Account and operational data
Harbor stores your username, hashed account password, account identifier, role, and creation time. Sign-in creates a server-side session record with a hashed token and expiration. Login throttling stores a hashed username key, attempt count, and expiration. Account passwords are verified using bcrypt; they are not stored as plaintext.
For hosting, Harbor stores instance ownership, app selection, subdomain, internal address, VM identifier, status, provisioning progress, timestamps, and durable job records and operational logs. Generated instance administrator credentials are encrypted at rest and can be decrypted by the hosting service to provide access; this is not end-to-end encryption. Infrastructure administrators can access the hosting systems and app data.
Billing and support
When paid billing is enabled, Stripe handles checkout, payment details, invoices, and its customer portal. Harbor stores Stripe customer, subscription, and checkout-session identifiers; the selected plan and subscription state; billing-period information; and the version and time of terms acceptance. It also stores webhook identifiers, event types, and processing timestamps for reconciliation, and administrative entitlement assignment records. Full Stripe webhook payloads and card numbers are not stored by the Harbor billing integration.
Information you submit to support, including your contact address, messages, and billing references, is handled to answer requests. Do not send passwords, full card numbers, or unnecessary sensitive information. Stripe may collect identity, billing address, payment, device, and fraud-prevention information directly under its privacy policy.
Browser storage and technical requests
The essential paas_session cookie keeps you signed in and expires after 24 hours; signing out expires it sooner. Harbor stores your dismissal of the essential-storage notice in browser local storage. No optional advertising or analytics trackers are installed by Harbor. See cookie details and controls.
Requests necessarily expose connection information such as an IP address to the server and network providers. Reverse proxies, the hosting platform, and app services may produce security and access logs according to their configuration. The Harbor login limiter itself is keyed to a hashed username, not an IP profile. Resource usage displayed in the workspace is infrastructure telemetry, not advertising analytics.
Purposes and recipients
Data is used to authenticate accounts, deploy and operate instances, show service status, process billing, prevent abuse, resolve support requests, and meet applicable legal obligations. Access is limited operationally to people and providers who need it for these purposes. Providers may include infrastructure, networking, payment, and support-email services; lawful disclosures may also be made when required by law or reasonably necessary to protect safety and security. Harbor does not sell personal information or share it for cross-context behavioral advertising.
Apps you configure may send searches, metadata, credentials, and other information to external providers you choose. Their behavior and policies are separate from the dashboard. Check the hosted app and each connected provider before entering personal information. Do not assume your data remains in the US: provider locations and cross-border processing depend on the actual deployment and provider arrangements.
Retention and deletion
Harbor does not currently implement a universal automatic retention or account-deletion schedule. Account, instance, billing, job, and support records may remain until an operator removes them, subject to operational and legal needs. Expired sessions no longer authorize access; that does not mean every expired database record is immediately erased. Notice-dismissal storage remains until you clear it. Backup copies, infrastructure logs, and Stripe records have separate lifecycles.
Contact the privacy address below to request access, correction, deletion, or details about retention and providers. Requests require proportionate identity verification; applicable exceptions may require retaining transaction, security, or legal records. Canceling a subscription does not delete an account, a container, or its data. No unsupported fixed deletion deadline is promised.
Your rights and security
Depending on your location and applicable law, you may have rights to access, correct, delete, or obtain a copy of personal information, or to appeal a decision on a request. Contact the privacy address to exercise applicable rights or ask about an appeal. Harbor will not discriminate against you for exercising a legally protected privacy right. The availability of a particular state-law right depends on that law and its applicability; this notice does not claim certification under every privacy law.
The service is for adults, not children under 13, and is not intended to collect children’s information. Contact us if you believe a child has provided information. Authentication, access controls, and encryption reduce risk but cannot guarantee security. Do not use the service to hold regulated sensitive data.
Changes
Material changes to data practices will be reflected in this notice and communicated as required by applicable law. The version above identifies this text; contact the operator with questions about current practices.