Legal

Privacy Policy

Last updated: August 4, 2026

Overview

The controller for the personal data described in this policy is Cache Holding B.V., registered with the Dutch Chamber of Commerce (KvK) under number 91984785 and reachable at privacy@oneclicklive.app. This policy explains what data we collect, how we use it, and your rights under the General Data Protection Regulation (GDPR).

Data We Collect

We collect the minimum data necessary to provide and protect our service:

  • Account information — your name and email address, provided via Google OAuth or magic link sign-in.
  • Deployed code — the source code and assets you deploy through our platform.
  • Usage metadata — timestamps, project identifiers, and deployment status required to operate the service.
  • Technical and security data — the IP address and browser user-agent recorded when you sign up, sign in, deploy a project, or report one. We use these to keep sessions working, apply rate limits, and detect and block abuse. We do not use them to profile you or to target advertising.

Deployed Content Is Public

Projects you deploy are served on a public URL and can be visited, indexed, and archived by anyone who has it, including search engines. Password protection on Pro restricts who can open a project, but no deployed project should be treated as private storage.

Content Moderation

Everything deployed through OneClickLive is scanned automatically for abuse before it is published. When an upload is refused, we keep a copy of it and the IP address it came from for 7 days — long enough to review the decision, reverse it if it was wrong, and recognise a repeat offender — after which it is deleted automatically. The legal basis is our legitimate interest in keeping the platform free of phishing, malware, and fraud.

Abuse Reports

If you report a project, we store the reason you give and the IP address you sent it from, so that the same reporter cannot repeatedly file reports to take a page down unfairly. We do not pass your details to the reported user.

Analytics

We use PostHog (EU region), a privacy-first analytics solution. It operates in cookieless mode and does not track individual users across sites.

Payments

All payments are processed by Stripe, which is PCI DSS compliant. We never store your credit card details on our servers.

Data Storage

Your data is stored on Cloudflare infrastructure, including R2 (object storage), D1 (database), and KV (key-value store).

Data Sharing

We do not sell, rent, or trade your personal data to third parties. We only share data with Cloudflare and Stripe as strictly necessary to operate the platform.

GDPR Rights

As an EU-based service, we comply fully with the GDPR. You have the right to:

  • Access — request a copy of all personal data we hold about you.
  • Rectification — correct any inaccurate personal data.
  • Erasure — request deletion of your account and all associated data.
  • Portability — receive your data in a structured, machine-readable format.
  • Objection — object to processing of your personal data.

Account Deletion

You may delete your account and all associated data at any time. Upon deletion, we will remove all your personal data and deployed projects within 30 days.

Contact

For any privacy-related questions, contact us at privacy@oneclicklive.app.