← Back

Privacy Policy

Last updated 2026-10-01

Command is team-management software that each robotics team runs on its own server. This policy explains what information Command handles, who can see it, and the choices you have. Many Command users are under 18, so we collect as little as we can.

Who is responsible for your data

Your team (the organization that runs this copy of Command) decides who joins and is responsible for the data stored on its server. Contact your team's admins for questions about your account or data.

Alex Radu (the software owner) does not receive your personal data, except for the limited team-level information described under "Registry and license check" below.

What Command collects

What Command does not collect

How your information is used

Who can see what

Cookies and local storage

Command uses one strictly necessary cookie to keep you signed in (httpOnly, expires after 30 days of inactivity), short-lived cookies during Google sign-in and setup, and your theme choice stored in your browser. The installed app also keeps a cache of recently viewed pages on your device (cleared when you sign out) and, if you go offline, a queue of clock-in and clock-out taps until they sync. There are no advertising or tracking cookies.

Service providers

Registry and license check

Command contacts a registry run by the software owner when it is set up and about once a day. It sends only: a random install ID, the software version, the team name, team number and region, the number of active members, and a build integrity value. It sends no names, emails, attendance or member lists. The registry keeps a one-way hash of the connecting IP address for at most 30 days, used only to detect misuse of the license. This is a condition of the software license.

How long we keep data

Your choices and rights

You can turn each notification type off, remove push devices by turning notifications off in your browser, hide yourself from the leaderboard, and export your own hours. You can ask your team's admins to correct or erase your data. Depending on where you live (for example under GDPR or California law) you may have additional rights to access, correct, delete or restrict use of your data; your team's admins handle these requests.

Children and students

Command is meant for use by teams that include minors. Teams are responsible for having any parent or guardian and school permissions their organization requires before adding students, and for using the parent-link feature only with a guardian's involvement. Parents can ask the team to see, correct or erase their child's data. Command collects only what is needed to run attendance and scheduling for the team.

Security

Passwords are hashed with Argon2, sign-in attempts are rate limited, tokens are stored only as hashes and expire, and access is checked on the server for every request. No system is perfectly secure; tell your team's admins and the owner if you suspect a problem.

Changes and contact

We will update this page and its date when Command's data practices change. Questions about your data: contact your team's admins. Questions about the software or registry: [email protected].