Privacy

Last updated 23 August 2026

What this covers

This policy describes how Peakd Developers handles personal data on this site — the public pages and the authenticated studio OS.

What we collect

Account data: name, email, password hash, and role (owner, staff, or client). Studio records you or your team enter: clients, projects, proposals, invoices, and team invites. We also store session tokens so you can stay signed in.

Why we collect it

To run accounts, keep the book of work, send transactional messages (such as invites), and keep the service secure. We do not sell personal data. We do not use studio records for advertising.

Cookies and tokens

Authentication uses an access token in the client and a refresh cookie on the API host. Those are required to use the OS. We do not run third-party ad pixels on the public site.

Hosting

The site and API are hosted on Railway. Studio data is stored in MongoDB (locally in development; a hosted cluster in production). Processors act only on our instructions.

Retention

We keep account and studio records while the workspace is active. If you close an account, we delete or anonymize personal data that is no longer needed, unless we must keep it for invoices, disputes, or the law.

Access and deletion

You may ask to see, correct, or delete personal data we hold about you. Owners can manage team access in the OS. Client accounts see only their own work. Send a request through the public site or your studio account.

Changes

We may update this policy. The date at the top is the current version. Material changes will be reflected here before they apply.

Contact

Privacy questions: reach Peakd Developers through the public site or through your studio account.