UnitDeck Studio · privacy

Privacy Policy

How UnitDeck Studio handles information across this website, UnitDeck Local, future UnitDeck Cloud services, support, and Paddle billing.

1. Status and scope

Pre-launch Cloud notice. UnitDeck Cloud and Paddle Checkout are not publicly available today. The Cloud and billing sections describe the intended processing that must be confirmed before launch.

This policy covers unitdeckstudio.com, the UnitDeck Local Windows app, support communications, and any UnitDeck Cloud service and Paddle transaction made available under these terms. Policy version: 12 September 2026.

2. Who is responsible

UnitDeck Studio is responsible for information it handles for this website, UnitDeck products, product support, and its own Cloud-service operations. Contact: support@unitdeckstudio.com.

An organization using UnitDeck Cloud may separately determine why and how personal data is placed in its Workspace. In that situation, users should first direct organizational-content requests to their Workspace administrator. Paddle separately controls personal data it processes as Merchant of Record for a transaction.

Business information

Business name
UnitDeck Studio
Business registration number
198-56-01055
Business address
602, 148, Hyeonam-ro, Suji-gu, Yongin-si, Gyeonggi-do, 16880, Republic of Korea

3. Information for UnitDeck Cloud

When Cloud access is offered, UnitDeck Studio may process:

  • Account and identity references, such as display name, email where supplied, identity-provider issuer and subject, authentication events, and account status.
  • Organization, Workspace, membership, role, invitation, and administrator information.
  • Customer content submitted to available Project, Task, checklist, comment, attachment, Activity, Resource, Assignment, or related work features.
  • Session, IP address, browser or device, request, security, authorization, audit, diagnostic, and error information.
  • Support messages and files deliberately provided for investigation.
  • Customer, subscription, transaction, entitlement, invoice, amount, currency, tax, refund, and fraud-prevention metadata received from Paddle.

Only categories needed for available product capabilities should be collected. A development schema or roadmap item does not by itself mean that customer data is collected.

4. UnitDeck Local data

UnitDeck Local stores user-entered planning data on the user’s Windows PC and does not automatically synchronize it to UnitDeck Cloud. It does not require a UnitDeck account.

  • Database: %APPDATA%/FennecDeck/fennecdeck.sqlite
  • Attachments: %APPDATA%/FennecDeck/attachments/
  • Resource image icons: %APPDATA%/FennecDeck/resource-icons/
  • Backups: %APPDATA%/FennecDeck/backups/
  • Troubleshooting logs: %LOCALAPPDATA%/FennecDeck/logs/

The internal folder name FennecDeck remains to protect data created by earlier versions. Full ZIP backups can include the SQLite database, task attachments, resource image icons, a manifest, and integrity hashes. Full restore validates the archive and creates a pre-restore backup. Legacy .sqlite and .db files are database-only restores. Local files and archives are not app-encrypted, so users must store them securely.

Clear All Data creates a pre-reset backup and may leave backups and logs. Uninstalling may leave Local data so that it can survive a reinstall. Users who want complete removal should first preserve anything needed, then review and remove the %APPDATA%/FennecDeck and %LOCALAPPDATA%/FennecDeck folders.

Microsoft Store may process acquisition, installation, update, account, and diagnostic information under Microsoft’s own terms and privacy statement. UnitDeck Local has no purchase or trial entitlement gate, and UnitDeck Studio does not process payment-card data for the free Local app.

5. Why information is used

Information may be used to authenticate users; provide and administer accounts and Workspaces; enforce membership, role, and Workspace isolation; deliver purchased capabilities; operate billing entitlements; answer support requests; protect the service; prevent abuse and fraud; maintain audit and diagnostic evidence; comply with law; and improve reliability.

The legal basis depends on jurisdiction and context and may include performing a contract, legitimate interests in operating and protecting the service, legal obligations, and consent where required. Marketing use requires a separate lawful basis and consent where applicable.

6. Website, cookies, sessions, and logs

The current marketing website has no advertising, behavioral analytics, account registration, contact form, or marketing cookies. Hosting and network providers may process standard request data for delivery and security.

UnitDeck Cloud may use strictly necessary, secure session and security cookies to sign users in, maintain a session, prevent request forgery, and protect accounts. Optional analytics or marketing cookies will not be added without the notice and choice required by law.

UnitDeck Local binds its internal interface to 127.0.0.1 and does not include remote behavioral advertising or project-data telemetry.

7. Identity, hosting, and service providers

The planned Cloud identity flow uses Microsoft Entra External ID. Microsoft may process identity, authentication, device, and security information under its own terms and privacy statement. Production hosting services, regions, subprocessors, and international-transfer safeguards will be published before public Cloud processing begins.

Service providers receive only the access reasonably needed for their role and are subject to applicable contractual and legal safeguards.

8. Paddle billing and data sharing

For eligible paid Cloud orders, Paddle acts as authorized reseller and Merchant of Record. Paddle independently processes checkout identity, contact, address, business, purchase, payment, tax, device, and fraud-prevention information under the Paddle Privacy Notice.

Paddle may provide UnitDeck Studio with customer, address, business, product, subscription, transaction, amount, currency, tax, invoice, refund, and risk information needed to activate and administer the service, support the order, prevent abuse, and reconcile billing. UnitDeck Studio does not receive or store full payment-card numbers from Paddle Checkout. Paddle privacy requests may be submitted through the channels in Paddle’s notice.

9. Retention and deletion

Information is retained only as long as reasonably needed for the purposes described, including active service, support, security, audit integrity, dispute resolution, fraud prevention, tax, accounting, and legal obligations. Different categories may require different periods.

Final production retention schedules, backup deletion behavior, and post-subscription export or deletion procedures will be published before live Cloud sales. Requests are subject to identity verification and any lawful or security-related retention exception.

10. Your choices and rights

Depending on applicable law, you may request access, correction, deletion, restriction, objection, portability, or withdrawal of consent and may complain to a competent authority. Contact support@unitdeckstudio.com. We may need to verify identity and authority.

For content controlled by an organization, contact the Workspace administrator first. For Paddle transaction data, use the privacy channels in Paddle’s notice. Local users can manage their own files through backup, restore, reset, and direct file controls.

11. Security and international transfers

UnitDeck Studio designs Cloud access around authenticated sessions, server-side membership and role checks, Workspace-scoped data boundaries, audit evidence, and proportionate operational safeguards. No transmission or storage method can be guaranteed absolutely secure.

If information is processed outside a user’s country, appropriate contractual or legal transfer mechanisms will be used where required. Final production locations and mechanisms must be documented before launch.

12. Children

UnitDeck Cloud is intended for business and professional work and is not directed to children. Do not create an account or submit a child’s personal data unless an authorized organization has a lawful basis and all required permissions. Contact us if you believe information was submitted contrary to this section.

13. Changes and contact

We will update this policy when actual Cloud hosting, identity, billing, analytics, subprocessors, product capabilities, or retention practices change. Material changes will be announced or consent requested where required.

Privacy, support, and data requests: support@unitdeckstudio.com.