DataPaw is a desktop application published by [LEGAL ENTITY — NOT YET REGISTERED]
("we", "us"). This policy explains what data the application handles, what
leaves your computer, and what does not.
The short version: **DataPaw is a local desktop tool. Your Salesforce data
never passes through our servers.** Optional, anonymous usage analytics are
off unless you switch them on.
1. Your Salesforce data
DataPaw connects directly from your computer to Salesforce. Queries you run,
records you view or edit, schema you browse, and files you import or export
travel between your machine and Salesforce only.
**We never receive, store, process, or have any technical means of accessing
your Salesforce data, credentials, or org contents.**
Authentication is handled by the Salesforce CLI, which stores credentials
locally on your machine under your operating system account. DataPaw reads
those credentials locally to talk to Salesforce on your behalf and transmits
them nowhere else.
2. Usage analytics — optional, off by default
DataPaw can send anonymous usage data to help us find bugs and understand
which features are used. This is disabled unless you explicitly enable it,
and you can change your choice at any time via the Privacy link in the
application's status bar.
If you enable it, we collect:
- Application version, operating system, and CPU architecture
- That the application launched, and approximate session length
- Which features were used (for example: "schema diagram opened") — not what
you did with them
- Error codes and error messages, with identifying content removed
- Approximate result-set sizes as coarse ranges (for example "100k+"), never
exact counts
- Whether the installation is on trial or licensed
We never collect:
- Your SOQL queries or any record data they return
- Salesforce org names, usernames, instance URLs, or record identifiers
- Custom object or field names from your org
- Your name, email address, or IP address
- Anything else capable of identifying you, your employer, or your customers
How anonymity works
Analytics events are tied to a random identifier generated on your machine at
first launch. It is not derived from your hardware, your network, your
operating system account, or anything about you, and it is not linked to any
other identifier. You can generate a new one at any time from the Privacy
dialog.
Error messages and diagnostic text are automatically processed on your
machine to remove identifiers before anything is queued for sending. This
happens before data is stored or transmitted.
Because "we remove identifying information" is a claim you shouldn't have to
take on trust, the Privacy dialog includes a **"Show me exactly what's
queued"** option that displays the literal data awaiting transmission.
Who processes it
Analytics data is processed by PostHog, acting as our data processor, on
servers in the United States. Location data is explicitly
disabled and IP addresses are not recorded.
Data is retained for 12 months and then deleted.
3. Licensing
If you purchase a licence, activating it contacts our licensing provider,
Polar, to verify the key and register the activation. This is functional
rather than analytical — it is how licensing works, and it is not covered by
the analytics setting above.
This exchange involves your licence key and an activation identifier. Your
name and email are held by Polar as the seller of record for your purchase,
in accordance with Polar's own privacy policy.
Your licence record is stored locally, encrypted using your operating
system's keychain.
4. Salesforce CLI installation
If DataPaw installs the Salesforce CLI for you, it downloads it directly from
Salesforce's servers (developer.salesforce.com). We are not involved in and
do not observe that download. Salesforce's own terms and privacy practices
apply to the CLI itself, including any telemetry it collects independently of
DataPaw.
5. Your rights
Because analytics data is anonymous and holds no identifier linking it to
you, we generally cannot locate "your" data in order to export or delete it
on request. If this matters to you, the practical control is the one that
works: leave analytics off, or turn it off and reset your random identifier.
For purchase records, which are identifiable, contact
support@xenshift.com and we will assist with access, correction, or erasure
requests as required by applicable law.
6. Children
DataPaw is a professional tool and is not directed at children.
7. Changes
If we materially widen what analytics collects, the application will ask for
your consent again rather than relying on a previous answer to a narrower
description.
8. Contact
support@xenshift.com
[LEGAL ENTITY — NOT YET REGISTERED]
xenshift.com