Last updated: September 3, 2026
This Privacy Policy reflects how Ethereal Network Sciences PBC, DBA Hintjen ("Hintjen," also "we," "us," "our") processes the personal data of users of Homerun Desktop, Homerun Go and our web dashboard (together, the "Application" or "Platform"). Homerun Desktop is a self-hosting application for Windows. Homerun Go is the same thing for iOS and Android: it hosts a game server on the phone itself. The web dashboard lets you watch and control your servers from a browser. This policy explains how we collect and use your personal data and covers your rights regarding such personal data processing.
This Privacy Policy is a part of the Terms and Conditions for using the Application.
A note on scope. Homerun Desktop and Homerun Go let you run game servers on your own hardware. Because of that, this policy covers three different groups of people: people who use the Application, people who visit our website, and people who connect to a server that someone else hosts using Homerun Desktop or Homerun Go. If you are in that third group, Section 2.7 is the part that concerns you.
One interface, updated over the air. Homerun Desktop and Homerun Go show you the same interface. On a phone, Homerun Go downloads that interface from our content delivery network and updates it on its own, independently of the app store, after checking a signature we put on it. The download itself carries no account or device identifier. What the interface does with your data is the same on every platform, and it is what this policy describes.
Your data is processed by Ethereal Network Sciences PBC, DBA Hintjen, the developers of Homerun Desktop and Homerun Go. We are the data controller for the processing described in this policy.
The primary point for contacting us is via email at [email protected].
To install the Application correctly and to diagnose installation and runtime failures, Homerun Desktop collects technical information about your Windows system and transmits it to our servers, where we store it. This includes:
This information is sent when you install the Application, on each step of an installation you have started, and again whenever a system-level operation fails while the Application is in use. It is not sent on a continuous schedule, but it is not limited to a single moment at install time either.
Your computer's name is also used as the default display name for the device in your Homerun account, so that you can tell your devices apart. You can rename a device at any time.
On a phone, Homerun Go does not collect a system report of this kind. It reads your device's model, operating system version and free storage to decide what your phone can run and how large a server to start; the free-storage figure never leaves the phone. The device model and operating system version are attached to the crash and error reports described in Section 2.6. A phone's default name in your account is its model — on iOS, followed by a short fragment of an identifier Apple assigns to our app on your device, so that two phones of the same model can be told apart.
We collect and store IP addresses in several places: when you create an account or sign in, when you join our waitlist, when a server you host reports its status, and when you open or click a link in an email we send you. Our analytics and error-reporting providers also receive your IP address as part of ordinary request handling, and derive an approximate location from it.
We use this information to operate and troubleshoot the Platform, to secure accounts against unauthorized access, to understand how the Application is used, and to measure whether our emails are being received. The Application also determines your public IP address (by querying a third-party lookup service, named in Section 6.1) so that connection details for the servers you host can be displayed and diagnosed. On a phone, that is the phone's public address — usually your mobile carrier's or your home network's — and it changes as the phone moves between networks.
We collect your email address when you register, sign up for our waitlist or mailing list, accept an invitation to someone else's server, or contact support. Your email address is central to how the Platform works: it is the identifier you sign in with, and it links your account across our systems.
We use it to:
Every marketing email includes an unsubscribe link, and unsubscribing stops further marketing messages. Messages that are necessary to operate your account — such as sign-in links — are not marketing and will continue.
If you join our waitlist, we also record the IP address and browser user agent used to sign up, and whether you have subsequently opened our email or downloaded the Application.
How you sign in. You can sign in with a link we send to your email address, or with a Google or Apple account. If you use Google or Apple, we receive from them the email address on that account, your name, and the identifier the provider uses for you; we do not receive your password. If you use Apple's option to hide your email, the address we receive is the relay address Apple creates for you, and email we send you passes through Apple.
Guest accounts. You can also use the Application without giving us an email address at all. A guest account has no email address and no way to recover it: it exists on the device it was created on, and if you uninstall the Application or lose the device, the account and the servers it hosts cannot be recovered. You can claim a guest account at any time with an email address or a Google or Apple sign-in, and everything on it moves to the claimed account. A guest account is otherwise treated like any other account in this policy.
Where you came from. If you installed the Application from a link shared by a creator or partner we work with, we record that referral against your account when the account is created, so that we can honour our arrangement with them.
