Good App Company

Privacy Policy

Last updated July 19, 2026

Good App Company LLC (“we,” “us”) makes desktop and mobile software. This policy explains what we collect, why we collect it, and what you can do about it. We’ve tried to write it in plain language rather than boilerplate.

The short version: we collect the minimum we need to sell you a license, deliver it, and keep it working. We don’t run advertising or analytics trackers, and we don’t sell your personal information.

Who is responsible for your data

Good App Company LLC is the controller of the personal information described here.

Good App Company LLC
2421 Members Way
Lexington, KY 40504
United States
privacy@goodapp.company

What we collect

Information you give us

  • Your email address - when you buy a license, start a free trial, or ask us to recover a lost license key. This is the only piece of directly identifying information we require.
  • A device name - if you choose to label an activated device so you can recognize it later. You pick this; it can be anything.
  • Anything you write to us - the contents of support emails you send.

Information collected when you activate an App

To enforce license limits, our Apps send us:

  • A hashed device identifier. The App derives an identifier from your device and sends us a one-way hash of it. We store only the hash. It lets us tell “same device” from “different device” without holding a value that identifies your hardware.
  • Activation timestamps - when a device was activated and when it last checked in.

Purchase information

Payments are processed by Stripe. Your card number never reaches our servers. What we store is the record Stripe returns to us: a checkout session ID, a customer ID, a payment or subscription ID, the amount and currency, the purchase status, and the email address you used. Purchase line items are encrypted at rest in our database.

Information collected automatically

  • Request logs. Our hosting provider, Cloudflare, processes standard request data - IP address, user agent, timestamp, and the URL requested - to serve the Site and to block abuse and attacks.
  • Error diagnostics. When something breaks, we use Sentry to capture the error, a stack trace, and the surrounding request context so we can fix it. This can incidentally include an IP address or an email address that was part of the failing request.

What we don’t collect

We don’t use advertising networks, analytics products, tracking pixels, or third-party marketing cookies. We don’t build profiles of you, and our Apps don’t report on how you use them. The Site sets no cookies of its own; Cloudflare may set a strictly necessary cookie for security purposes.

Our Site loads a web font from Google Fonts. That request tells Google your IP address and browser. It’s used only to render type, and we’re working toward serving the font ourselves.

Why we use it, and our legal bases

What we doWhyLegal basis (GDPR)
Send your license key by emailTo deliver what you boughtPerformance of a contract
Validate licenses and enforce activation limitsTo provide the software and prevent unlicensed usePerformance of a contract; legitimate interests
Process payments and refundsTo complete your purchasePerformance of a contract
Answer your support emailsTo help youPerformance of a contract; legitimate interests
Diagnose errors and secure our systemsTo keep the Services working and safeLegitimate interests
Keep records of salesTax and accounting obligationsLegal obligation

We do not use your information for automated decision-making that produces legal effects, and we do not use it for marketing unless you ask us to.

Who we share it with

We share personal information only with service providers who help us run the business, and only for that purpose:

  • Stripe - payment processing (privacy policy)
  • Cloudflare - hosting, database, email delivery, and security (privacy policy)
  • Sentry - error monitoring (privacy policy)

We may also disclose information if we’re legally required to, or to protect our rights or someone’s safety. If the business is ever sold or merged, information may transfer as part of that transaction - we’ll update this policy if that happens.

We do not sell your personal information, and we do not share it for cross-context behavioral advertising.

Where your data is stored

We’re based in the United States, and our providers process data in the United States and other countries. If you’re in the European Economic Area, the United Kingdom, or Switzerland, transfers of your data to the U.S. rely on the Standard Contractual Clauses or an equivalent safeguard in our providers’ terms.

How long we keep it

  • License and activation records - for as long as the license is valid, plus up to two years, so we can help you recover a key or reinstall.
  • Purchase records - seven years, to meet tax and accounting requirements.
  • Support email - up to two years.
  • Error diagnostics - 90 days, then deleted automatically by Sentry.
  • Request logs - retained by Cloudflare on a short rolling window, typically days.

When you ask us to delete your data, we delete what we’re not legally required to keep and tell you what’s left and why.

Your rights

Depending on where you live, you may have the right to:

  • Access the personal information we hold about you;
  • Correct information that’s wrong;
  • Delete your information;
  • Port your information to another service;
  • Object to or restrict certain processing;
  • Withdraw consent, where we relied on it; and
  • Not be discriminated against for exercising any of these rights.

To exercise any of them, email privacy@goodapp.company from the address associated with your license. We’ll respond within 30 days. There’s no charge, and you don’t need to explain why. If you’re in the EEA or UK and you’re unhappy with our response, you may complain to your local data protection authority.

Security

We use HTTPS everywhere, hash device identifiers rather than storing them raw, encrypt purchase line items at rest, keep credentials in managed secret storage, and put a web application firewall in front of the Site. No system is perfectly secure, but we take this seriously and we keep the amount of data we hold deliberately small.

Children

The Services aren’t directed at children under 13, and we don’t knowingly collect their personal information. If you believe a child has given us information, email us and we’ll delete it.

Changes to this policy

If we change this policy we’ll update the “Last updated” date above. If a change materially affects your rights and we have your email address, we’ll make a reasonable effort to tell you before it takes effect.


Contact

Privacy questions, requests, or complaints:

Good App Company LLC
2421 Members Way
Lexington, KY 40504
United States
privacy@goodapp.company
Good App Company
Contact Privacy Terms
© 2026 Good App Company