Legal
Privacy Policy
Last updated: August 2026
NodeOps (“the app”) is a client for managing Docker, Podman, and Kubernetes on remote servers over SSH, and for connecting cloud Kubernetes clusters (GKE, EKS, AKS) via Direct API. This policy describes what data the app handles on your device.
Google user data
If you use Sign in with Google to import Google Kubernetes Engine (GKE) clusters, NodeOps uses Google OAuth to authenticate you and call Google Cloud APIs needed to list and connect to your GKE clusters.
- Access: basic Google account profile information and GKE cluster metadata for clusters you import.
- Use: only to sign you in and manage GKE clusters you choose to import.
- Storage: OAuth tokens are stored encrypted on your device only — not on NodeOps servers.
- Sharing: we do not sell or share Google user data with third parties.
When you choose Sign in with Google, NodeOps uses Google OAuth only to authenticate you and access Google Kubernetes Engine (GKE) APIs so you can list and import your own GKE clusters. NodeOps reads cluster metadata needed for import and stores OAuth tokens encrypted on your device. NodeOps does not sell Google user data, does not use Google data for advertising, and does not access Google data except to provide GKE import and management features you initiate.
Data we collect
We do not operate a backend that collects your personal data. The app connects directly from your device to servers and APIs you configure.
Data stored on your device
- Server profiles (hostnames, usernames, ports, labels)
- Credentials (passwords, SSH private keys, kubeconfig tokens, cloud OAuth refresh material) — stored using platform secure storage (e.g. Android Keystore / EncryptedSharedPreferences, iOS Keychain)
- App preferences (theme, favorites, namespace filters)
- SSH host key pins you accept when connecting
This data stays on your device unless you uninstall the app or use cleanup options in Settings.
Data transmitted over the network
When you use the app, it sends traffic only to servers and APIs you configure, including SSH sessions, Docker/Podman over SSH, Kubernetes APIs, and cloud provider APIs (Google, AWS, Microsoft) when you import clusters. We do not proxy, log, or store this traffic on NodeOps servers.
Data we do not collect
- No analytics SDK in the current release
- No advertising ID usage
- No sale or sharing of personal data with third parties
- No NodeOps account registration required
Permissions
- Internet — connect to your remote servers and cloud APIs
- Network state — detect connectivity
Security
Credentials are encrypted at rest. We recommend:
- Using SSH keys instead of passwords when possible
- Verifying host keys when prompted
- Keeping your device OS and the app updated
- Limiting cloud IAM roles to least privilege
Children
The app is intended for developers and IT professionals. It is not directed at children under 13.
Changes
We may update this policy. The in-app and store listing links will point to the latest version on this website.
Contact
Questions: [email protected]