Upon registration, you are assigned a Matrix ID (a unique identifier in the Matrix protocol). Additionally, you may provide a display name for your profile. Please be aware that:
Your display name is also shown publicly in some places outside the Application — see Section 6.2.
We record how the Application and our web dashboard are used, in order to understand which features people use, where they get stuck, and whether changes we make are improvements. This analytics data is processed on our behalf by PostHog, Inc. (United States).
What is collected:
We do not record your screen, and we do not automatically capture every click — only the specific events described above.
Guidance and questionnaires. Separately from the above, we run a service that decides which tips, achievements and questionnaires to show you and records what you did with them. It receives the event, your account, the platform and Application version you are using, and — where you answer a questionnaire — your answers.
On a phone, Homerun Go carries no analytics component of its own. The shared interface does the recording described above, and the app stores the identifier that ties those events together so that it survives an update. The app itself reports only a handful of facts about the app: that the interface finished loading, that you moved it to the foreground or the background, and that it recovered after the interface stopped responding.
Your choices. You can turn product analytics and crash reporting off, separately, at any time. On Homerun Go the setting is under More → Privacy; on Homerun Desktop it is in the account menu, under Privacy. If you are in the European Economic Area, the United Kingdom or Switzerland, we ask you before we send anything at all, and nothing is collected until you answer.
Turning something back on takes effect the next time you open the Application: what we do not collect is not collected by leaving the code out of the running app, rather than by asking it to stay quiet, so there is nothing to switch on again until it next starts. Turning something off applies immediately.
When the Application encounters an error or crashes, we collect a diagnostic report so the fault can be found and fixed. These reports are processed on our behalf by Sentry (Functional Software, Inc., United States) and include the error message and stack trace, the Application version and platform, a trail of recent activity leading up to the fault, your account and device identifiers, and — because of how the reporting is currently configured — your IP address and request headers.
When a game server you host crashes, the Application also uploads that server's log output and configuration so we can diagnose the failure. Server logs can contain the names of players who were connected at the time. Before that log leaves your device we remove the IP addresses and the chat messages in it; players' names remain, because a fault that only happens when a particular player joins is otherwise impossible to describe.
On a phone, Homerun Go reports errors to us rather than to Sentry. Such a report carries the error message and where in the Application it happened, the Application and interface versions, the device model and operating system version, and your device identifier. Before it is sent, the Application removes access tokens, the query part of any web address, email addresses, and IP addresses from the text.
Crash and error reports are delivered into internal channels operated on third-party messaging infrastructure, so that our team sees them and can respond.
This section describes information about your game servers, and about the people who connect to them. If you host a server, please read Section 10 as well — you have obligations to your own players.
While a server you host is running, the Application reports to us approximately every two minutes, and additionally whenever a player joins or leaves:
If you run one of our built-in minigames, we additionally receive per-match statistics for each participating player — eliminations, wins, time played and similar in-game figures — recorded against that player's Minecraft account identifier.
We use this to operate and support the hosting service, to display server status and player lists to the host, to produce leaderboards and in-game achievements, and to understand how the Platform is used.
Remote support and your own console. A server's console is shown to you in our web dashboard, and our support team can ask a device you own for the Application's own log. Both travel from your device to us. Console lines have IP addresses and chat removed first, and the Application's log has access tokens, web-address query strings, email addresses and IP addresses removed, in each case by the same rules used for a crash report.
Please note: this information is collected about every player who connects to a Homerun-hosted server, including players who do not have a Homerun account and have never used our Application. Where a player later links their Minecraft account to a Homerun account, statistics previously recorded against that Minecraft identifier are associated with that account. Leaderboards display players' in-game usernames publicly.
We currently retain these records indefinitely. If you are a player who has connected to a Homerun-hosted server and you want your information removed, contact us at [email protected].
Our website, including this page, uses Plausible Analytics to count visits and measure which pages, download links and outbound links are used. Plausible does not set cookies and does not track visitors across websites; it records the page visited, the referring site, and coarse device and country information derived from your IP address, which it does not retain.
Some pages also load styling and font resources from third-party content delivery networks, which necessarily receive your IP address in order to serve those files.
If you choose to connect other accounts, we store the identifiers needed to operate that connection:
When you type a player's name into an operator, whitelist or ban list, or look up an Xbox gamertag, the Application asks Mojang or a public lookup service to turn that name into an account identifier, because that is what a game server's own files require. Displaying a player's avatar likewise fetches an image from a third-party service using that player's identifier.
