Privacy policy

Effective 25 August 2026

The short version

Copper CMS collects what it needs to run a publishing platform and nothing more. There is no advertising, no tracking across other websites, and your content is never sold or used to train anything.

What we collect

Account details. An email address, a name if one is given, and a hashed password. These identify you and let you sign in.

Workspace content. The posts, images and settings you create, together with the content that arrives from any partner feed you connect. This is yours; we hold it to run the service.

Usage counts. How many posts were ingested, how many API reads were served and how much storage is in use, so plan limits can be counted and billed.

Technical logs. Ordinary server logs โ€” request paths, timings, error details and IP addresses โ€” kept to keep the service working and secure.

We do not collect payment card details. Those go straight to Stripe and never reach our servers.

Why we hold it

Where it lives

Copper CMS is hosted in Europe. Data is separated by workspace at the database level, so one customer's content cannot be read from another's account.

DatabaseSupabase, Frankfurt (eu-central-1)
Application serversHetzner, Falkenstein, Germany
Images and backupsCloudflare R2
PaymentsStripe

Who else sees it

Only the providers above, each doing one job in running the service, and only what that job needs. We do not sell personal data or share it for advertising. We may disclose information where the law requires it.

How long we keep it

Account and workspace data is kept while the account is open. After it closes, content is removed from the live service, and copies in backups age out within thirty days. Logs are kept for a short period. Invoices are kept as long as tax law requires.

Your rights

You can ask for a copy of the personal data we hold about you, ask us to correct it, or ask us to delete it. Write to support@coppercms.com and we will respond within thirty days. If you are in the UK or the EU, you may also complain to your data protection authority.

Cookies

The console sets a cookie to keep you signed in and one to remember which workspace you are in. There are no advertising or analytics cookies.

Changes

This policy will change as the product does. Material changes will be announced before they take effect.

Contact

Questions about privacy: support@coppercms.com.