Legal

Privacy policy

Last updated September 17, 2026

The short version

We store the account and site details you give us so Crumbr can run: drafts, publishing, and signup attribution. We do not sell that data. We do not put a tracking cookie on the blogs we host.

This policy covers crumbr.co, the waitlist, the app, and the blogs we host for you. It is written for two groups of people: founders using Crumbr, and readers of those blogs. Email hello@crumbr.co if you want a copy of what we have, or want it deleted.

If you use Crumbr

We collect what we need to run your account:

  • Name, email, password (stored hashed), timezone, and the workspace you last opened.
  • If you continue with Google: the name, email, and account id Google shares for that login.
  • The site URL you paste, pages we crawl from it, and the voice, topics, drafts, and posts in the workspace.
  • Branding you upload, the hostname you connect, and DNS checks against that hostname.
  • Billing details through Stripe: customer id, plan, invoices. We do not store a full card number.
  • Notification preferences per workspace, and which onboarding screens you have already seen.
  • API keys you create so your product can send us signup events.
  • Search Console data, if you connect it: queries, impressions, clicks, and position for the property you pick.

Onboarding starts before you have an account. That session lives behind a signed cookie in your browser. We store a hash of the token, not the token itself, plus the URL you asked us to read.

If you join the waitlist

We ask for a name and an email, and nothing else. We keep that pair so we can invite you, and we send a confirmation and later an invite to that address. While the waitlist is on, those rows also live in Notion, which is how we mark an invite as ready.

If you read a blog we host

Those pages are public. They do not set a Crumbr session cookie. If your browser sends Do Not Track, the analytics script does not run.

When it does run, we store a daily salted hash of IP address and user agent, plus path, referrer, scroll, time on the post, and which links were clicked. The salt rotates every day, so the hash is not a lasting profile. We do not fingerprint devices.

A click-through token is added only to links that stay on the founder's own domain, so a signup there can be tied back to the post. We do not append that token to outbound links.

If the founder sends us a signup event, we may store a hashed identity long enough to attribute it. After that window we drop who it was and keep the count. The Performance screen never needs a name.

Cookies on crumbr.co

The app uses a session cookie so you stay signed in, and an optional remember-me cookie. Onboarding uses the signed cookie described above. Customer blogs do not get these.

We may use product analytics on crumbr.co (for example PostHog) to see which screens help founders finish setup. That is for the product, not for ads.

How we use this

We use the data to:

  • Create the account, run the workspace, and send the mail you asked for.
  • Write drafts, publish what you approve, and keep the blog on your domain.
  • Measure posts, attribute signups, and produce learnings for later drafts.
  • Bill you, warn you when a trial is ending, and process cancellations.
  • Keep the service secure and debug when it breaks.

Workspace-related mail (a draft is ready, a post went live, learnings arrived) can be turned off per blog in workspace settings. Account mail such as a trial warning still sends. Every one of those emails includes a way to unsubscribe.

Who we share it with

We do not sell your data. We share it with companies that run a piece of Crumbr, and only for that piece:

  • Stripe, for payment and plan management.
  • Our email provider, for transactional mail.
  • Model providers, for the text of drafts. We send them the context a draft needs, not your password or your readers' identities.
  • Keyword data providers, for topic research.
  • Laravel Cloud, for hosting and custom hostnames.
  • Google, if you sign in with Google or connect Search Console.
  • Notion, for the waitlist.
  • Our host and file storage, so the app and your branding assets stay up.

We may also share data if the law requires it, or if we have to protect Crumbr or another customer.

How long we keep it

Account, workspace, and published posts stay for as long as the account does. You can export posts at any time. Email hello@crumbr.co to delete the account. We will drop what we no longer need to keep a published blog reachable or to finish billing.

Waitlist rows stay until you ask us to remove them, or until they have served their purpose. Conversion identities are dropped after the attribution window. Daily visitor hashes have no life past that day.

Your choices

  • Correct the name, email, and timezone from the account page.
  • Disconnect Search Console, rotate or drop API keys, and change the blog hostname from workspace settings.
  • Turn off workspace notification mail, or unsubscribe from a single email.
  • Export posts as Markdown. Ask us to delete the rest.

If you are in a place that grants access, correction, or deletion rights, email us and we will honour them. We may need to confirm it is your account.

Other notes

Crumbr is not directed at children under 18. Do not create an account for one.

We process data in the United States and wherever our providers run. Using Crumbr means you are comfortable with that.

The Terms of use cover the product itself. We will change this policy when the product changes. The date at the top is the current version.

Questions: hello@crumbr.co.