Legal

Privacy policy

Last updated 2026-06-01.

This policy explains what data Runnev processes when you use the service, why, and what rights you have over it. It is written to be read, not to be survived.

What we process

What we do not do

Subprocessors

We rely on a small number of infrastructure providers, described here by role. A current list with the specific providers is available on request to support@runnev.dev.

Retention and deletion

Event payloads are retained only for the per-stream window you set and are evicted after that. Operational logs are retained for 30 days and then deleted. Account data is retained while your account is active and for a short wind-down period after closure, after which it is deleted or anonymized. You can request deletion of your account and associated data at any time.

Your rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise any of these, email support@runnev.dev from the address on your account and we will respond within the timeframe the applicable law requires.

Security

Data is encrypted in transit with TLS. API keys are stored hashed. To report a vulnerability, see /.well-known/security.txt. We are working toward SOC 2 and will state plainly when we have completed it.

Changes

We will update the date at the top of this page when this policy changes and, for material changes, notify account holders by email.

Contact

Questions about this policy go to support@runnev.dev.