Privacy Policy
Last updated: September 14, 2026
This policy explains what Dreamercollects when you use the hosted service at dreamer.samanp.xyz, why we collect it, and how you can get it removed. It doesn't apply to instances you self-host — if you run Dreamer on your own infrastructure, you control that data entirely.
What we collect
- Account information — your name, email address, and a hashed password (if you sign up with email), or your GitHub account ID, username, and public profile info (if you sign up with GitHub).
- Repository access — when you connect a GitHub repo to deploy, we store the repo reference and request the minimum GitHub permissions needed to clone it and receive push webhooks. We do not read repos you haven't connected.
- Project configuration — build settings, domain names, and environment variables you enter for your projects. Environment variables are encrypted at rest (AES-256-GCM) and only decrypted at container startup.
- Deployment and build logs — output from your build and deploy process, stored so you can view deployment history and debug failures.
- Technical data — IP address and basic request metadata, collected automatically for security and abuse prevention.
What we don't collect
We don't sell your data, share it with advertisers, or use it to train models. We don't track you across other sites.
Cookies
Dreameruses one cookie: a refresh token that keeps you signed in. It's strictly necessary for the service to function and isn't used for tracking or analytics. If we add analytics or other non-essential cookies in the future, this policy — and a consent banner — will be updated accordingly.
Third parties
Hosted deployments run on AWS (ECS Fargate) infrastructure. GitHub is used for authentication and repository access when you choose to connect it. Neither receives more data than is necessary to provide the service.
Data retention and deletion
We keep your account data for as long as your account is active. If you delete a project, its deployment logs and environment variables are deleted along with it. To request full account deletion, email us — see Contact below.
Children's privacy
Dreameris not directed at children under 13, and we don't knowingly collect data from them.
Changes to this policy
If this policy changes materially, we'll update the date at the top of this page. Continued use of the service after a change means you accept the updated policy.
Contact
Questions, data requests, or deletion requests — reach us at dreamer@samanp.xyz.