Legal
Privacy Policy
Last updated: September 4, 2026
Overview
This policy describes how the public marketing site at rungset.com and the hosted application at app.rungset.com handle information. Rungset is an open-source project. This is not legal advice.
What this covers
- The marketing and documentation website on rungset.com
- The hosted Rungset web application on app.rungset.com
- The optional feedback form on this website
If you self-host Rungset, you operate your own instance. Your privacy practices then depend on how you deploy and configure it. The project source is available on GitHub under AGPLv3.
Account and authentication data
The hosted app uses Better Auth with email/password and optional Google or GitHub OAuth. Depending on how you sign in, the app may store:
- Name and email address
- Account identifiers from Google or GitHub when you use those providers
- Session information needed to keep you signed in
Session cookies are used to maintain authenticated access to the hosted application.
Workspace data
When you use the hosted application, content you create is stored for your account, including:
- Goals and milestones
- Todos / tasks
- Notes
- Progress check-ins (including mood, energy, accomplishments, challenges, and notes)
From Settings, hosted users can export workspace data as JSON and can delete tracked workspace items. Account deletion options depend on the current application settings and authentication provider flows.
Marketing website
The marketing site is primarily static content. It does not require an account. It does not intentionally set advertising or analytics cookies as part of this website codebase.
Feedback form
If you submit feedback at /feedback, the form collects your name, email address, feedback category, rating, message, and the page URL you submitted from. That submission is sent to a Cloudflare Worker endpoint used to receive project feedback.
Please do not include passwords, secrets, or unnecessary personal information in feedback.
Infrastructure providers
The hosted application and related services are built around:
- Cloudflare (Workers / D1 and related hosting infrastructure)
- Better Auth for authentication sessions
- Google and GitHub only when you choose those sign-in options
- A Cloudflare Worker endpoint for website feedback submissions
Those providers process data as needed to operate their services under their own terms and policies.
Third-party links
This website may link to GitHub, donation platforms, and other external sites. Those sites have their own privacy practices.
Children
Rungset is not directed at children, and we do not knowingly collect personal information from children for the hosted service.
Changes
This policy may be updated as the project evolves. The “Last updated” date at the top of this page will change when material revisions are published.
Contact
Questions about this policy can be sent to [email protected], or by opening an issue on GitHub.