Privacy Policy
This policy explains what data Edgeboard for Cloudflare® (“Edgeboard” or “the app”) and this website handle. Edgeboard is an independent app made by an individual developer (“we” or “us”).
In short
- Your Cloudflare credentials stay on your devices. They are never sent to us.
- Edgeboard has no backend server of its own. The app gets your usage and billing data directly from the Cloudflare API.
- Crash reports go to Sentry, stored in the EU, with identifiers removed. They are not linked to you and are not used for tracking.
- No ads, no tracking, no analytics.
Your Cloudflare credentials
- API tokens are stored in the iOS Keychain as iCloud Keychain items. If iCloud Keychain is turned on, they are available on your other devices signed in to the same Apple Account.
- OAuth credentials (when you sign in with Cloudflare) are stored only in the Keychain of the device where you signed in. They are never synced, which is why you sign in separately on each device.
- Credentials are used only to call the Cloudflare API. They are never sent to us or to anyone else, and they are never included in crash reports.
- Edgeboard never asks for your Global API Key. It only needs read-only permissions.
- When you remove a credential in the app, it is deleted from the Keychain. We recommend also revoking it on Cloudflare; see Support.
Usage and billing data
The app requests your Workers, R2, and D1 usage analytics (including the names of your Workers, R2 buckets, and D1 databases, used to break usage down by resource) — and, if your credential allows it, billing and subscription information — directly from the Cloudflare API over HTTPS. Because Edgeboard has no server of its own, this data never passes through us.
The data is processed on your device to calculate amounts, estimates, and alerts. The latest snapshot for each account is saved on your device so the app opens instantly and works offline. Edgeboard is read-only: it never changes anything in your Cloudflare account.
Cloudflare handles your API requests and your sign-in under its own privacy policy.
Settings sync
Settings such as monthly budgets, alert thresholds, and manually selected plans are stored in iCloud key-value storage, an Apple service, so they stay in sync across your devices signed in to the same Apple Account. We cannot access this data. Apple’s privacy policy applies.
Notifications
Budget and daily-limit alerts are local notifications that the app creates on your device, for example after a background refresh. Edgeboard does not use a push notification server, and we never receive your alerts.
Pricing file
To keep cost estimates up to date, the app downloads a public pricing file from https://edgeboard.iio.tw/pricing.json. The request contains none of your data: no credentials, no account information, no identifiers, and no custom headers or query parameters. As with any web request, your IP address and standard request information (such as the user agent) reach the website’s hosting provider; see This website.
Crash reports and diagnostics
We use Sentry to receive crash reports and non-fatal error reports (for example, when a Cloudflare API response cannot be read), so we can find and fix problems. Our Sentry data is stored in Sentry’s EU data region.
Reports may contain:
- Crash data: stack traces and details of the crash.
- Performance data: reports of the app becoming unresponsive (app hangs), including how long it was unresponsive.
- Other diagnostic data: device model, iOS version, app version, language, region, and time zone settings, recent app events (such as which screen was open, without the text shown on it), and sanitized error details.
How reports are sanitized:
- The app does not attach your IP address or a user ID, and our Sentry project is set not to store IP addresses or the location derived from them.
- Before a report leaves your device, 32-character hexadecimal identifiers, such as Cloudflare account IDs and zone IDs, are masked in URLs, error messages, and other metadata.
- API tokens and authentication headers are never included. Automatic recording of network requests and automatic reporting of failed network requests are turned off.
Crash reports are not linked to your identity and are not used for tracking.
If you have chosen in iOS Settings to share analytics with app developers, Apple may also provide us with crash logs and diagnostics under Apple’s terms.
What we don’t do
- No advertising and no advertising identifier.
- No tracking across other companies’ apps or websites.
- No analytics or marketing SDKs.
- No selling or sharing of your data.
- No accounts with us: Edgeboard never asks you to sign up.
This website
edgeboard.iio.tw is hosted on Cloudflare Pages. We have not enabled any website analytics, and the site uses no cookies, no scripts, and no externally loaded resources. As the hosting provider, Cloudflare processes connection information, such as your IP address and request details, to deliver and secure the site, under the Cloudflare Privacy Policy.
The /oauth/callback page used during sign-in does not read, store, or display the information in its address.
Your choices
- You can remove credentials in the app at any time. To remove them for good, remove them in the app before deleting it, then revoke them on Cloudflare (see Support).
- You can manage your iCloud data in iOS Settings.
- Crash reports are kept for a limited time under Sentry’s data retention. Because they are not linked to you, we usually cannot find the reports of a specific person, but you are welcome to contact us with any questions.
Changes to this policy
If this policy changes, we will update this page and the “Last updated” date above.
Contact
Questions about privacy: support@edgeboard.iio.tw