Privacy Policy


Effective Date: November 16, 2025

Version: 1.0


1. Introduction


Welcome to DynamoDB Navigator ("we," "our," or "us"). We are committed to protecting your privacy and being transparent about how we handle your information. This Privacy Policy explains our practices regarding data collection, use, and security.


2. Our Privacy-First Approach


DynamoDB Navigator is designed with privacy as a core principle:


  • **Your AWS credentials are stored locally on your device only** - We never transmit, store, or have access to your AWS credentials on our servers
  • **Your data stays with you** - All DynamoDB data accessed through our tool remains between your device and AWS
  • **Minimal data collection** - We only collect the absolute minimum information necessary to provide our services

  • 3. Information We Collect


    3.1 Account Information

    When you create an account, we collect:

  • Email address
  • Password (encrypted and hashed)
  • Account creation date

  • 3.2 Terms Acceptance Records

    We store records of your acceptance of our Terms of Service, including:

  • Date and time of acceptance
  • Terms version accepted
  • Your email address
  • IP address (for verification purposes)

  • 3.3 Automatically Collected Information

    We may automatically collect:

  • Browser type and version
  • Device information
  • IP address
  • Usage patterns and analytics (aggregated and anonymized)

  • 3.4 Information We Do NOT Collect or Store

  • **AWS credentials** - These are encrypted and stored only in your browser's local storage
  • **DynamoDB data** - Your database content is never transmitted to or stored on our servers
  • **AWS account information** - We never access or store your AWS account details

  • 4. How We Use Your Information


    We use the collected information to:

  • Create and manage your account
  • Authenticate your identity
  • Provide and improve our services
  • Send important service updates and notifications
  • Comply with legal obligations
  • Prevent fraud and abuse

  • 5. Data Storage and Security


    5.1 Local Storage (Your Device)

  • AWS credentials are encrypted using industry-standard encryption (AES-256)
  • Credentials are stored only in your browser's local storage
  • You can clear this data at any time through your browser settings

  • 5.2 Server Storage (Our Database)

  • Account information is stored securely using Supabase
  • Passwords are hashed using bcrypt
  • All data transmission uses HTTPS/TLS encryption
  • We implement industry-standard security practices

  • 6. AWS Integration


    When you use DynamoDB Navigator:

  • Your device connects directly to AWS using your credentials
  • We act as a client-side tool facilitating this connection
  • All AWS data access is governed by AWS's terms and policies
  • You remain responsible for your AWS account security and usage

  • 7. Data Sharing and Disclosure


    We do NOT sell, rent, or trade your personal information.


    We may share your information only in these limited circumstances:

  • **With your consent** - When you explicitly authorize us to share information
  • **Legal requirements** - When required by law, court order, or government regulation
  • **Service providers** - With trusted third-party services (like Supabase for authentication) under strict confidentiality agreements
  • **Business transfers** - In the event of a merger, acquisition, or sale of assets

  • 8. Your Rights and Choices


    You have the right to:

  • **Access** - Request a copy of your personal information
  • **Correction** - Request corrections to inaccurate information
  • **Deletion** - Request deletion of your account and associated data
  • **Export** - Export your account information
  • **Opt-out** - Unsubscribe from promotional emails (service emails may still be necessary)

  • To exercise these rights, contact us at the email address provided in Section 13.


    9. Data Retention


    We retain your information for as long as:

  • Your account is active
  • Necessary to provide services
  • Required by law or legitimate business purposes

  • When you delete your account, we will delete or anonymize your personal information within 30 days, except where retention is required by law.


    10. Cookies and Tracking Technologies


    We use minimal cookies and similar technologies:

  • **Essential cookies** - Required for authentication and security
  • **Session cookies** - To maintain your logged-in state
  • **Analytics** - Aggregated and anonymized usage statistics

  • You can control cookies through your browser settings.


    11. Third-Party Services


    We use the following third-party services:

  • **Supabase** - For authentication and database services
  • **AWS** - Your direct connection to DynamoDB (not through our servers)

  • These services have their own privacy policies, and we encourage you to review them.


    12. Children's Privacy


    DynamoDB Navigator is not intended for users under 13 years of age. We do not knowingly collect information from children under 13. If we become aware of such collection, we will delete the information immediately.


    13. International Users


    Our services are hosted in [specify region if applicable]. By using our services, you consent to the transfer and processing of your information in accordance with this Privacy Policy.


    14. Changes to This Privacy Policy


    We may update this Privacy Policy from time to time. We will notify you of material changes by:

  • Posting the updated policy on our website
  • Updating the "Effective Date" at the top
  • Sending an email notification for significant changes

  • Continued use of our services after changes constitutes acceptance of the updated policy.


    15. California Privacy Rights (CCPA)


    If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):

  • Right to know what personal information is collected
  • Right to know if personal information is sold or disclosed
  • Right to opt-out of the sale of personal information (we do not sell personal information)
  • Right to deletion
  • Right to non-discrimination for exercising your rights

  • 16. European Privacy Rights (GDPR)


    If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):

  • Right to access your personal data
  • Right to rectification
  • Right to erasure
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing
  • Right to withdraw consent

  • Our lawful basis for processing your data includes:

  • **Consent** - You have given clear consent
  • **Contract** - Processing is necessary for our service
  • **Legal obligation** - Required by law
  • **Legitimate interests** - For service improvement and security

  • 17. Data Security


    We implement appropriate technical and organizational measures including:

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest for sensitive data
  • Regular security assessments
  • Access controls and authentication
  • Secure coding practices

  • However, no method of transmission over the Internet is 100% secure. We cannot guarantee absolute security.


    18. Contact Us


    If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us at:


    Email: [Your contact email]


    Response Time: We aim to respond to all inquiries within 7 business days.




    BY USING DYNAMODB NAVIGATOR, YOU ACKNOWLEDGE THAT YOU HAVE READ AND UNDERSTOOD THIS PRIVACY POLICY AND AGREE TO ITS TERMS.