Privacy Policy
Last updated October 1, 2026
This policy explains what Diamarks stores, why, who helps us run the service, and the choices you have. Questions: support@diamarks.com.
Information we collect
Account details: your name, email address, optional profile image, and the sign-in methods you connect.
Your content: workspaces, boards, cards, checklists, due dates and settings you create in the app.
Security records: active sessions (device type, browser, approximate location) and rate-limit counters used to stop abuse.
Usage statistics: anonymous page-view and page-speed statistics from Cloudflare Web Analytics, and technical error reports (error message, page path, browser type). These do not use cookies and do not identify you.
How we use it
To sign you in, store and sync your workspace across devices, send account emails (verification, password reset, email change), keep the service secure, and fix problems. We do not sell your data and do not use it for advertising.
Passwords and sign-in
Passwords are stored only as one-way salted hashes. If you sign in with Google, Apple or Microsoft, we receive your name and email address from that provider; provider secrets stay on our servers.
Cookies
Diamarks uses only cookies that are needed to run the service: a session cookie that keeps you signed in and a security (CSRF) cookie that protects forms. We do not use advertising or tracking cookies.
Service providers
We use a small number of providers to run Diamarks:
- Cloudflare — hosting, database, security and anonymous web analytics.
- Resend — delivery of account emails.
- Google, Apple, Microsoft — only if you choose to sign in with them.
- Payment provider — when paid plans launch, payments are processed by our payment provider; we never see or store your full card number.
These providers may process data in countries other than your own, under their own security and privacy commitments.
Retention
Your content is kept while your account is active. Items you delete go to the Recycle Bin first so they can be restored. Expired sessions and security tokens are removed automatically. When you delete your account, your profile, sessions, sign-in methods and workspace are removed.
Your choices and rights
- Download your data: Settings → Privacy & account → Download export (JSON).
- Delete your account: Settings → Privacy & account → Delete account.
- Correct your details: Settings → Profile.
You can also email support@diamarks.com to ask for access, correction or deletion. We reply within 30 days.
Children
Diamarks is not intended for children under 13 (or the minimum age in your country), and we do not knowingly collect their data.
Changes
If we make important changes to this policy, we will update the date above and, where appropriate, tell you by email or in the app.