$fastcrud

~privacy policy

Last updated: May 20, 2026

This Privacy Policy explains how Wood Game Studio Kft. (“FastCRUD”, “we”, “us”, “our”), a limited liability company registered in Hungary (company registration number 01-09-418789, EU VAT number HU32335648) with its registered seat at 1108 Budapest, Sibrik Miklós út 79. Fsz. 108., Hungary, collects, uses, shares, and protects information when you use our cloud service at fastcrud.dev and dashboard.fastcrud.dev (the “Service”). For the purposes of the EU General Data Protection Regulation, Wood Game Studio Kft. is the data controller for personal information processed under this policy.

# 1. information we collect

Account information

When you create an account we collect your email address, username, and a hashed password. You may optionally provide billing information (handled by Stripe — see below).

Database connection details

To provide the Service, you provide credentials for the databases you wish to expose via API (host, port, database name, username, password, or connection URI). These are encrypted at rest using AES-256-GCM with keys managed by AWS KMS and stored in AWS Secrets Manager.

Usage data

We log API requests made through the Service for billing, rate-limiting, debugging, and abuse prevention. Logs include timestamp, project ID, request path, response time, and originating IP address. Logs are retained for up to 90 days.

Payment information

Payment card data is collected and stored directly by Stripe, Inc., our payment processor. We do not receive or store full card numbers. We receive a Stripe customer ID, a payment-method fingerprint, and transaction metadata.

Cookies

We use a single session cookie to keep you signed in to the dashboard. We do not use third-party advertising cookies or cross-site tracking.

# 2. how we use information

  • +Provide, operate, and secure the Service.
  • +Process subscriptions and payments.
  • +Communicate with you about your account, security alerts, and service updates.
  • +Detect and prevent fraud, abuse, and unauthorized access.
  • +Comply with legal obligations.

We do not sell your personal information, share it with advertisers, or use your Customer Data to train machine-learning models.

# 3. subprocessors

We rely on the following third-party processors to deliver the Service. Each is bound by written agreements that require them to protect your data.

ProviderPurpose
Stripe, Inc.Payment processing and subscription billing
Billingo Zrt.Issuing and delivering tax-compliant invoices
Amazon Web ServicesHosting, secrets management, transactional email
Cloudflare, Inc.Content delivery, DDoS protection, bot mitigation

# 4. data retention

  • +Account information: retained while your account is active and for up to 90 days after deletion.
  • +API request logs: up to 90 days.
  • +Billing records: retained for up to 7 years to comply with tax and accounting obligations.
  • +Database connection credentials: deleted immediately when you remove a connection or delete your account.

# 5. your rights

Depending on where you live (for example, the EU/UK under GDPR, or California under the CCPA), you may have the right to:

  • +Access the personal information we hold about you.
  • +Correct inaccurate information.
  • +Delete your account and associated personal information.
  • +Export a copy of your data in a portable format.
  • +Object to, or request restriction of, certain processing.

To exercise any of these rights, email [email protected]. We will respond within 30 days.

# 6. security

We use industry-standard measures to protect your information, including TLS in transit, AES-256-GCM at rest for sensitive credentials (via AWS KMS), access controls, and logging. No internet-based service is 100% secure; if you believe your account has been compromised, please contact us immediately.

# 7. international transfers

The Service is operated from data centres in the European Union. If you access the Service from elsewhere, your information may be transferred across borders. Where required, we rely on Standard Contractual Clauses or other approved mechanisms to lawfully transfer personal data.

# 8. children

The Service is not directed to children under 18 and we do not knowingly collect information from them. If you believe a child has provided personal information to us, please contact us so we can delete it.

# 9. changes to this policy

We may update this policy from time to time. Material changes will be announced by email or via the dashboard at least 14 days before they take effect.

# 10. contact

Privacy questions or requests: [email protected]
General support: [email protected]

Data controller: Wood Game Studio Kft.

1108 Budapest, Sibrik Miklós út 79. Fsz. 108., Hungary

Company reg. no.: 01-09-418789

EU VAT no.: HU32335648