedPreferences, backed by the Android Keystore. They never leave your device except as HTTP headers sent to the tunnel URL you configured.

2. What the app sends, and where

Every request the app makes goes to the tunnel URL you configured. That URL points at a Cloudflare Tunnel that you (or the Clayrune control plane on your behalf) provisioned, which forwards traffic to your own Mission Control server.

The app does not send data to:

3. Permissions

The app does not request:

4. Third-party services

The app depends on the following Google Play Services modules that run in their own sandboxed processes outside the app:

5. Data deletion

You can fully remove all data the app stores by any one of:

Any of these completely wipes the locally stored tunnel URL and CF Access credentials. There is no off-device data to delete; you control your own server.

6. Children

The app is not directed at children under 13. Because the app collects no data, no special handling for children is needed beyond this disclosure.

7. Changes to this policy

If we ever start collecting data (we don't plan to), we'll publish a new version of this policy at the same URL and bump the "Effective" date above. There is no in-app mechanism to notify you of changes. This is consistent with the no-backend posture.

8. Contact

Questions or concerns: [email protected].