Privacy Policy
Last updated: 19 August 2026. This policy explains what Bolt Toolbox ("Bolt", "we", "us") collects, what deliberately never leaves your device, how we use information, and the choices you have. It applies to our website, dashboard, and the Bolt Toolbox and Bolt Bot Companion applications.
Overview
Our approach is to collect as little as we need to run your license, take payment, and support you. Much of what the app works with — your credentials, profiles, and card data — is kept on your own computer and is never sent to us. Payment card details are handled by our payment processor, not stored by us.
1. Information we collect
- Discord account. When you sign in with Discord, we receive and store your Discord user ID, username, avatar, and email address, to identify you, bind your license, deliver your key, and (optionally) add you to our community server.
- License & account data. Your license key, plan, subscription status, and the machine identifiers used to enforce device/session limits.
- Payment information. Subscriptions are processed by Stripe. We receive confirmation and billing metadata (such as amounts, dates, status, customer/subscription identifiers, and the email or country needed for tax). We do not receive or store your full card number or security code.
- Proxy usage. If you use the private proxy feature, we record bandwidth totals to apply your plan's allowance. We do not log the contents of your traffic.
- Anonymous product telemetry. The app may send anonymous counts of which features are used (for example, how often a tab is opened or an action is run). This is aggregate and is not tied to your identity or the content you process.
- Support & operational records. Messages you send us, and security/audit logs of key events (such as logins and administrative actions) with limited technical details like an IP address, kept to operate and protect the Service.
2. Information that stays on your device
The following is stored locally on your computer, encrypted using your operating system's protection, and is not transmitted to or stored on our servers:
- Cloud provider credentials (e.g. AWS access keys) and the servers you manage.
- Remote Desktop and custom-server logins.
- Email/IMAP logins used for verification codes.
- Checkout profiles and card data, and card-issuer logins used by card features.
Because this data lives on your device, protecting your computer and account is your responsibility, and we cannot recover this data for you if it is lost.
3. How we use information
- Provide, maintain, and secure the Service, and enforce your license.
- Take payment, manage renewals, apply promotions, and handle billing questions.
- Provide support and send you service-related messages (for example, about your key or a failed payment).
- Detect, prevent, and investigate abuse, fraud, chargebacks, and security issues.
- Understand which features are used, in aggregate, to improve the product.
- Comply with law and enforce our Terms of Service.
4. How we share information
We do not sell your personal information. We share it only as needed to run the Service:
- Payment processor (Stripe) — to take and manage payments; it may act as merchant of record.
- Identity & community (Discord) — to log you in and, if you choose, add you to our server.
- Hosting & infrastructure — providers that host our dashboard, database, and downloads on our behalf.
- Legal & safety — where required by law, or to protect our rights, users, or the public.
- Business transfers — if Bolt is involved in a merger, acquisition, or asset sale, information may transfer as part of that transaction.
Your own third-party accounts — such as your cloud provider and card issuer — are accessed by the app on your device with your credentials; we do not receive or store those credentials.
5. Cookies & sessions
Our dashboard uses a strictly necessary session cookie to keep you signed in after Discord login, and short-lived values to secure the login flow and prevent cross-site request forgery. We do not use advertising or cross-site tracking cookies.
6. Data retention
We keep account, license, and billing records for as long as your account is active and as needed afterward to meet legal, tax, accounting, and fraud-prevention obligations, then delete or anonymize them. Aggregate telemetry is retained in non-identifying form. Locally stored data remains on your device until you remove it.
7. Security
We use technical and organizational measures to protect information, including encryption of sensitive data on your device, encrypted connections, scoped access, and license/session controls. No method of storage or transmission is perfectly secure, and we cannot guarantee absolute security. Please use a strong, unique password on the accounts you connect and keep your device secure.
8. Your rights & choices
Depending on where you live, you may have rights to access, correct, delete, or export the personal information we hold, to object to or restrict certain processing, and to withdraw consent. You can:
- View and manage your license and billing from your dashboard, and cancel anytime.
- Reset which computer your license is bound to.
- Request access to or deletion of your account data by contacting us (see below). We may need to verify your identity, and some records may be retained where the law requires.
We will not discriminate against you for exercising these rights.
9. International users
We operate online and may process and store information in countries other than yours. Where required, we take steps to ensure appropriate safeguards for cross-border transfers. By using the Service you understand your information may be processed in those locations.
10. Children
The Service is intended for adults (18+) and is not directed to children. We do not knowingly collect information from anyone under 18. If you believe a minor has provided us information, contact us and we will delete it.
11. Changes to this policy
We may update this policy from time to time. We will change the "Last updated" date above and, for material changes, provide reasonable notice. Your continued use after an update means you accept the revised policy.
12. Contact us
For privacy questions or to make a request, reach us through the Bolt Discord, or at support@bolt-toolbox.io.