Privacy Policy
Last updated: May 2026
1. Who we are
lowcodeapps.dev ("we", "us", "our") is a software platform that allows users to build, configure, and deploy database-driven web and mobile applications.
Networks 2000 is the data controller for account and billing information processed through the platform. By using our platform, you agree to this Privacy Policy.
Business contact
Email: privacy@lowcodeapps.dev
Jurisdiction: EU — Italy
Address: Via Granatieri del Cengio 48
2. Information we collect
Account information
When you register, we collect your name, email address, and password (hashed — we never store your plaintext password).
Usage data
We collect information about how you use the platform — pages visited, features used, and error events — to improve the service. This data is aggregated and de-identified where possible.
Your application data
The databases you connect to lowcodeapps.dev and the data within them remain yours. We access your data only to operate the service (for example, to run queries you initiate through the CRUD interface).
Billing information
Payment details are handled by our third-party payment processor (Paddle). We do not store credit card numbers on our servers.
3. Legal basis for processing
Under GDPR and applicable data protection law, we process personal data on the following legal bases:
- Contractual necessity — to provide and maintain the platform and related services.
- Legitimate interests — to improve platform reliability, security, and usability.
- Legal obligations — where processing is required by applicable law.
- Consent — where you explicitly provide consent for optional communications or features.
4. How we use your information
- To operate, maintain, and improve the platform.
- To send you service notifications (password resets, invitation emails, security alerts).
- To process payments and manage your subscription.
- To respond to your support requests.
- To comply with legal obligations.
We do not sell your personal data. We do not use your data for advertising.
5. Data storage and security
Your data is stored on servers located in the European Union.
We implement industry-standard security measures including:
- TLS encryption in transit
- Hashed passwords
- CSRF protection
- Role-based access controls
No system can guarantee complete security. If a security breach affecting your personal data occurs, we will notify affected users and relevant authorities as required by applicable law.
Where personal data is transferred outside the European Economic Area, we use appropriate safeguards such as Standard Contractual Clauses approved by the European Commission.
6. Your databases
When you connect an external database (such as MySQL or PostgreSQL), your credentials are encrypted at rest.
We access your database only to perform operations you explicitly initiate through the platform, including:
- Reading records
- Running CRUD operations
- Schema introspection during the app-builder wizard
We do not analyse, mine, or share the contents of your connected databases.
For data stored in databases connected by customers, lowcodeapps.dev acts as a data processor, while the customer remains the data controller responsible for the legality of the data processed through the platform.
7. Cookies
We use session cookies necessary for authentication and CSRF protection. We do not use third-party tracking cookies or advertising cookies. You can disable cookies in your browser, but the platform will not function correctly without required session cookies.
8. Third-party services
We use the following third-party services:
- Paddle — payment processing, subject to Paddle's privacy policy.
- EU-based hosting providers and infrastructure services required to operate the platform.
We do not embed Facebook Pixel, Google Analytics, or other third-party advertising or tracking scripts on our platform pages.
9. Your rights
Under GDPR and applicable data protection law, you have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your account and associated personal data.
- Object to or restrict certain processing.
- Export your data in a portable format.
- Lodge a complaint with your local data protection authority.
To exercise these rights, email us at privacy@lowcodeapps.dev.
10. Data retention
We retain your account data for as long as your account is active. If you delete your account, we remove your personal data within 30 days, subject to any legal retention obligations. Aggregated and de-identified usage statistics may be retained indefinitely for operational and analytical purposes.
11. Children's privacy
The platform is not intended for children under the age of 16, and we do not knowingly collect personal data from children. If you believe a child has provided personal data through the platform, contact us and we will remove the information promptly.
12. Changes to this policy
We may update this Privacy Policy from time to time. We will notify users by email and by posting a notice on the platform at least 14 days before material changes take effect. The "last updated" date at the top of this page reflects the most recent revision.
13. Contact
For privacy questions or to exercise your rights, contact:
privacy@lowcodeapps.dev