Privacy Policy
This policy explains what data is collected when you use this website, sign in, submit a form, or run your own Recto instance.
Last updated August 13, 2026
Who this applies to
Recto is open-source form software. If you visit this website, use the demo, sign in, or submit a response to a published form hosted here, this policy applies to how that instance handles your data.
If someone else runs Recto on their own server, they are the data controller for that instance. This policy does not govern self-hosted deployments you do not operate.
What we collect
- Account information. If you sign in with Google, we receive your name, email address, and profile image from Google. We do not receive your Google password.
- Form responses. Answers you submit to a published form are stored in our database and may be synced to a Google Sheet connected by the form owner.
- Uploaded files. If a form accepts file uploads, those files are stored in object storage linked to the submission.
- Technical data. We may process a hashed version of your IP address for rate limiting and abuse prevention. We do not store raw IP addresses in submission records.
- Usage events. Anonymous landing-page events (for example, demo or GitHub link clicks) may be logged server-side. We do not use third-party ad or analytics pixels.
How we use data
- Authenticate you and operate your account.
- Store and deliver form submissions to the form owner.
- Sync submissions to Google Sheets when the owner has connected one.
- Prevent spam, abuse, and excessive automated submissions.
- Operate, secure, and improve the service.
We do not sell your personal data.
Google services
Sign-in uses Google OAuth. Sheet sync uses a Google service account that form owners explicitly share with. Google's own privacy policy applies to data processed by Google when you use their services.
Retention
Account data is kept while your account exists. Submissions are kept until deleted by the form owner or when the form is removed. Playground and demo forms may expire automatically.
Your choices
- You can stop using the service at any time. Form respondents can avoid submitting a form.
- To request access, correction, or deletion of data tied to this website, contact us via GitHub Issues. If you submitted a form, contact the form owner first — they control that data.
Self-hosting
The Recto source code is available on GitHub. Operators of self-hosted instances are responsible for their own privacy notices and compliance obligations.
Changes
We may update this policy from time to time. Continued use of the website after changes are posted means you accept the updated policy.
See also our Terms of Service and Cookie Policy.