Skip to content

Privacy Policy

Last updated September 2026

We collect the minimum information needed to run CloakMC.

What we store

  • Account: username, email address, and a salted Argon2id hash of your password (never the password itself).
  • Minecraft link: your Minecraft UUID and username, verified with Mojang's session servers.
  • Capes: images you upload (re-encoded, with metadata stripped) and which cape you have equipped.
  • Devices and sessions: hashed tokens, device name, mod/Minecraft version, browser user agent and IP address, for security.
  • Billing: Stripe customer and subscription identifiers and status. Card details are handled by Stripe and never reach us.

What other players see

When a CloakMC client looks up a player, it receives only what's needed to render the cape: a cape id, a texture link and animation settings. Your email, billing details, IP history, device tokens and internal account id are never shared with other players.

Your credentials

CloakMC never asks for your Microsoft or Minecraft password. Account linking uses a short code plus Minecraft's own session verification.

Your choices

You can unlink Minecraft accounts, revoke devices, delete uploaded capes and sign out sessions from your dashboard. To delete your account, contact [email protected].

This policy is a template for the development build and should be reviewed by legal counsel before launch.