Privacy Policy
Last updated 20 August 2026
hupp collects as little as it can and sells none of it. This policy says what is stored, why, and how to get rid of it.
What hupp stores
- Your account: the email address you sign in with, your name if a sign-in provider supplies one, and which plan you are on.
- Your files: the pages you upload, their names and sizes, and the metadata around them — visibility, expiry, upload time.
- Credentials: session records and API tokens. Tokens are stored only as a SHA-256 hash, so a database copy cannot be replayed against the API.
- Operational logs: short-lived request logs kept to debug failures and stop abuse.
hupp does not run analytics, advertising, or third-party trackers on its own pages.
Why
To run the service you asked for: to authenticate you, to serve your pages, to enforce plan quotas, to bill a subscription, and to answer support mail. Nothing is used to profile you, and nothing is sold, rented, or shared for anyone else's marketing.
Who else touches it
- Cloudflare hosts the service, stores the database and the files, and sends the sign-in emails.
- Paddle is the merchant of record for subscriptions. When you subscribe, Paddle collects and holds the payment and tax details under its own privacy policy; hupp receives only a customer identifier, the plan, and its status.
- Sign-in providers (Google, GitHub) tell hupp your email address when you choose to sign in with them.
Beyond those, data is disclosed only when the law requires it.
How long
Files on free accounts are deleted 30 days after upload. Files you delete are removed from storage immediately. Account records are kept while the account exists; deleting the account removes the account and its files. Billing records are kept by Paddle for as long as tax law requires.
Your pages are public by default
A public page is served to anyone who has its link. The link is unguessable, but it is the only thing protecting the page — treat it as the secret it is, and use a private page for anything that should stay with you.
Your choices
You can export or delete your files from the dashboard or the CLI at any time, revoke API tokens, and delete your account. To ask what is held about you, or to have it erased, write tosupport@hupp.ing from your account's email address.
Children
hupp is not intended for anyone under 16 and does not knowingly keep their data.
Changes
If this policy changes, the date at the top changes with it, and a change that affects what is collected will be announced by email.
Contact
Privacy questions go to support@hupp.ing.