Privacy at a glance.
AO.Hub, short for Alpha to Omega, handles registration and login for PjotsTools. We keep account data minimal, verify new email addresses once, and never store passwords in readable plain text.
- We do not store readable plain-text passwords.
- We keep email verification, reset, and auth tokens only for their intended security purpose.
- We log limited account, download-delivery, and security events such as registration, login attempts, confirmations, and bot-filtered download activity.
- We do not sell your personal data.
1. Overview
This Privacy Policy applies to PjotsTools, AO.Hub, and the account, licensing, verification, and support services that make those tools available. New users can register an AO.Hub account, and users with an already confirmed email can log in directly.
We collect personal data only when we need it for account creation, email verification, login, entitlement syncing, download delivery diagnostics, security, support, optional marketing, and commercial licensing where applicable.
2. What we collect
Account data
Email address, optional display name, marketing preference, verification state, and timestamps such as account creation, last seen, and verification time.
Authentication data
Password hashes, password reset tokens, email verification tokens, and related security metadata needed to complete or protect account actions.
Access and entitlement data
Tool access records, commercial status, seat assignments where relevant, and other account flags required to decide what AO.Hub can install or unlock.
Security and support data
Limited IP, user agent, timestamp, and request metadata for login, registration, verification, password reset, rate limiting, diagnostics, and abuse prevention.
Download activity data
For ZIP delivery diagnostics and bot filtering, we may log the requested file, timestamp, referrer host, and a coarse country code where available. We do not use the application-level download activity log as a list of full raw download IP addresses.
Commercial and payment information
If you purchase or request commercial access, we may receive transaction references, subscription or order identifiers, and entitlement status from payment or billing partners. We do not receive or store your full payment card details.
What we do not intentionally collect
We do not intentionally collect more personal data than needed for the services above, and we do not store passwords in readable plain text.
3. How we use your data
- To create your AO.Hub account, verify your email, and let verified users log in.
- To make the tools, installs, and entitlements tied to your account available inside AO.Hub.
- To diagnose download delivery issues, understand which entry points are being used, and filter obvious crawler traffic from download activity.
- To send verification emails, password reset emails, and other essential account notices.
- To protect the service with rate limiting, token checks, and abuse or fraud prevention.
- To answer support requests, investigate bugs, and improve reliability where users report issues.
- To send optional marketing or update emails only when you explicitly opt in.
- To support commercial licensing, subscriptions, seat management, invoicing, and related records where needed.
4. Legal bases
- Contract: we process data needed to provide AO.Hub, PjotsTools, account access, and any commercial entitlements you request.
- Legitimate interests: we process limited security, logging, and operational data to keep the service reliable and protect it from abuse.
- Consent: we rely on consent for optional marketing emails and any optional data sharing you explicitly approve.
- Legal obligation: we retain records where tax, accounting, or other legal duties require us to do so.
5. Retention
We keep data only for as long as we need it for the purpose it was collected for, or for as long as the law requires.
- Account and entitlement data is kept while the account remains active and for a reasonable follow-up period where security, fraud prevention, or support requires it.
- Verification and reset tokens expire automatically and are not meant to live longer than their security purpose.
- Rate-limit and security logs are kept only as long as needed to enforce protections, troubleshoot, or investigate abuse.
- Download activity logs used for delivery diagnostics and bot filtering are kept only as long as needed to troubleshoot service issues and reduce automated abuse.
- Commercial billing or payment records are retained for accounting, contractual, and legal reasons where applicable.
6. Sharing and international transfers
We do not sell personal data. We only share it with processors and partners who help us operate the service.
- Email delivery providers for verification, password reset, and other essential transactional email.
- Hosting and infrastructure providers that keep AO.Hub and related services available.
- Payment or billing providers for commercial subscriptions, orders, and entitlement status where needed.
- Support or diagnostic tooling when required to investigate a bug or service issue.
If data is transferred outside the EU or EEA, we rely on appropriate safeguards such as adequacy decisions or standard contractual protections where required.
7. Your rights
Depending on where you live, including under the GDPR, you may have the right to access, correct, erase, restrict, or object to the processing of your personal data, and the right to data portability where applicable.
If marketing is based on consent, you can withdraw that consent at any time. You can also contact us if you want your account reviewed, corrected, or deleted.
8. Security
We use technical and organizational measures appropriate to the risk, including password hashing, time-limited tokens, rate limiting, restricted storage locations, and operational logging for security-relevant events.
No system is perfect, and no storage or transmission method can be guaranteed 100 percent secure. If we become aware of a serious incident affecting your personal data, we will handle it according to applicable law.
9. Changes, provider and contact
We may update this policy from time to time when the product, account flow, or legal obligations change. The "Last updated" date at the top reflects the current version.
Controller and provider: POWERofTWO Studio
Responsible person: Piotr "Pjot" Dyderski, BA
Address: Theresiengasse 36, 1180 Wien, Austria
Contact: pjot@pjotszen.tools
Website: get.pjotszen.tools
You also have the right to lodge a complaint with your local data protection authority if you believe your personal data has been handled unlawfully.