Privacy

Last updated: October 2026

The short version

Your cron jobs are your business. RunWisp never sees your tasks, config or output. The only thing the daemon sends on its own is an update check, which we turn into anonymous daily install counts. One setting turns it off. Your IP address is never stored and never sent anywhere. The website counts visits with Cloudflare's cookieless Web Analytics.

The daemon (the binary you install)

What stays on your machine. Your runwisp.toml, task output, logs, run history and secrets. There are no accounts. We never see what you run, when it runs, or whether it worked. If your 3am backup fails, that's between you and your logs.

The update check. About every 6 hours, the daemon asks concierge.runwisp.com one question: is there a newer version? The request carries the RunWisp version, OS and CPU architecture. That's the whole payload. No install ID, no hostname, no task names.

We also count these checks, because shipping software into the void gets lonely. Our CDN tags each request with a country, so we never look up your IP address. The IP is only used to tell installs apart within a single day, through a hash whose key we destroy at the end of each UTC day. It is never stored and never sent anywhere. A row of what we keep looks like this: Oct 1, Germany, v2.4.0, linux/amd64: 1,337 active installs.

Rather not? Set check_updates = false under [daemon]. After that the daemon makes no outbound requests unless you configure notifications or Station.

The install script. get.runwisp.com asks the same service for the latest release, sends your OS and architecture, and gets counted the same way. Pin a version with RUNWISP_VERSION=v1.3.1 and it skips the question entirely.

Feedback. The Web UI may ask how it's going, at most once a month. Nothing leaves until you press Submit, and then only your rating, your optional note and the RunWisp version.

Station. Strictly opt-in. Station only connects when you configure it, and only to the server you point it at.

The website (runwisp.com)

Cloudflare Web Analytics counts page visits. It is cookieless, collects no personal data, and is injected at the Cloudflare edge; no analytics script lives in this site's source. There are no tracking pixels, no third-party ads, no fingerprinting.

If you click "Get notified" anywhere on the site, you'll be sent to a Google Form where you can voluntarily leave an email address. We use that email only to tell you when Station ships, and you can stop hearing from us by ignoring the form or asking us to delete the entry. Don't want to share an email? Skip the form; the rest of the site, and the daemon, work fine.

Hosting

runwisp.com is served by Cloudflare Pages. Standard request metadata (IP address, timestamp, user-agent) flows through Cloudflare's edge logs as part of serving the page; Cloudflare retains and protects that data under its own privacy terms.

Source code

Both the daemon and this site are open-source. If you want to verify any of the above, the source is on GitHub.

Questions

File an issue on GitHub and we'll respond.