Your Privacy Matters
We keep this short because we genuinely don't collect much. Here's exactly what we collect, why, and who sees it.
What We Collect
When you subscribe or use PulsedMC, we may collect:
- Email address: used to send transactional emails (panel credentials, sign-in codes, password resets, ticket replies)
- Password: stored as a salted hash, never in plain text. We cannot see or recover your actual password
- Minecraft username: used to create your panel account and identify your server
- Discord account info: if you sign in with or link Discord, we store your Discord ID, username, and avatar to authenticate you and identify you for support
- Two-factor authentication data: if you enable 2FA, we store your TOTP secret and recovery codes so we can verify sign-ins
- IP address & device info: the IP address and browser/device (user agent) a sign-in came from, used for new-sign-in security email alerts and to prevent abuse. We don't log this for tracking or analytics purposes
- Server preferences: name, software, version, and optional subdomain you provide during setup
- Billing information: handled entirely by Stripe. We never see or store your card number
- Support tickets: messages you send through our ticket system are stored in our database
- Credits balance: your credit balance and transaction history are stored in our database
- Promoted server data: if you activate a Server Spotlight promotion, your server name and subdomain are displayed publicly on the PulsedMC website (including the homepage and the sign in the Minecraft scene), on the panel sign-in page, and in the in-game server selector. We count how often the promotion is shown and clicked, as totals only
- Page-view counts: we count how many times each page of pulsedmc.net is viewed, how many different visitors we had each day, and which website (e.g. google.com) sent them. To tell visitors apart for one day we use a scrambled code made from the IP address and browser, which exists only in our server's memory and is discarded every day; it is never written down. Only the daily totals are stored. No cookies are used, and the counts cannot be linked back to you
How We Use It
We use the information we collect solely to:
- Provision and manage your Minecraft server
- Authenticate you, including via Discord sign-in and two-factor authentication
- Send transactional emails (credentials, verification codes, new-sign-in alerts, support replies)
- Process payments and maintain your credit balance
- Respond to support requests via our ticket system
We do not send marketing emails or sell your data to third parties.
Third-Party Services
We use a small number of trusted services to operate:
- Stripe: payment processing, credit purchases, and recurring credit-refill subscriptions. Your billing data is governed by Stripe's Privacy Policy.
- Resend: transactional email delivery. Emails and your address pass through their infrastructure.
- Discord: optional sign-in/account-linking via Discord OAuth, plus support and internal notifications. Governed by Discord's Privacy Policy for data they process on their side.
- Google AdSense: shows ads on our website and game panel. Google and its partners use cookies to show you ads based on your visits to this and other websites, and to measure them. PulsedMC does not see or receive this data. You can turn off personalised ads in Google's Ad Settings or at aboutads.info, and read how Google uses this information in How Google uses information from sites that use its services.
Your Minecraft server itself runs on our own Pterodactyl-based panel infrastructure, it isn't a third party, but note that anything you configure, upload, or store on your server (files, plugins, player data) is visible to us as the host, consistent with the Terms of Service.
Apart from Google AdSense, which shows ads, we do not use advertising networks, social trackers, or analytics platforms.
Data Storage & Security
Your billing and credit-refill subscription data is stored in Stripe's customer records. Your account info, support tickets, credit balances, and related activity are stored in our secure PostgreSQL database hosted on Railway.
Passwords are stored as salted hashes, never in plain text. If you enable two-factor authentication, your TOTP secret and recovery codes are stored in the same database and are never sent anywhere except to verify a sign-in.
Signed authentication tokens are stored in your browser's local storage and are cryptographically verified on every request. We do not use traditional session cookies.
Data Retention
We retain your information for as long as your account is active. If your account or a server is closed, Stripe retains billing records as required by law (typically 7 years). Support tickets and credit records are retained until you request deletion.
You can request deletion of your personal data by contacting us on Discord, we'll process it within 30 days.
Your Rights
Depending on where you live, you may have the right to access, correct, or delete your personal data, or to object to how we process it.
To exercise any of these rights, reach out to us on Discord and we'll help you out.
Children
PulsedMC is not directed at children under 13. If you believe a child has provided us their personal information without parental consent, please contact us and we'll remove it promptly.
Changes to This Policy
We may update this policy occasionally. The date at the top will always reflect the latest revision. Continued use of the service after changes means you accept the updated policy.