Ad
 
Learn More

Privacy Policy

Learn how Watch Changelog collects, uses, and protects your personal information.

Effective Date: August 28, 2026

Introduction

Watch Changelog ("we," "our," or "us") operates watchchangelog.com and provides an API service for accessing vendor changelog data. This Privacy Policy explains how we collect, use, and protect your personal information when you use our website and services.

We are committed to protecting your privacy. We do not sell personal data to third parties and only collect the minimum information necessary to operate the service.

Information We Collect

Account Information

When you create an account on Watch Changelog, we collect:

  • Email address (used for authentication and account recovery)
  • Hashed API keys (stored as SHA-256 hashes with unique prefixes; plaintext keys are shown only at creation)
  • Selected changelog sources (to enforce plan limits and track which sources you access)
  • Plan tier (free, starter, or all)

Newsletter

If you subscribe to our newsletter, we collect your email address. Newsletter subscriptions are optional and separate from account creation. You can unsubscribe at any time using the link provided in each newsletter email.

Source Requests

When you submit a changelog source request, we collect:

  • Changelog URL (required)
  • Source name and vendor (optional)
  • Your email address (optional)
  • Additional context or notes (optional)

Source request data is stored for internal review and catalog expansion. We do not use this data for marketing purposes or share it with third parties. This is not a CRM system.

API Usage

We log API requests for rate limiting, abuse prevention, and service monitoring. Logs include:

  • API key hash (not the plaintext key)
  • Requested endpoints and query parameters
  • Response status codes
  • Timestamp

API logs are retained for up to 90 days for operational purposes and are not shared with third parties.

Website Analytics

We use privacy-respecting analytics to understand how visitors use our website. We do not track individual users or collect personally identifiable information through analytics. If you have Do Not Track enabled in your browser, we honor that preference.

How We Use Your Information

We use the information we collect to:

  • Provide and maintain the Watch Changelog API service
  • Authenticate your account and enforce plan limits
  • Process source requests and expand the catalog
  • Send newsletter emails (only if you opted in)
  • Respond to support inquiries
  • Detect and prevent abuse or fraudulent activity
  • Improve the service based on usage patterns

We do not use your information for advertising, behavioral profiling, or other purposes unrelated to operating the service.

Data Sharing and Disclosure

We do not sell, rent, or share your personal information with third parties, except in the following limited circumstances:

  • Service providers: We may share information with trusted service providers who help us operate the service (e.g., hosting, email delivery). These providers are contractually obligated to protect your information and use it only for the purposes we specify.
  • Legal requirements: We may disclose information if required by law, legal process, or government request, or if necessary to protect the rights, property, or safety of Watch Changelog, our users, or others.

Data Security

We implement industry-standard security measures to protect your personal information:

  • API keys are hashed with SHA-256 before storage (plaintext keys are never stored)
  • Account passwords are hashed using strong, industry-standard algorithms
  • All data is transmitted over HTTPS
  • Database access is restricted and monitored

While we strive to protect your information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.

Data Retention

We retain your personal information for as long as your account is active or as needed to provide you with services. If you delete your account, we will delete your personal information within 30 days, except where retention is required by law or for legitimate business purposes (e.g., fraud prevention, legal compliance).

API logs are retained for up to 90 days. Newsletter subscriptions are retained until you unsubscribe. Source requests are retained indefinitely for catalog expansion and review.

Your Rights

You have the right to:

  • Access your personal information
  • Correct inaccurate or incomplete information
  • Request deletion of your account and associated data
  • Opt out of newsletter emails at any time
  • Export your data (source selections, API usage logs)

To exercise these rights, email us at hello@watchchangelog.com. We will respond to your request within 30 days.

Children's Privacy

Watch Changelog is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will delete it immediately.

Changes to This Policy

We may update this Privacy Policy from time to time. When we make changes, we will update the "Effective Date" at the top of this page and notify you via email (if you have an account) or by posting a notice on our website.

Your continued use of the service after any changes indicates your acceptance of the updated Privacy Policy.

Contact Us

If you have questions about this Privacy Policy or how we handle your personal information, please contact us at hello@watchchangelog.com.

Watch Changelog is operated by Tom Granot in Amsterdam, Netherlands.