If you submit feedback, answer a questionnaire or survey, report a bug, suggest an application, or contact support, we store what you wrote along with your account identifier. Please avoid including sensitive personal information in free-text fields.
Submissions are routed into internal channels operated on third-party messaging infrastructure so that our team is notified and can respond.
If you allow notifications, your device gives the Application a push token — an address for that installation, issued by Apple or Google — and we store it with the platform, the Application version, your device and your language, so that we can send you a notification and know which language to write it in. Notifications are delivered through Firebase Cloud Messaging, operated by Google, which necessarily receives the token and the message in order to deliver it.
You can turn notifications off at any time in your device's settings. Signing out removes the token from our records, so a phone that someone else signs into does not receive the previous person's notifications.
We collect and process your data for the following purposes:
We process your personal data on the following legal bases:
Product analytics and crash reporting rest on different bases in different places. In the European Economic Area, the United Kingdom and Switzerland we ask for your consent before either is collected, and nothing is sent unless you give it; you can withdraw it at any time in the setting described in Section 2.5, and withdrawing is as easy as giving it. Everywhere else we rely on legitimate interests — understanding how the product is used and diagnosing faults — and the same setting lets you object by simply turning it off.
We aim to keep personal data only for as long as it is needed. We want to be straightforward about where we currently fall short of that aim.
Retained for as long as your account exists: your account record, email address, display name, Matrix ID, linked account identifiers, and the devices and servers associated with your account.
Currently retained indefinitely: most operational and diagnostic records, including sign-in records (with IP address and browser user agent), system and installation reports, error and crash reports, server status reports and the player information described in Section 2.7, waitlist records, feedback and survey responses, and email delivery and engagement records. We do not yet run automated deletion for these categories.
Retained on a shorter cycle: backups of your self-hosted server data are kept on a rolling schedule of roughly thirty days of snapshots.
You may ask us to delete or anonymize your personal data at any time, and we will do so — see Section 9. We are working to introduce defined retention periods and automated deletion, and this section will be updated when they are in place.
We do not sell your personal data. We share it in the circumstances described below.
We use the following providers to operate the Platform. Each receives only what it needs for its function, and processes it on our behalf.
| Provider | Purpose | Data involved |
|---|---|---|
| PostHog (US) | Product analytics, experiments | Usage events, account identifier, email address, IP-derived location |
| Sentry (US) | Crash and error reporting | Error reports, account and device identifiers, IP address, request headers |
| Plausible (EU) | Website analytics | Page views, referrer, coarse device and country data |
| Amazon Web Services (US) | Email delivery, file storage, backups | Email addresses and message content, application downloads, stored server data |
| Cloudflare (US) | Network delivery and protection | Connection metadata, including IP address |
| Twilio (US) | SMS, for event sign-ups only | Name and phone number |
| Discord (US) | Community features, internal notifications | Discord identifiers; feedback and survey submissions; diagnostic logs; public server listings |
| Anthropic (US) | AI-assisted analysis of support and error data | Error reports and account records examined during investigation |
| Microsoft / Mojang | Minecraft account sign-in and lookup | Minecraft usernames and account identifiers |
| Google — Firebase Cloud Messaging (US) | Delivering push notifications to phones | Push token and the content of the notification |
| playerdb.co, GeyserMC | Turning a username or gamertag you type into an account identifier | The Minecraft username or Xbox gamertag entered |
| mc-heads.net | Rendering player avatars | Minecraft account identifiers and usernames; your IP address, as with any image a page loads |
| ipify | Telling a hosting device its own public address | The IP address of the device, which the service reads from the request itself |
| Let's Encrypt | Issuing the certificate a hosting device serves its console with | The device's public host name. No email address is given. |
| Modrinth, GitHub, Mojang, PaperMC, and other download hosts | Fetching game servers, mods, modpacks and runtimes you choose to install | What you searched for or chose, and the IP address any download discloses |
| Google Play (Android) | Delivering the Java runtime on demand | The installation telemetry Google Play collects for any such download |
We also disclose personal data when required by law or valid legal process, to protect our rights, privacy, safety or property, and in connection with a business transfer, merger or acquisition.
We are based in the United States, and most of the providers listed above process data there. If you are located in the European Economic Area, the United Kingdom or Switzerland, your personal data is transferred outside your home jurisdiction.
