Privacy Policy
Last Updated: April 2025
Your privacy is important to us. This Privacy Policy explains what data Hermes collects, what we do not collect, and how we handle your information.
1. What We Collect
We collect minimal data necessary to operate the Service:
- Device identifiers: Randomly generated IDs used to identify paired devices. These are not linked to your personal identity.
- Connection metadata: Timestamps of connections, connection mode (LAN vs. relay), and basic session information needed for relay routing.
- Relay session data: Session IDs used to route encrypted messages between your devices through the relay server.
- Feedback form submissions: If you voluntarily submit feedback through our website, we collect the name, email, and message you provide.
- Job application submissions: If you apply through our Careers page, we collect the name, email, years of experience, LinkedIn URL, and question answers you provide, to evaluate your candidacy.
2. What We Do NOT Collect
Hermes is designed with privacy at its core. We do not collect, store, or have access to:
- Terminal content: All terminal input and output is end-to-end encrypted. The relay server cannot read your commands or their output.
- File content: File transfers are end-to-end encrypted. We cannot see the contents of files you transfer between devices.
- Chat messages: Messages between paired devices are end-to-end encrypted.
- Code or project data: We have no access to your source code, project files, or development activity.
- Browsing history or app usage analytics: We do not track which screens you visit or how long you use the app.
- Location data: We do not collect GPS or location information.
3. How the Relay Server Works
When your devices cannot connect directly over a local network, they communicate through our relay server. Here is how it works:
- The relay server receives encrypted data packets and forwards them to the destination device.
- The relay server cannot decrypt these packets. Only your paired devices hold the shared encryption key.
- The relay server uses the binary frame format: a version byte, a 24-byte nonce, and ciphertext. None of this is readable without the shared secret.
- Relay sessions are temporary and expire after 30 minutes of inactivity.
4. End-to-End Encryption
All communication between paired devices uses end-to-end encryption powered by TweetNaCl (XSalsa20-Poly1305). Encryption keys are:
- Generated during the pairing process using Diffie-Hellman key exchange.
- Stored only on your devices, never transmitted to or stored on our servers.
- Unique to each device pair.
5. Third-Party Services
Formspree
Our website feedback form uses Formspree to process submissions. Data you submit through the feedback form (name, email, message) is handled according to Formspree’s privacy policy.
Mailjet
Our Careers page uses Mailjet to store job application submissions and to send you a confirmation email. Data you submit through the application form (name, email, years of experience, LinkedIn URL, and your answers) is handled according to Mailjet’s privacy policy.
Third-Party Integrations
When you connect integrations such as GitHub or Google Drive through Hermes, authentication tokens are stored locally on your desktop device. We do not have access to your third-party accounts or tokens.
6. Analytics
We collect minimal analytics data. We do not use tracking pixels, third-party analytics services, or advertising networks. Any analytics we implement in the future will be disclosed in an update to this policy.
7. Data Storage and Retention
- Device data (paired device info, encryption keys) is stored locally on your devices using secure storage (Keychain on iOS, encrypted SharedPreferences on Android, electron-store on desktop).
- Relay session data is ephemeral and automatically deleted after session expiration (30 minutes of inactivity).
- Feedback submissions are retained as long as needed to process and respond to your feedback.
8. Data Security
We take reasonable measures to protect your data:
- End-to-end encryption for all device communication.
- No server-side storage of message content or encryption keys.
- Secure pairing process with cryptographic key exchange.
- Encrypted local storage on your devices.
9. Children’s Privacy
Hermes is a development tool not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe we have collected such information, please contact us to have it removed.
10. Your Rights
You have the right to:
- Access: Request information about what data we have associated with your device.
- Deletion: Remove all local data by uninstalling the applications and unparing devices. Relay session data is automatically deleted after expiration.
- Portability: Your data is stored locally on your devices and is under your control.
- Opt-out: You can stop using the relay server at any time by only connecting over local network.
11. International Data Transfers
If you use the relay server, encrypted data packets may pass through servers in different jurisdictions. Since all content is end-to-end encrypted, the substance of your communications is protected regardless of server location.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify users of material changes by updating the “Last Updated” date. Continued use of the Service constitutes acceptance of the revised policy.
13. Contact
For privacy questions or concerns, contact us at:
Email: privacy@gethermesapp.com