Panoptik
// Legal · Privacy

Privacy Policy

// Effective 2026-05-10
// In plain words

We collect what we need to run your account and your displays, and nothing more. No third-party analytics, no ad tracking, no telemetry from the dashboards you render. You can export or delete your data whenever you want.

// Who controls your data

The data controller for Panoptik is Skarnlabs, a sole proprietorship (personligt ejet mindre virksomhed) registered in Denmark under CVR no. 35098178, owned by Bram Alexander Lyng Andersen, at Bådehavnsgade 55 H, 2450 København SV, Denmark.

For any request about your data, including access, correction, export or deletion, contact hello@panoptik.app. You also have the right to complain to Datatilsynet, the Danish Data Protection Agency.

// What we collect

  • Account: email address, password hash (argon2), organization name, verification and session timestamps.
  • Content: dashboards, widgets, backgrounds, and media assets you create or upload.
  • Devices: device name, pairing state, last-seen timestamp, assigned dashboard.
  • Billing:plan tier, subscription status, and an opaque Paddle customer ID. Card data never touches our servers — it's handled by Paddle (our Merchant of Record).
  • Operational logs: request metadata and error traces, retained for up to 30 days to debug and defend the service.

// What we don't collect

  • No telemetry or analytics from rendered dashboards. We don't know what's on your screen.
  • No advertising identifiers or ad-network tracking. We don't sell data.
  • No persistent storage of the third-party payloads your widgets proxy (calendars, photos, JSON feeds) beyond short caches required to deliver them.

// Cookies

We use a single encrypted session cookie (iron-session) to keep you signed in. No tracking cookies. No cross-site cookies. No third-party cookies are set by our application.

// Third parties we rely on

  • Paddle: Merchant of Record for payment processing, subscription management, and EU VAT remittance.
  • Brevo: transactional email (verification, password reset, billing receipts).
  • Hetzner: server and storage hosting inside the EU.
  • OpenPanel: privacy-friendly, self-hosted analytics (page views, outgoing link clicks). No cross-site tracking. Data stays on EU infrastructure we control.
  • GlitchTip: error tracking, self-hosted on the same EU infrastructure. Receives stack traces and request metadata when something fails.
  • Open-Meteo: weather data for the weather widget (requested server-side; no end-user identifiers sent).

Each vendor receives only the minimum data needed to perform its function.

Deleting your account removes your data from our systems. It does not reach back into theirs, so their retention is worth stating rather than leaving you to assume. Paddle keeps billing records for the period tax law requires, which is the same reason ours survive. Brevo holds delivery logs for the messages it sent you. OpenPanel and GlitchTip are self-hosted on our own EU infrastructure and age out on the windows described above, so a deletion reaches them as those windows pass rather than at the moment you ask. Hetzner holds nothing of its own: it is the hardware everything above runs on, so its retention is ours, and a deletion is complete there once the backups written before it have aged out. Open-Meteo never receives anything identifying you.

// Retention

We keep your data for as long as your account is active. When you delete your account, your content is removed from live systems immediately. Backup archives are retained for up to 30 days and are transferred over an encrypted connection, so a deletion becomes final in them once the archives written before it have aged out of that window. Billing records are retained for the period required by tax law (typically five to ten years, depending on jurisdiction).

// Your rights

If you're in the EU, UK, or another jurisdiction with similar laws, you have the right to:

  • Access the personal data we hold about you.
  • Export your data in a portable format.
  • Correct inaccurate data.
  • Delete your account and associated data.
  • Object to or restrict certain processing.
  • Lodge a complaint with your local data protection authority.

Use the contact form to exercise any of these rights. We'll respond within 30 days.

// Security

Passwords are hashed with argon2id. Sessions ride in encrypted, signed cookies. All traffic is served over TLS, and backups are transferred over an encrypted connection. Our servers sit in EU datacentres with physical access controls; the disk volumes themselves are not separately encrypted at rest. Access is least-privilege: production is reachable by a small number of people, and each of them by name.

No system is perfectly secure. If you believe you've found a vulnerability, please use the contact form with subject “Security vulnerability”.

// Children

Panoptik is not directed at children under 13, and we don't knowingly collect data from them. If you believe a child has created an account, contact us and we'll remove it.

// Changes

We'll update this policy as the service evolves. Material changes will be announced by email or in-app notice before taking effect.

// Contact

Privacy questions? Contact us.