privacy
Short version: gene.dev itself collects nothing. It is static files with no analytics, no tracking scripts, no cookies and no third-party embeds. The signed-in side at platform.gene.dev needs an account, and that is where data exists.
the public site
No cookies are set. No analytics run. No fonts, scripts or images are loaded from anywhere else; the content security policy blocks it. The host (Cloudflare) processes standard request logs, including IP address, for delivery and abuse prevention.
the signed-in side
When you create an account on platform.gene.dev:
- Identity email address, and a display name you choose. Held by Clerk, which handles sign-in. If you sign in through a third party, Clerk receives what that provider releases.
- Entitlements which products you have access to, license keys claimed, and tokens issued to your account.
- Session a signed cookie so you stay logged in. It is strictly necessary for the service to function, so it does not require a consent banner.
- Server logs request metadata, kept short-term for debugging and abuse prevention.
There is no advertising, no profiling, no automated decision-making, and nothing is sold or shared for marketing. If you register a game server in the public directory, the details you submit are public by design.
why, legally
Account data is processed to perform the contract you enter by creating an account. Logs and abuse prevention rest onlegitimate interest in keeping the services running and secure.
who processes it
| Processor | What for |
|---|---|
| Cloudflare | Hosting and CDN for gene.dev, DNS, artifact storage (R2) |
| Fly.io | Application hosting and database for platform.gene.dev |
| Clerk | Authentication: account records, sign-in, sessions |
| Purelymail | Email for @gene.dev addresses |
Some operate outside the EU/EEA and transfer data under standard contractual clauses or an equivalent mechanism.
how long
Account data is kept while the account exists. Delete the account and it is removed, except where something must be retained to comply with the law. Server logs are short-lived.
your rights
Under the GDPR you can ask for a copy of your data, correct it, delete it, restrict or object to processing, and receive it in a portable form. Email[email protected] and I will handle it within a month. You may also complain to your national data protection authority; in Finland that is the Office of the Data Protection Ombudsman.
children
These services are not aimed at children under 13, and accounts should not be created for them.
changes
The date at the top is the version in force. Material changes affecting account holders will be announced on the platform rather than made quietly.