JavaGrove ("we," "us") provides Java application hosting through our website and dashboard. This Policy describes how we collect, use, and protect personal information belonging to our customers, prospective customers, and visitors to our site, and applies alongside our Terms of Service.
This Policy does not cover data you choose to process through your own hosted applications about your own end users — see Section 7 for how that's handled.
JavaGrove is the data controller for the personal information described in this Policy, meaning we determine why and how it's processed. Questions or requests relating to this Policy can be directed to hello@javagrove.net.
We collect information in the following ways:
We use the information described above to:
Where the GDPR or a similar law applies, we rely on the following legal bases: performance of our contract with you (providing the Services you signed up for), our legitimate interests (such as securing our infrastructure and preventing abuse), your consent (such as for optional marketing emails), and compliance with legal obligations (such as tax and accounting records).
If you deploy an application to JavaGrove that collects personal data about your own users or visitors, JavaGrove acts only as a data processor (or service provider) with respect to that data — you remain the data controller. You are responsible for having a lawful basis to collect that data, providing your own privacy notices, and honoring any data subject requests from your users. We process this data only to provide hosting infrastructure, and do not access or use it for our own purposes except as necessary to operate, secure, or support the Services.
Where personal information is transferred across borders — for example, to a service provider located outside your country — we take steps to ensure it remains protected, including relying on standard contractual clauses or equivalent safeguards recognized under applicable data protection law.
We retain account and billing information for as long as your account is active, and for a reasonable period afterward to comply with legal, tax, and accounting obligations, or to resolve disputes. Technical logs are generally retained for a limited period sufficient for security and troubleshooting purposes, then deleted or anonymized.
We use technical and organizational safeguards — including encryption in transit, access controls, and network isolation between customer containers — designed to protect personal information against unauthorized access, loss, or misuse. No system is completely secure, and we encourage you to use a strong, unique password and enable any available account security features.
Depending on your location, you may have rights to access, correct, delete, or export your personal information, to restrict or object to certain processing, and to withdraw consent where processing is based on consent. To exercise any of these rights, contact us at hello@javagrove.net; we will respond within the timeframe required by applicable law.
If you believe we haven't addressed your concern, you may have the right to lodge a complaint with your local data protection authority.
The Services are not directed to individuals under 18, and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.
We may update this Policy from time to time to reflect changes to our practices or for legal reasons. We'll post the revised Policy on this page, and where a change is material, we'll provide additional notice, such as an email or dashboard notification, before it takes effect.
For any questions about this Policy or how we handle your information, reach us at hello@javagrove.net or through our Contact page.