Privacy, in plain language.
Effective August 3, 2026
Ghost Labs is an independent software project. This policy explains what the Ghost Labs Nexus download website and Windows application process, why that information is needed, and the choices available to you.
1. The public website and downloads
The website does not require an account and does not use advertising cookies, marketing trackers, or embedded advertising. Cloudflare delivers and protects the site, installer, and published plugins and may process standard request information such as IP address, browser details, requested files, timestamps, and security signals. Ghost Labs stores only aggregate installer and plugin-version download totals and the latest download time. These counters do not store IP addresses, device identifiers, browser fingerprints, referrers, or individual download histories.
2. Ghost Labs server Viewer requests
The optional Viewer Access form issues temporary, health-only codes for the official Ghost Labs Rust server and uses Cloudflare Turnstile to prevent automated abuse. It does not generate codes for other Nexus owners or servers. Ghost Labs does not ask for a name, email address, account, or personal profile. The website converts the requesting network address into a secret-keyed, short-lived rate-limit value and never stores the raw address. That value expires with its rate-limit window and is not used to recognize a person, device, or browser later. The Relay keeps an audit of issuance, redemption, expiration, rejection, and owner revocation, but the website does not keep individual code-request histories.
3. The owner portal
The private owner portal uses Cloudflare Access to verify the authorized owner email. It stores Nexus and plugin release metadata plus private staging files so the owner can publish, withdraw, or roll back releases. Aggregate download statistics are visible only inside this protected portal. Owner controls, statistics, and unpublished files are not part of the public catalog or public APIs.
4. The Nexus application
When you pair Nexus with an approved server, the service processes the information necessary to authenticate your device and enforce your assigned role. This can include your display identity, server membership, permissions, device authorization status, connection health, update status, authorized actions, results, expiration, and security or audit events. Public Viewer access uses a generated anonymous label and is limited to the health-only role set by the Relay.
5. How information is used
Information is used to connect approved devices, display server status, perform actions you are allowed to request, enforce owner, staff, and Viewer boundaries, prevent abuse, diagnose failures, provide updates, and support the service. Ghost Labs does not sell personal information.
6. Credentials and support reports
Device authorization is protected on Windows. Pairing codes are short-lived and single use. Support reports are designed to omit pairing secrets and protected device credentials. Never email a pairing code, password, or other secret to support.
7. Retention and control
Operational and audit records may be retained as needed to secure, operate, troubleshoot, and improve Nexus. Server owners control membership and can revoke device access, including public Viewer access, immediately. For privacy questions or requests concerning your data, contact Ghost Labs using the legal address below.
8. Contact
Privacy, data, licensing, and legal questions: legal@ghostlabsnexus.com. Product and installation help: support@ghostlabsnexus.com.