In short: the KubeCrow app has no telemetry or analytics, and your clusters, kubeconfig, logs, secrets and cloud credentials never leave your Mac. To use KubeCrow you sign in with a free KubeCrow account, which keeps your name, email address, photo and plan. This website counts visits with Google Analytics. We don’t sell or share your data.
The KubeCrow app
- KubeCrow talks to your clusters and to AWS directly from your Mac, with your kubeconfig and AWS profiles. None of it goes through us, and we never see it.
- It contacts app.kubecrow.com when you sign in, when it starts and every 6 hours, to check that your sign-in is still valid. We record when each Mac was last seen.
- Your sign-in is kept on your Mac, encrypted with the macOS Keychain. Your settings stay on your Mac too.
- Downloads and update checks go to GitHub (github.com), which handles them under GitHub’s privacy statement.
Your KubeCrow account
You sign in at app.kubecrow.com with Google or GitHub; there’s no KubeCrow password. If you use both with the same verified email address, they’re the same account. We store:
- From Google or GitHub: your name, your verified email address, a link to your profile photo, and your account’s ID there, so we recognise you next time. We ask Google for your basic profile and email (
openid email profile) and GitHub for read-only access to your profile and email addresses (read:user user:email). We can’t see your repositories or anything else in those accounts. - About your account: your plan (free), when you joined and last signed in, and how many times and when you last downloaded KubeCrow from your account page.
- Signed-in Macs: each Mac’s name (as set in System Settings), when it signed in and when it was last seen. You can sign any of them out from your account page.
- Sign-ins: for each browser and Mac that’s signed in, a sign-in token, of which we keep only a one-way hash.
Browser sign-ins end after 30 days without use, and Mac sign-ins after 90 days without use.
Cookies
- app.kubecrow.com sets one cookie that keeps you signed in (for 30 days, renewed while you use it) and, only while you sign in, one that protects the sign-in from forgery (10 minutes). It has no advertising or analytics cookies.
- kubecrow.com (this website) uses Google Analytics, which sets its own cookies (below).
This website
kubecrow.com uses Google Analytics to count visits: the pages viewed, roughly where visitors are, their device and browser, and how they found the site. Google handles this under Google’s privacy policy. You can block it with your browser’s privacy settings or a content blocker; the site works the same without it.
Where your data is kept
The accounts service runs on DigitalOcean, in Sydney, Australia, and stores accounts in a MongoDB Atlas database. Its web server logs each request (IP address, the page requested and your browser) for troubleshooting and abuse protection; the logs are overwritten as they fill up. This website is hosted on DigitalOcean.
Who we share it with
We don’t sell your data or share it for advertising. Only these services handle it, to run KubeCrow: DigitalOcean (hosting), MongoDB Atlas (the account database), Google and GitHub (signing in, only the one you choose), Google Analytics (this website), and GitHub (downloads and updates).
Deleting your account
Sign in at app.kubecrow.com/account and choose Delete account. Your name, email, photo, plan, download history and every sign-in, in browsers and on Macs, are removed from our database straight away. You can sign up again later.
Changes
If this policy changes, we’ll update this page and the date at the top.
Contact
For questions about this policy, open an issue on GitHub. Issues are public, so please don’t include personal details there. To delete your data, use your account page (above).