Privacy and your data
The limit checker asks for no Claude credentials. The personal text you paste or type is processed in your browser; a public event or service-status request contains no usage snapshot. Browser reminders, when enabled, are a separate opt-in that sends the limited fields shown below.
Data, destination and retention
| Data | Where it goes | Retention or control |
|---|---|---|
| Pasted Usage, Code text, statusline JSON or diagnostic error text | Only this tab while being read. Raw text is not sent to our Worker or saved in the site's IndexedDB export. | Clear the field or close the tab; a normalized result is a separate record. |
| Normalized windows and offer records you actively save | IndexedDB on this browser/device; if IndexedDB fails, this tab uses memory only and does not say Saved. | Current record and at most 10 history entries; records older than 30 days are dropped on the next open. Export is an explicit local download. |
| Interface preference | Browser localStorage on this device. | Until local site data is cleared; it contains no usage text. |
| Anonymous device token and Push subscription, only if you enable browser reminders | The device keeps its random token. D1 stores its hash and an application-encrypted Push subscription; no Claude account identifier or raw token is stored there. | An unused registration is cleaned after 24 hours; otherwise inactive devices after 90 days. Active deletion removes the device and linked reminders/deliveries. |
| Reminder kind, check/notify time, time zone and state, only if enabled | D1 for this device's scheduled delivery. The Push payload uses a generic kind, delivery ID and site link, not your Usage text. | Completed or cancelled reminders are cleaned after 30 days; delivery rows after 7 days. Idempotency receipts last 24 hours and rate buckets at most 2 hours. |
| Deletion retry receipt, only after a cloud device is deleted | D1 keeps an irreversible random token hash, not the endpoint or subscription. | 24 hours, so a repeated DELETE can answer consistently. |
| Optional anonymous task metrics, only after separate consent | Task/route/error enums and a short-lived HMAC cohort, never input, usage or a Claude identifier. | Off by default; aggregate rows are kept at most 30 days. Turn it on or off below (Optional anonymous task metrics). |
| Public event and service-status reads | Published R2 data and CDN; these records contain public facts, not personal inputs. | Cloudflare may process request and security logs separately. This account's exact CDN/security-log retention and access configuration have not yet been verified. |
Deletion and recovery limits
Deleting an active cloud device is designed to remove its live device, reminder and delivery rows immediately. It cannot promise immediate erasure from managed database history. Cloudflare D1 Time Travel can retain recoverable history for 7 days on Workers Free or 30 days on Workers Paid; the actual plan and settings must be checked before production release. Restored historical reminders must require reconfirmation before any send.
Clearing browser data does not delete a cloud device by itself. Without the anonymous device token, the site cannot identify and delete that device's server rows. This site does not control or erase data in your Claude account. Export and deletion are in the next section.
Export and delete
Checking what this browser keeps…
Export local data
Delete cloud reminders for this device
This removes every cloud reminder of this browser. It cannot be undone.
Clear local data
This browser still has cloud reminders set up. If you clear local data first, they keep running until they expire and this browser can no longer delete them.