Privacy Policy
This is the privacy policy for Sidecar's private beta. It will be expanded before public launch.
What we collect
Your email address and login credentials (passwords are stored only as salted hashes); the code you run, its outputs, and files in your sessions; connection credentials you add (stored encrypted, released to your running session only through our secret broker); usage and billing records (a credit ledger); and standard server logs.
How we use it
To operate the service, meter usage, keep the platform safe, and contact you about the beta. We do not sell your data or use your code or data to train models.
Where it lives
Sidecar runs entirely on Cloudflare: the application and API as a Worker, your sessions in Cloudflare Containers, and your account, session records, credit ledger, encrypted connection credentials, and saved cell history in Cloudflare D1. Saved cell history includes the source code of the cells you save, so code you save is stored in our database, not only in your session; files you create in a session stay in that session's own container. We do not pin any of this to a single region: the Worker and your containers run across Cloudflare's network, and the database's region was assigned by Cloudflare rather than chosen by us. If you buy credits, payments are processed by Stripe; card details go to Stripe, not to us. Waitlist submissions are stored in that same Cloudflare D1 database.
Retention & deletion
Beta data may be wiped as part of iteration. To have your account and its data deleted, email team@sidecars.io — we delete sessions, files, and credentials, and retain only the billing ledger as a financial record.