Skip to policy
CloudBrowser AIYour account

CLOUDBROWSER · LEGAL

Privacy policy

How CloudBrowser handles account information, browser sessions and the data you choose to share with connected tools.

Last updated:

01Who we are

CloudBrowser is operated by Hustle Got Real S.L., tax identification number ESB16589004, at C/Celler 24 Esc DR 2 B, 07141 Marratxí, Illes Balears, Spain.

This notice covers the CloudBrowser website, account dashboard, hosted browsers, APIs and MCP service. For privacy questions or requests, email contact@cloudbrowser.ai.

We determine how account, billing, support and service-operation information is used. When you direct a browser to process other people’s information, you are responsible for your purpose and authority to do so; CloudBrowser processes that browser workload to provide the service you request. Contact us before a workload that requires a separate data-processing agreement.

02Information we process

  • Account and access: your email address, password authentication records, language preferences, account identifiers, API credentials and security events.
  • Billing and usage: your selected plan, subscription and payment references, payment status, browser activity and usage units. Stripe collects payment details through its checkout and customer portal; CloudBrowser uses the resulting customer, subscription and transaction information to manage access and billing.
  • Browser workloads: requested URLs, navigation and interaction instructions, page content, screenshots and other results, browser/session identifiers and settings. A workload can include cookies, login state, form entries, proxy credentials or other information you supply.
  • Support: your email, messages and any information you choose to include when contacting us. Avoid sending passwords, API tokens or unrelated personal information.
  • Website and technical information: network requests, IP addresses, browser/device information, activity timestamps, errors and the website analytics described below.

Information comes from you, clients you connect, pages your browser visits, payment status updates and operation of the service. An email address and authentication information are necessary for an account; payment and usage information are necessary for a paid plan.

03Why we use information

We use information to create and authenticate accounts, execute browser requests, return results, manage subscriptions and usage, answer support requests, maintain reliability and investigate abuse or security incidents.

Where European data-protection law applies, our bases are performing our contract with you (or taking steps you request before a contract), complying with legal obligations such as accounting requirements, and legitimate interests in securing and maintaining the service, resolving support issues and understanding website use. Where consent is required for a particular activity, that activity requires consent, which can be withdrawn without affecting earlier lawful processing.

04Browser sessions and credentials

A hosted browser processes the pages and information you ask it to use. If you enable saved sessions, cookies and local storage can be saved and restored for later use. Closing a browser does not remove its saved session. Use the saved-session removal operation when you no longer need that stored state.

Keep API tokens, browser connection addresses and remote-desktop credentials private. Someone with working access credentials may be able to use your account or browser. Only load information you are authorized to process. CloudBrowser is not an archive: keep your own copies of results you need.

05MCP, OAuth and AI tools

When you approve an OAuth connection, we record the client, account, permissions, expiry and revocation status. The consent screen explains the requested access. Browser-control permission allows the connected client to operate browsers and access saved sessions in your account. An approved email permission shares your verified email address.

You can revoke OAuth access in Connected assistants. Revocation stops further authorized tool calls; it does not close browsers already running, remove saved sessions or erase information already received by the client. Close running browsers separately to stop their usage.

API-token connections use the token you configure instead of an OAuth grant. The client receives the browser results it requests, which may include page text, screenshots and personal information. Its handling of those results is governed by its own terms and privacy policy. CloudBrowser’s optional AI functions also send the requested content and instructions to the configured AI provider to perform that function; the documented OpenAI integration uses the API key and model you supply.

06Website analytics and storage

The landing uses Splendorize analytics to understand page views, navigation, interactions, form events and page performance. Its script can use local storage and session storage for visitor/session identifiers and pending events. It also inspects page structure and interaction labels. This is website analytics, separate from the content of your hosted browser sessions.

The account application and websites visited inside a hosted browser may also use cookies or browser storage for authentication, preferences and session state. You can inspect, clear or restrict storage through your browser settings; this may sign you out or affect functionality. Clearing storage does not itself delete account or billing records, and identifiers may be created again on a later visit.

07Recipients and international processing

Providing CloudBrowser involves hosting, network, database, payment, email, support and analytics services. These providers receive the information needed for their role. Stripe handles payments under its privacy policy. We may disclose relevant information when legally required or to address fraud, misuse, disputes or security incidents.

Sites you visit receive browser requests and information you submit. Proxy providers route traffic when a proxy is used. Clients and AI providers you select receive the inputs or outputs needed for your requested operation. Those destinations may be in countries with different data-protection laws; a proxy location does not establish the location of every system processing your data.

Contact contact@cloudbrowser.ai for information about the providers, processing locations and transfer safeguards relevant to your use, or before using the service with a requirement for a particular processing location.

08Retention and removal

Retention depends on the type and purpose of information: maintaining your account and requested saved sessions, completing support work, investigating security or billing issues, and meeting applicable accounting and legal requirements. Token expiry or connection revocation limits access; it is not a promise that every related operational record is immediately erased.

To request account closure or deletion of personal information, email us from your account address. We may need to verify the request and retain information required for legal obligations or unresolved claims. Third-party sites and connected clients control copies they have received; send requests about those copies to them as well.

09Your rights and contact

Depending on applicable law, you can request access, correction, erasure, restriction or portability of your personal data and object to processing based on legitimate interests. You may withdraw consent where processing relies on it. These rights have legal conditions and exceptions.

Send requests to contact@cloudbrowser.ai. You can also complain to your data-protection authority; in Spain, this is the Agencia Española de Protección de Datos (AEPD). See the AEPD’s guidance on exercising your rights.

We update this page when the service or these practices change. The date above identifies this version. Our Terms of service explain the conditions for using CloudBrowser.