Gatherjar › Privacy

Privacy Policy — Gatherjar

Last updated: 7 October 2026

This policy explains what happens to data when you use Gatherjar (the “App”), the event planning website published by Cronomz — “we”, “us”.

Contact: cronomzstudio@gmail.com

Gatherjar keeps what you put into an event (its details, the guests’ names and answers) so everyone with the event link sees the same plan. There are no accounts, no ads and no analytics. We never sell or share your data. Venue search and maps come from Google, and the App runs on Cloudflare.

1. The short version

Do I need an account?No. Hosts and guests are recognised by a secret link and a cookie on their device. Anyone can choose to sign in with Google so their events follow them to any device (section 2a). It is never required.
Who can see my event?Anyone who has the event link. Treat the link like a group chat invite: share it only with people you want there.
What do guests have to give?A name, typed or tapped from the host’s list of who’s invited. A phone number is optional and only the host sees it.
Do you run ads, analytics or tracking?No. There is no advertising, analytics or tracking code in the App.
Do you sell my data?No. We never sell, rent or share personal data.
How do I delete things?Hosts can delete the whole event, and guests can remove themselves, right in the App (section 7).

2. What we store about an event

When you create or answer an event, our database (Cloudflare D1, see section 6) stores:

2a. If you sign in with Google

Signing in is optional, for hosts and guests. If you choose Sign in, Google asks you to share your basic profile with Gatherjar, and we store:

We use the email address only to show which account is signed in, and other people never see it: in an event you appear with the name you typed there. We only email you if you turn on reminder emails (section 2c), and we don’t receive your Google password, contacts or anything else from your Google account. Google handles the sign-in under the Google Privacy Policy.

Deleting your account: tap your initials at the top of your events → Delete account. The account and its sessions are deleted straight away. Your events stay and keep working with their host links; delete them separately if you want them gone.

2b. Guests the host removed

When a host removes a guest and chooses to stop them joining again, we keep a scrambled (hashed) form of that guest’s link for the event, so their browser can’t rejoin it, and, if they were signed in, a note of their account so it can’t rejoin either. Both are deleted with the event.

2c. Reminders

Reminders are optional. They are sent the day before an event, when a vote is about to close, when someone hasn’t answered yet, and when bring-list items are still unclaimed, never at night in the event’s time zone. Each reminder is sent once.

To avoid sending a reminder twice, we keep a note of which reminders went out for each event. It is deleted with the event.

2d. The money jar

If the host collects money for an event, Gatherjar never holds or moves the money: guests pay the host or treasurer directly, through their own bank or e-wallet, and Gatherjar only keeps track. We store:

Images are stored in Cloudflare R2 (see section 6) and served only through Gatherjar, which checks who is asking. Screenshots and receipts are deleted automatically 90 days after the event (the payment records stay, without the image). When a guest removes themselves or is removed, payments nobody confirmed (and their screenshots) are deleted; confirmed and refunded payments stay in the host’s records under the guest’s name, so the jar keeps matching the money the host actually holds and a refund can be recorded; deleting the money jar or the event deletes all of its payments, report, images and QR code.

3. Who can see what

4. Cookies and storage on your device

NameWhat it’s for
Host cookie (gj_h_…)Remembers that you are the host of an event on this device. Lasts one year.
Guest cookie (gj_g_…)Remembers which guest you are in an event, so you can change your answers. Lasts one year. “Not you?” removes it (and, if you choose, deletes what was saved under that name).
Sign-in cookie (gj_s)Only if you sign in with Google: keeps you signed in on this browser. Lasts 60 days and is renewed while they use Gatherjar. “Sign out” removes it.
Sign-in check (gj_oauth)Only while signing in: protects the trip to Google and back. Lasts 10 minutes.
Language cookie (lang)Remembers English or Indonesian if you choose one. Lasts one year.
Browser storageThe name you used as a host (to fill it in next time), the last area you searched for venues, and which events you turned phone reminders on for. These never leave your device.

These are all needed for the App to work. There are no advertising or tracking cookies.

5. Venue search, maps and your location

For the map card and fonts your browser connects to Google directly, so Google receives your IP address and may use cookies, under the Google Privacy Policy. Place information is shown under the Google Maps Terms.

Daily search limit. To keep venue search free, each device can search, and open place details, a limited number of times a day. To count this, we store a daily counter next to a scrambled (hashed) form of your IP address. Counters from earlier days are deleted, so it is kept for one day at most.

6. Hosting and other services

7. How long we keep it, and deleting it

Events and their guest answers are kept so the link keeps working, until they are deleted:

Deleted events are removed from the database straight away. Cloudflare may keep backups of the database for a limited time (up to 30 days) before they expire.

8. What we do not do

9. Your rights

You have the right to access, correct, delete and object to the processing of your personal data. Guests can change their name, phone number and answers in the event at any time. For anything else, write to us. If you believe your data has been handled unlawfully, you may complain to your local data protection authority.

10. Children

Gatherjar is not directed to children under 13, and we do not knowingly collect personal data from children.

11. Changes to this policy

If Gatherjar starts handling data differently, for example by adding accounts or paid features, this policy is updated before that change goes live, and the “Last updated” date above changes with it.

12. Contact

Cronomz
Email: cronomzstudio@gmail.com