Privacy Policy

Last updated: October 1, 2026

Planning Llama is built with privacy as a default — no account, no ads, and your planning sessions are anonymous. This policy explains what little data we handle and how.

What We Collect

We collect almost nothing. Specifically:

  • Nickname — chosen by you, used only to identify you to others in the same room. Held in server memory during the session and discarded afterwards.
  • Card symbol — an emoji you optionally choose to display on your card. Shared with other players in the same room during the session only.
  • Anonymous session ID — a random identifier stored in your browser to keep you in a room. Contains no personal information.
  • Local preferences — your nickname, deck preference, card symbol, recently visited room IDs, and UI state (such as whether the Sessions panel is open) are saved in your browser's local storage for convenience. We never have access to this data.

What We Do Not Collect

  • No real names, email addresses, or any personal identifiers
  • No account registration required
  • No cross-site tracking
  • No advertising, ad networks, or third-party marketing trackers — Planning Llama shows no ads

Server-Side Data

During an active game, your nickname, card symbol, and vote are held in server memory solely to broadcast state to other players in the same room. This in-memory data is discarded when the session ends or the room is vacant.

Room configuration — such as the room name, selected card deck and issue tracker link — is saved to our database so your settings persist across sessions. This contains no personal information.

Estimation session history — when votes are revealed, Planning Llama records the result to the database: the item title, optional ticket ID, each participant's chosen nickname and vote value, and aggregate stats (average, unanimous flag). This data is attached to your room and is visible to anyone who joins the same room. It is not linked to any personal account. You can delete individual history entries at any time from the Sessions panel. We periodically purge records belonging to inactive rooms.

Analytics

We use Umami, a privacy-first, cookieless analytics tool, to understand aggregate usage patterns (such as page views and referrers). Umami does not use cookies, does not collect any personal data, and does not track you across other websites. All metrics are anonymous and aggregated — they cannot be used to identify you.

Error Monitoring

We use Sentry to automatically capture application errors and crashes so we can fix bugs quickly. When an error occurs, Sentry may collect:

  • Browser name and version (e.g. Firefox 151)
  • Operating system name and version (e.g. Windows)
  • The page URL where the error occurred
  • A session replay snapshot used solely for debugging

This data contains no information that identifies you personally. It is used only for diagnosing and fixing issues with the application.

Server Logs

To diagnose outages, slow responses and dropped connections, our server writes operational logs, which are also sent to Sentry. A log entry may include:

  • The room ID, and the anonymous session ID your browser keeps (the same ID in every room you join from that browser)
  • The part of the service requested, the response status and how long it took
  • Your browser's user-agent string (browser and operating system name and version) and your country, as reported by our network provider
  • Why a connection closed, how long it had been open, and details of any error
  • Why your browser connected or reconnected (for example, the tab came back into view), whether the tab was in the background, and how long it had been

These logs never include your nickname, your votes or your IP address. The copy on our server is deleted after 5 days; the copies held by Sentry and our hosting provider are kept for a limited time and then deleted.

Separately, our server keeps a short request log to investigate abuse and errors. For each request it records your IP address, user-agent string, the URL (which can include a room ID), the referring page, and the response status and time. It is deleted automatically after 5 days.

PWA & Installed App

If you install Planning Llama as a Progressive Web App, no additional data is collected beyond what is described above. The service worker caches static assets on your device solely to enable offline loading of the app shell.

Infrastructure

Planning Llama is hosted on reputable cloud providers. All traffic is encrypted in transit via TLS.

Cookies

We do not use cookies. Your browser's local storage is used for session continuity, which stays on your device.

Children

Planning Llama does not knowingly collect any data from anyone. The service is intended for professional and team use.

Changes

If this policy changes materially, we will update the date above. Continued use of the service constitutes acceptance of the updated policy.

Contact

Questions? Reach us at hello@planningllama.com.