Privacy
What onekit.sh collects, why, and who else sees it.
Last updated October 7, 2026.
This page covers onekit.sh: the website, the live demo, and buying Onekit. It doesn’t cover apps other people build and run with Onekit; they’re responsible for their own users’ data.
What we collect
When you buy Onekit. Stripe collects your payment details, email and billing address to take payment and work out tax. We receive your email, the GitHub username you give at checkout, and a reference to the payment. We never see your card number.
When you join the launch list. The email address you give, where on the page you gave it, and the page’s language, so we can tell you when Onekit goes on sale. Nothing else. Ask support@onekit.sh to take you off the list at any time.
When you use the live demo or sign in. Your email address (or phone number, if you sign in by text), your name if you give one, and the records you create. Each session stores your IP address and browser type, so you can see and end your sessions and we can spot abuse.
Cookies and your browser. One cookie keeps you signed in. A few preferences, such as theme and recently opened records, are kept in your browser and never sent to us. There are no analytics, advertising or tracking scripts on onekit.sh.
Why
- To sell you Onekit and give you access to the repository.
- To run the demo and your account in it.
- To keep the service secure and answer your support emails.
- To meet tax and accounting obligations.
Who else sees it
- Stripe processes payments and tax.
- GitHub receives your username when we invite you to the repository.
- Amazon Web Services (United States) hosts the site and uploaded images, and sends sign-in emails.
- Supabase (United States) hosts the database.
- An SMS provider sends sign-in codes, if you choose to sign in by text.
We don’t sell or rent personal data, or share it for advertising.
How long we keep it
Purchase records are kept as long as tax and accounting law requires. Launch-list addresses are kept until launch, or until you ask us to remove yours. Demo accounts and their data may be deleted at any time. You can delete your account from its settings.
Your rights
You can ask what we hold about you, and have it corrected, exported or deleted, by emailing support@onekit.sh. If you’re in the EU or UK you can also complain to your data protection authority.
Changes
If this page changes, the date at the top says when.