Legal
Privacy Policy
Last updated September 22, 2026
The short version
- Your grow data is yours. Other SporeDesk users can't see it.
- I run SporeDesk, and as the person operating the database I can technically access your data. I only do that to help you with a problem or to fix a bug.
- I don't sell your data, share it with advertisers, or show ads.
- You can ask me to delete your data at any time.
Who runs SporeDesk
SporeDesk is built and operated by Matthew Ahrens, an individual based in Tennessee, USA ("I," "me"). Questions or requests about your data go to support@sporedesk.com.
What I collect
When you apply for the beta
Your name, email address, confirmation that you're 18 or older, and your answers to the application questions (growing experience, setup, how you track your grows, how you heard about SporeDesk). If you arrived from a link with a tracking tag, I also record which link it was, so I know which posts and groups people come from.
When you create an account
Your email address and password. Passwords are stored in hashed form by the authentication provider, and I can't see them. You can also add a display name, a profile picture, and preferences such as units and date format.
What you put into the app
Everything you log: species, genetics, cultures and containers, notes, status changes, harvests, stock, equipment, suppliers, recipes and reference entries, and photos you upload. Photos taken on a phone can contain embedded information such as the date, device, and sometimes the location where they were taken, depending on your camera settings.
How you use the app
SporeDesk may record basic usage information to improve the app: which sections you open, which main actions you complete, which kind of device or app version you use, and errors that occur. This is about how the app is used, not a copy of what you log. It is recorded by SporeDesk itself and is not sent to outside analytics or advertising companies.
Feedback and support
Your answers to beta feedback check-ins, and anything you send to me by email.
Technical information
Like most websites, the services that host SporeDesk automatically log technical details such as IP address, browser type, and the time of each request, for security and reliability. The website loads its fonts from Google Fonts, which means Google receives your IP address when a page loads.
Cookies and browser storage
SporeDesk doesn't use advertising or tracking cookies. The app stores a sign-in session in your browser so you stay logged in, and remembers small things like which page you had open. The website remembers a link's tracking tag for the length of your visit so it can be attached to a beta application.
How I use it
- To run SporeDesk and provide its features to you.
- To review beta applications and contact the people I select.
- To send account emails, such as sign-up confirmation and password resets.
- To answer support requests and fix bugs.
- To understand which parts of the app are useful and improve them.
- To contact you about the beta and important changes to SporeDesk.
I won't send you marketing email unless you've agreed to it, and every marketing email will include a way to unsubscribe.
Who can see your data
- Other users: no. Each account's data is walled off from every other account.
- Me: I can access it because I operate the database. I only do so when you ask for help, to investigate a bug, or when legally required. I don't browse users' data.
- Service providers that store or process data on my behalf, only to run SporeDesk: Supabase (database, sign-in, and photo storage), Vercel (website and app hosting), and email providers used to send account email and handle support mail.
- Legal requests: I'll only disclose your data if legally required to, such as by a valid subpoena or court order. Where the law allows, I'll notify you first.
- If SporeDesk changes hands: if SporeDesk is ever sold or transferred, your data may be transferred as part of that, and this policy would continue to apply to it.
I don't sell your personal information.
Where it's stored and how it's protected
Your data is stored with cloud providers in the United States. Connections to SporeDesk are encrypted, and access to each account's data is restricted at the database level. No system is perfectly secure, and SporeDesk is beta software, so please keep your own copy of anything you can't afford to lose.
How long I keep it
- Your account and grow data: for as long as your account exists. When the beta ends, accounts carry over into the full release unless you ask me to delete yours.
- Beta applications: until the beta ends, including to invite people from the waitlist later. You can ask me to delete yours sooner.
- Backups and logs: deleted data can remain in routine backups and hosting logs for a limited time before those expire.
Your choices
You can ask me to:
- send you a copy of your data,
- correct something that's wrong,
- delete your account and everything in it, or
- stop sending you non-essential email.
Email support@sporedesk.com from the address on your account. I'll handle deletion requests within 30 days. Much of your data can also be edited or deleted directly in the app.
Age requirement
SporeDesk is only for people 18 and older. I don't knowingly collect information from anyone under 18. If I find out that I have, I'll delete it.
Changes to this policy
If I change this policy, I'll update the date at the top. If a change is significant, I'll let users know by email or in the app before it takes effect.
Contact
Questions about privacy: support@sporedesk.com.