Scope
This policy covers the NodeLane website, NodeLane authentication, and NodeLane Tunnel. Services you expose through a tunnel are controlled by you or their operators and may have separate privacy practices. Planned products are not covered as if they were already available.
Email and Google sign-in
Email sign-in processes your email address and verification messages. With Google sign-in, NodeLane receives Google's account identifier, email address and verification status, and basic profile information such as a name and profile picture when provided. These details are stored by the NodeLane identity service to establish and display your account. The integration requests basic sign-in information, not Gmail messages, Google Drive files, contacts, or calendars.
Google and email identities are linked only through an explicit account action. Matching email addresses do not automatically merge independent accounts.
Use and sharing
Account information is used for authentication, account settings, service permissions, and protecting access. Google sign-in data is not used for advertising or sold by this integration. NodeLane services receive the identity and permissions needed for the service; Tunnel associates routes with an account identifier.
Google processes sign-in under its own policies. Email delivery uses Resend. Hosting, identity, and network providers process information needed to deliver and secure the service. Information may also be disclosed where required by applicable law. Your account profile is not published as a public directory.
Service data and cookies
Tunnel processes account and route identifiers, domain configuration, run state, network metadata such as source IP addresses, and current connection and UTC-day byte statistics to operate the service and limit abuse. Traffic is forwarded to the service you select. The Tunnel application does not provide stored request-content or visitor-history records; network and hosting layers still process traffic and security metadata.
The public website does not require an account session. Authentication and each signed-in product use their own necessary session cookies. Tunnel keeps authentication tokens on the server, not in browser local storage. Clearing cookies can end the browser session but does not delete account data.
Storage, retention, and security
Account and route information is retained as needed to operate the service. Temporary sessions and run credentials have expiry limits. Deleted route names have a seven-day recovery period; that period is not a promise that every related record is erased after seven days. Authentication, infrastructure security, and legally required records may have different retention needs.
Access controls and protected authentication connections help secure data, but no service can guarantee absolute security. Public tunnel endpoints may use HTTP and are not an end-to-end confidentiality guarantee. Do not expose secrets or an unprotected administrative service.
Your choices and deletion
You can review available account settings, sign out, and manage Google's access through your Google Account connections. Revoking Google access or unlinking a sign-in method does not itself delete information already held by NodeLane. Keep an available sign-in method before changing a linked identity.
Use the contact process below to request access, correction, or deletion of NodeLane account data. Maintainers need to verify authority before acting; data still needed for security or legal obligations may require retention. Stopping or deleting a tunnel route is separate from deleting an account. Updates to this policy will appear here with a revised date.
Contact and requests
Email NodeLane at the address below for general questions or privacy, access, correction, and deletion requests. Describe the request and include only the information needed to identify the affected account. Do not send verification codes, passwords, tokens, or other secrets. Maintainers may need to verify your identity and authority before handling account data.
[email protected]