Privacy
Last updated 2026-10-10. This page is written from the relay's source and schema; if they disagree, the code is wrong and we fix the code.
The short version
EventBar stores what it needs to count your events and show them to your devices: your email, your configuration, the counts, and, on paid plans, a short buffer of rendered events for devices that were offline. It does not store IP addresses or user agents, does not run analytics inside the apps, and never sells or shares anything.
What is stored, per account
- Account: email address, creation time, plan, and (if you subscribed) your Polar customer and subscription ids.
- Devices: a name you can edit, the kind (Mac, phone, browser), creation and last-seen times. Sign-in tokens are stored as SHA-256 hashes.
- Sign-in codes: the email entered, a hash of the code, timestamps and an attempt count. A code lasts ten minutes; its row is deleted when used and purged within two hours either way.
- Configuration: group names, event type names and templates, API key labels and prefixes. Keys themselves are stored as SHA-256 hashes; the full key is shown once.
- Counts: per event type, per minute for 25 hours and per UTC day for 400 days, plus an all-time total with first and last times. Per account, a count per calendar month for the quota.
- Buffered events (paid plans): the rendered title and body, up to 2 KB of the fields you posted, the event's time and arrival time. Kept for the plan's buffer window (10 or 30 days, 250 or 1,000 events) so a Mac that was asleep can catch up, then deleted. The Free plan stores no events at all.
- Idempotency keys you send, for 24 hours.
- Billing webhook ids from Polar, so a redelivered webhook is applied once.
What is never stored
IP addresses, user agents, request logs with content, the raw request body beyond the 2 KB of fields above, or anything about who views the dashboard. Worker observability and request logging are off.
Who sees it
- Cloudflare runs the relay (Workers, D1, Durable Objects). Data lives in Cloudflare's network.
- Resend sends the sign-in code email to the address you entered.
- Polar handles payment. We never see your card; Polar sends us your plan and a customer id.
Nobody else. No analytics or crash reporting inside the Mac app or the dashboard. The marketing pages on this site use no analytics either.
On your Mac
The app keeps your sign-in token and device id in the Keychain and your notification choices (which types notify, snooze) in its preferences. It talks only to geteventbar.com.
Deleting
"Delete account" in the dashboard or the app removes the account, devices, tokens, configuration, counts and buffered events immediately. Polar keeps the invoices it is legally required to keep.