ButtonHub

ButtonHub — privacy notes

Draft, 27 August 2026 — written in-house, awaiting a solicitor's review before the first paid sale.

Last updated: 27 August 2026

ButtonHub is built to keep a show's data on the show's machines. There are no accounts, no analytics, and no tracking. This page says exactly what leaves a Mac running ButtonHub, when, and why — and it is short because the honest answer is short.

Who we are: Tallnuff Tech Ltd, England — info@buttonhub.app. For UK GDPR purposes we are the controller for the little described below.

On your own network: nothing leaves

Crew phones talk directly to your Mac. Buttons, links, PINs, cue names, chat and the show's configuration live in files on that Mac and travel only across your own network. We never see them.

What does leave, and when

Licence activation and checks. Activating a key sends the key and a machine label (your Mac's name, so you can tell your own seats apart) to Polar, our merchant of record, who issued the key. The app re-checks the key with Polar when it starts and periodically while running. Our signing service sees the key and a machine identifier when it counter-signs a licence.

Remote access, if you switch it on. Published crew pages travel over our relay, which runs on Cloudflare. Traffic is encrypted in transit; Cloudflare carries it and, like any carrier, could in principle see it. Nothing is published until you tick it, and the admin editor and codes sheet never leave the building at all. The relay knows your machine's name and public key — that is how it knows which tunnel is whose.

Update checks. The app asks our update host whether a newer version exists. The request carries the version you are on and no identity.

Bug reports and feature requests — only when you press Report. A report includes your description, recent logs, and a snapshot of settings assembled by allow-list, so secrets (PINs, passcodes, keys, tokens) are excluded by construction rather than filtered out. Reports are stored in our private repository as issues. Include your email only if you want a reply.

What we keep, and for how long

Your rights

Under UK GDPR you can ask what we hold about you, ask for a copy, and ask us to correct or delete it — email info@buttonhub.app and we will answer plainly. If you are unhappy with how we handle it you can complain to the ICO (ico.org.uk).

The services we rely on

Each has its own privacy policy for the data it processes.

Changes

The date at the top says when this last changed; a change that matters will be called out in the app's release notes.