Privacy

Terz watches public package registries. It needs very little about you, and this page says exactly what that is.

Last updated: August 8, 2026

What we collect

Your email address and the name you give us, so you can sign in and we can reach you about your account. Your password is stored only as a hash — we never hold the password itself.

The package names you ask us to watch — npm, PyPI and Docker Hub identifiers. These are public names of public things; they are not personal data, and we treat them as configuration.

The readings we take on your behalf: download and pull counts, and, if you connect one, revenue figures from your own Stripe account.

The one credential we hold

Revenue is optional. If you turn it on, you give us a restricted, read-only Stripe key. We refuse anything else — a secret key can move money, and this is a dashboard.

It is encrypted at rest with AES-256-GCM and is never shown back to you or to anyone else. The collector decrypts it at the moment it calls Stripe, to take the reading, and nothing else in Terz reads it.

Remove it and it is gone immediately, and that product goes back to showing adoption only.

How we use it

To run the service: take readings, draw your chart, bill you, and email you about your account. Nothing else.

Who else touches it

Four processors, each doing one job:

  • Fly.io — runs the service.
  • Neon — the database your workspace lives in.
  • Resend — delivers account email (sign-up confirmation, password reset).
  • Stripe — takes payment, and provides the revenue figures you opt into.

We also make requests to npm, PyPI and Docker Hub to read public download counts. Those requests carry the package name and nothing about you.

What we do not do

We do not sell your data. We do not run ad tracking. There are no third-party analytics or tracking scripts on this service — if that ever changes, this page changes first.

How long we keep it

Readings are kept for as long as your workspace exists, because the history is the product — a trend needs a past to be a trend.

Delete a product and its readings go with it. Delete your account and everything goes: workspace, products, readings, run history, and any stored key. It is immediate and it is not recoverable.

Your rights

You can see everything we hold at any time — your chart is it, and /api returns the same readings as raw data. You can delete your account yourself from Settings, without asking us. If you would rather we did it, write to support@terz.dev.

If you are in the EEA or the UK, the lawful basis for processing your account data is performance of our contract with you.

Children

Terz is for people who ship software. It is not for children, and it is not directed at anyone under 16.

Where it lives

The service runs in the United States. If you use it from elsewhere, your data is transferred there. Our processors are named above and each holds its own commitments.

Changes

We will move the date at the top. If a change is material — a new processor, a new category of data, a shorter or longer retention — we will email you before it takes effect.

Who to write to

support@terz.dev. The controller is RADLAB LLC, a Wyoming limited liability company.

Privacy · Terms · Support · Sign in