Privacy Policy
Effective date: February 2026
LeanBill is a FinOps dashboard for small cloud providers. We are currently in a pre-launch phase -- our product is not yet live, and we do not have user accounts or store customer data. This policy covers what happens when you visit our website at leanbill.app.
We believe in keeping things simple and transparent. We collect as little data as possible and do not use cookies.
What We Collect
Right now, LeanBill is a landing page. There are no user accounts, no passwords, and no payment processing. The only personal information we receive is:
- Name and email address -- only if you choose to book a call through Calendly. This information is provided directly to Calendly and shared with us so we can schedule the meeting.
- Early access form data -- if you request early access, we collect your name, email address, company name, and optionally your cloud provider preferences and monthly spend range via a form on our website. This data is stored in Cloudflare D1 (serverless SQLite). We use this information solely to notify you when LeanBill launches and to prioritize beta access.
- Anonymous usage data -- page views, referrer URLs, browser type, operating system, screen size, and country (derived from IP address). This is collected through Umami Analytics and contains no personal identifiers. See the Analytics section below for details.
We do not use cookies, and we do not build user profiles. IP addresses are processed by our hosting provider (Cloudflare Pages) for the purpose of delivering the website, but we do not collect or store them ourselves.
Analytics
We use Umami Analytics, a privacy-friendly analytics tool, to understand how visitors use our website. Umami is designed to be compliant with GDPR, CCPA, and PECR without requiring a cookie consent banner.
Umami collects:
- Page views and referrer URLs
- Browser and operating system type
- Screen size
- Country (derived from IP address, but the IP itself is not stored)
Umami does not use cookies, does not collect personal information, does not track users across websites, and does not store IP addresses. The analytics data is hosted by Umami at cloud.umami.is.
Third-Party Services
Our website uses a small number of third-party services:
Cloudflare
Our website is hosted on Cloudflare Pages. Cloudflare processes IP addresses and connection metadata as part of delivering the website to your browser. Early access form submissions are stored in Cloudflare D1 (serverless SQLite). See Cloudflare's privacy policy.
Fonts
We use system fonts built into your operating system. No external font requests are made, so no data is transmitted to third parties for typography.
Calendly
Our website contains links to Calendly for booking calls. When you click a Calendly link, you leave our website and are subject to Calendly's privacy policy. If you book a call, we receive the name and email address you provide to Calendly so we can confirm and attend the meeting. We do not embed Calendly widgets on our site -- it is an external link.
Umami Analytics
As described in the Analytics section above. Hosted at cloud.umami.is by Umami. See their privacy policy.
Data Storage & Security
Since we are in a pre-launch phase, we do not store any customer data ourselves. Early access form submissions (name, email, company, cloud preferences, spend range, and consent timestamp) are stored in Cloudflare D1. Analytics data is stored by Umami on their infrastructure. Booking information (name and email) is stored by Calendly and accessible to us through their platform.
We do not sell, share, or transfer personal information to any third parties beyond what is described in this policy.
Your Rights
Depending on where you live, you may have the right to:
- Request access to any personal data we hold about you
- Request deletion of your personal data
- Object to or restrict processing of your data
- Withdraw consent at any time
In practice, the only personal data we may hold is your name and email if you booked a Calendly call, or your name, email, and company if you requested early access. If you'd like us to delete this, just email us and we'll take care of it.
When the Product Launches
When LeanBill launches (private beta planned for March 2026), the product will connect to cloud provider accounts (starting with DigitalOcean) via read-only API access to retrieve billing data, resource inventory, and usage metrics. At that point, we will update this privacy policy to cover account creation, data collected through cloud provider APIs, how that data is stored and secured, and your rights regarding it.
We will never request write access to your cloud provider accounts. All API connections will be read-only.
Changes to This Policy
We may update this privacy policy as our product evolves. When we make significant changes, we will update the effective date at the top of this page. We encourage you to review this policy periodically.
Contact
If you have any questions about this privacy policy or how we handle your data, please email us at [email protected].