‹ Back

Privacy Policy

Last updated: 16 August 2026

Who we are

RetroReel ("we") runs the retrospective service at retroreel.dev. For any privacy question or to exercise your rights, contact contact@retroreel.dev.

What we store

  • Account: your email, name, a hashed password (argon2 — never the plaintext), an email-verified flag, and timestamps.
  • Retros you own: titles, themes, configuration, cards, votes, action items, and groups.
  • Participation: a display name and role when you join a retro — you may join as a guest with no account.
  • Integrations: if you connect Jira or Azure, the credentials are encrypted at rest.

Who processes your data

  • Railway — hosting and our managed Postgres database.
  • Resend — transactional email: password reset, email verification, and retention warnings.

We do not sell your data, and we use no advertising or analytics trackers.

Telemetry

We count product events so we can tell whether the service is healthy: room creations, participant joins, phase advances, reconnects, and failed actions. Each row records an event type, a timestamp, a count, and — where relevant — a phase name or an error code drawn from a closed list, never free text. A row cannot carry a name, a participant id, or card content. Rows can be linked to the retro they came from, but that link disappears automatically when the retro is deleted, and the counts themselves remain.

Legal basis & retention

We process your data to provide the service you asked for (contract) and to keep it secure (legitimate interest). A retro is deleted once it has sat untouched for at least 12 months — opening it counts as activity and resets the clock, not just editing it. Before deletion we email the owner a warning with a link to export the retro, and we never delete less than 30 days after that email. Retros with no owner cannot be warned, so they are deleted on the 12-month mark alone. Email verification and reset tokens expire automatically.

Your rights

You can access, correct, and erase your data. Deleting your account from Settings permanently removes your account and every retro you own. When you join a retro owned by someone else, you take part as a guest under the display name you enter — it is not linked to your account — so deleting your account does not automatically remove those guest contributions or that name from another owner's retro. Email us to request their removal. For any other request, email contact@retroreel.dev.

Cookies

RetroReel sets exactly one cookie, auth_session. It is strictly necessary: it keeps you logged in. It is HttpOnly, SameSite=Lax, and used only for authentication. We set no analytics, advertising, or third-party cookies, so there is no consent banner to click.

Privacy · Terms · © RetroReel