Privacy Policy
Last updated 15 June 2026
The short version
Unode is non-custodial and built to need as little of your data as possible. It never sees your private keys, your seed phrase, or your funds. It stores only what it needs to run your session and compute your analytics, it never sells your data, and it shows no ads.
What we never collect
We never collect, request, or store your private keys, your seed phrase, or any secret that controls your funds. Signing in is a signature, not a transaction (see our Terms), so you never give us spending access. We run no advertising and no third-party tracking, and we do not build marketing profiles.
What we store, and why
To run the dashboard we keep a small amount of data, tied to your own Unetwork account:
- Your wallet address. A wallet address is a public identifier, not a secret. We use yours as the row key for your session and for the analytics we cache for you, so it is stored in our database in the clear. Our server logs are different: there your address appears only as an irreversible hash, never in the clear. Although it is publicly visible on-chain, your wallet address may be personal data under applicable law, and we treat it accordingly.
- Your session. When you sign in we store a session record: your address, an upstream refresh token (encrypted at rest with AES-256-GCM), and timestamps. Short-lived access tokens are never written to our database or sent to your browser — they are re-minted as needed and held only in server memory for their brief lifetime. Your browser holds only an httpOnly session cookie.
- Cached analytics. To keep the dashboard fast we cache computed aggregates (earnings series, heatmaps, task and group totals) keyed by your address and the time range, with short expiry times. These are derived numbers, swept regularly; they hold no keys and no personal documents.
- Security & request metadata. Like any web service, we (and our hosting provider, Cloudflare) process your IP address and basic request metadata to serve requests and to rate-limit and block abuse — on the basis of our legitimate interest in keeping the Service secure and available.
- Per-browser preferences. Your theme, density, and masking choices (for your wallet address and license IDs) are stored locally in your browser only. They are never sent to or stored on our servers, so they do not sync between devices.
What we do not store — your node data lives at Unetwork
Your licenses, leases, rewards, withdrawals, aliases, wallet defaults, per-license overrides, and groups all live in Unetwork’s backend. Unode reads and manages them on your behalf but keeps no copy of its own — when you change something in Unode, you are changing it at Unetwork.
Cookies
We use a single, essential cookie: an httpOnly session cookie, set when you sign in and used only to keep you signed in. It is not used for tracking or advertising. We set no analytics or advertising cookies.
Service providers
Running Unode relies on a few providers, who process data only to provide their service to us: Cloudflare (hosting and request logs), Supabase (our database, hosted in the EU), Unetwork’s API (the source of your node data), and an error-tracking service (used only when enabled, to record server errors for debugging — local and mock data are excluded). We do not share your data with anyone else.
Where your data is held, and for how long
Our database is hosted in the European Union. Session records expire and become invalid after their lifetime or when you sign out; cached analytics carry short expiry times and are swept regularly; server logs are retained only as long as our hosting platform keeps them. We keep no long-term archive of your activity.
Security
Your browser never connects to our database or to Unetwork’s API directly — everything goes through our server, which alone holds the credentials. Upstream refresh tokens are encrypted at rest; database access is locked down (deny-all row-level security, server-only credentials); and your browser only ever receives an httpOnly session cookie, never an upstream access or refresh token.
Your choices
You can sign out at any time to end your session, and you can mask your wallet address in the interface from Settings. Because we hold so little about you — and nothing that is not tied to your own Unetwork account — most data questions are answered by Unetwork, which holds your node data directly. For anything specific to Unode, contact us below.
Where data-protection law applies to you (including the GDPR), you have the right to access, correct, erase, or receive a copy of the personal data Unode holds about you, and to lodge a complaint with your national data-protection authority. To exercise any of these rights for data Unode holds, contact us below.
Changes to this policy
We may update this policy from time to time. Material changes will appear on this page with a new “last updated” date.
Contact
Questions about your privacy on Unode? Contact the maintainer at hello@unode.link.