Privacy Policy

Last updated: August 31, 2026

Overview

CronJob.io is a self-hosted cron job scheduling application. This policy explains the information the application collects and how it is handled. Because the application can be self-hosted, the way your data is stored and processed depends on the instance and the infrastructure you or your host operate.

Data we collect

  • Account information — when you register, we store your name, email address and a hashed password to authenticate you.
  • Job configuration — the cron jobs you create, including target URLs, HTTP methods, headers, bodies, schedules and validation rules.
  • Execution history — records of each job run, including status, timing, request and response data.
  • Test URLs and API tester activity — the endpoints you register and the requests and responses you capture.
  • Session data — a session token and essential cookies are used to keep you signed in and protect your account.
  • Error and analysis data — if you use the AI dev assistant, frontend errors and API failures may be captured and analyzed to provide root-cause and fix suggestions.

How data is used

Your data is used to provide and operate the application: creating and running your cron jobs, storing and displaying execution history, keeping you authenticated, and powering the monitoring and AI assistant features. It is not sold or shared with third parties for advertising purposes.

Sensitive data in requests

Cron jobs and API tester calls may include headers such as Authorization, API keys or tokens. This data is stored to run your jobs and is displayed back to you for debugging. You should only store credentials you are comfortable keeping in the application, and you can delete jobs at any time.

Data storage and security

Data is stored in a MongoDB database and protected by authentication, rate limiting and security headers. Because the application is self-hosted, storage location and retention largely depend on the hosting environment you choose.

Data retention

You can delete your cron jobs, test URLs and execution records from the application at any time. An authenticated user's data is generally removed when their account or data is deleted through the application's available controls.

Your rights

Depending on your jurisdiction (for example under the GDPR), you may have the right to access, correct, delete or export your personal data, or to object to certain processing. Because instances can be self-hosted, contact the operator of the instance you use to exercise these rights.

Changes to this policy

We may update this policy from time to time. Material changes will be reflected by updating the "Last updated" date at the top of this page.