Accounts Privacy Policy
Effective October 9, 2026
A Happy Heart Software account lets you sign in to Happy Heart Software's apps with one email address and password, a passkey, or your Google account. This policy covers the sign-in service at accounts.happyheartsoftware.com. Each app has its own privacy policy for what it does with your information once you're signed in.
What we keep
| Your account | Your name, email address, whether you've confirmed it, and when the account was made and last changed. If you sign in with Google, also the link to your Google profile picture. Whether the account is a Happy Heart Software admin, and, if our staff have deactivated it, that fact and the reason they gave. |
| How you sign in | For a password: a one-way hash of it (scrypt), never the password itself. For Google: your Google account's ID, so we can recognize you next time. For each passkey: its public key and credential ID, a counter, its name, when it was added, how it connects (for example USB or built in), whether it's backed up, and the code identifying the kind of authenticator that made it. Passkeys never send us your fingerprint, face or PIN. |
| Sessions | While you're signed in here: a random session ID, when it expires, and the IP address and browser description (user agent) it was signed in from, which help spot misuse. A session lasts up to 7 days after you last use it, or until you sign out or reset your password. |
| Apps you've allowed | Which apps you've let sign you in, and what each may see (for example your email address), until you remove it on your account page. |
| App tokens | Records of the sign-in tokens given to those apps (only hashes of the tokens, plus which app, account and session they belong to), until they expire: 1 hour for access, 30 days for staying signed in. |
| Abuse protection | Counters of recent requests per IP address and page (for example sign-in attempts), to stop password guessing. They're deleted after a day. |
Expired sessions, tokens and email links are deleted every day. Happy Heart Software admins can see the list of accounts (name, email address, and when each was made and last used) to help people and to deactivate accounts that are misused.
What we don't keep
- Nothing from your Google account beyond what's listed above: we don't keep Google's access tokens, so we can't see your Gmail, Drive or anything else. (Apps that work with Google Drive or Sheets ask Google for that separately.)
- No analytics, advertising or tracking. The only cookies are the one that keeps you signed in here and short-lived ones used during Google or passkey sign-in.
What apps receive
When you sign in to an app, it gets an ID for your account (the same one in every Happy Heart Software app, so our apps can tell it's you). If you allow it, it also gets your name and profile picture, and your email address and whether it's confirmed. Our own apps may skip asking, but only for these same details.
Who else is involved
- Cloudflare runs this service, stores its database and sends our confirmation and password reset emails (so it receives your email address and the message). Like every web host it sees your IP address, and it keeps a log of requests to the service for a few days (up to 7) so we can fix problems.
- Google, only if you choose "Sign in with Google": Google tells us your name, email address, profile picture and Google account ID.
We don't sell or share your information with anyone else.
Your choices
You can see your account, remove passkeys, take back an app's access, and delete your account on the account page. Deleting it removes everything listed under "What we keep" right away, except request logs and abuse-protection counters, which expire on their own. Apps you used may keep their own data; their privacy policies say how to delete it.
Contact
Questions? Email support@happyheartsoftware.com.