For those transfers we rely on the EU–US Data Privacy Framework, together with its UK Extension and the Swiss–US Data Privacy Framework. PostHog, Sentry and Amazon Web Services each self-certify their adherence to it with the US Department of Commerce, and their participation can be checked on the public Data Privacy Framework List. Where a provider is not covered by that framework, or as an additional safeguard, we rely on the European Commission's Standard Contractual Clauses.
You can contact us for further detail on the safeguards applying to a specific provider.
We implement appropriate technical and organizational measures to protect your personal data, including:
About your backups. Backups of your self-hosted server data are stored on infrastructure we operate. We hold the keys to those backups, which means our systems — and authorised personnel — are technically capable of reading their contents. We access them only where necessary to operate or support the service. If you host data you would prefer we could not read, please keep that in mind.
You have the following rights regarding your personal data:
These rights apply whether or not you have a Homerun account. If you are a player who has connected to a server hosted with the Application, you can exercise them in respect of the information described in Section 2.7.
Deleting your account. You can ask us to delete your account from within the Application — in Homerun Go, under More; in Homerun Desktop, from the account menu — or by emailing [email protected]. We send a confirmation link to your email address; nothing is deleted until you open it. Deletion removes your account record, your sign-in identity, your devices and the servers you host (other players lose access to them), the backups of those servers, and the reports and feedback tied to your account. This does not yet reach our analytics and error-reporting providers: records held there, including your email address at our analytics provider, are not erased automatically when you delete your account. We are building that. Until it is done, ask us at [email protected] and we will erase them for you. If you have uninstalled the Application, the instructions at gethomerun.app/account/delete apply. A guest account has no email address to send a confirmation to, so it is deleted immediately when you confirm in the Application.
To exercise any other right, including access and portability, please contact us at [email protected]. Data export is not yet self-service; requests are handled by our team, and we may need to verify your identity before acting on one.
We will respond to your request within 30 days. In some cases, we may extend this period by up to 60 additional days, in which case we will notify you.
If you are in the European Economic Area or the United Kingdom, you also have the right to lodge a complaint with your local data protection authority.
When you use the Application to host your own applications and services:
Our privacy practices described in this policy apply to data we collect through the Application itself, not to the content of the services you choose to run.
Homerun Desktop can run your servers in one of two ways: inside the Windows Subsystem for Linux (WSL), or natively on Windows. Which one is used depends on your system and the choices you make during setup. In both cases:
We recommend reviewing Microsoft's privacy documentation if you have concerns about how the underlying technology may impact your privacy.
On a phone, Homerun Go runs the server on the device itself. It reads the device's model, operating system version and free storage to decide what can be run and how much of it; the free-storage figure stays on the device. Apple and Google are the platform operators, each with their own privacy policies, and the app store you installed from collects its own information about that installation, which we do not control.
The Application checks for updates automatically. Update checks disclose your IP address, platform and current version to the service hosting the update files, and updates may be installed automatically. On a phone, the interface is updated separately from the app itself, as described at the top of this policy; that download identifies the installation to us so we can tell it which version to fetch, and discloses nothing to the network that serves the files.
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
To exercise these rights, please use the contact information provided in Section 16.
Nevada law provides Nevada residents with the right to opt out of the sale of certain personal information. We do not sell your personal information as defined under Nevada law.
Our Application is not directed at children under the age of 14, and we do not knowingly collect personal information from children under 14 who use it.
Homerun Go is rated in the app stores for an audience above that age, is not enrolled in either store's programme for children's apps, and shows no advertising. We recognise that servers hosted with Homerun Desktop or Homerun Go may be played on by children, and that the information described in Section 2.7 is collected about anyone who connects, regardless of age. We do not use that information to build advertising profiles, and we do not sell it. If you are a parent or guardian and believe we hold information about your child that you would like removed, contact us at [email protected] and we will delete it.
It is also why the chat messages and IP addresses in a server's console are removed before any log leaves a hosting device, as described in Sections 2.6 and 2.7: the person hosting a server cannot agree on their players' behalf to send us what those players typed.
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons.
The current version will always be available at https://gethomerun.app/privacy/. For substantial changes, we will provide notice through the Application or by other means. Your continued use of our Application after such modifications constitutes your acknowledgment of the modified Privacy Policy.
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at [email protected].