GDPR Privacy Agreement

Data Security

What Opensolr collects, what it does with it, and what it will never do. The short version: an email address and a password, nothing more, and your index data is yours.

ImmuniWeb Website Privacy Test: opensolr.com rated A+
Independently tested: A+ for website privacyImmuniWeb’s Website Privacy Test of opensolr.com on September 5, 2026 found no tracking pixels, no third-party cookies, no data in local storage and no forms posting to other domains. View the full report · Download the PDF certificate

01 · Membership and agreement

Registration is the only way in

Accounts are created through the Opensolr registration form.

What you agree to

The Terms of Service, the Privacy Policy and this GDPR agreement.

02 · What we collect

Two mandatory fields

An email address and a password of your choosing. That is the whole set.

Changing them

The password is yours to change at any time. To change the registration email address, send a formal request to support@opensolr.com.

Anything else is optional

A website, social links and similar details are voluntary, and you can leave them empty.

No billing data, ever

Opensolr does not collect, store or process payment information. Payments run through Stripe, on PCI-compliant infrastructure.

Your index data is not ours

Opensolr staff, subcontractors and third parties have no access to the content of your indexes without your consent, other than in a technical emergency where restoring service requires it.

03 · How personal data is processed

Opensolr will never publish, sell or trade a member's personal information.

Your email address is used for login and identification, and for the notices listed below.

All data stored and processed on Opensolr infrastructure is protected by the platform security controls.

Billing and payment data is never handled directly by Opensolr.

04 · Data security

Encrypted in transit

Every connection to Opensolr, the website and the Solr servers alike, runs over TLS.

Certificates renew themselves

Issuance and renewal are automated across the platform, so a certificate cannot silently expire.

Two-factor authentication

Available on every account, by SMS, and delivered over TLS. Setup is in how to enable two-factor authentication.

Access controls on your indexes

HTTP authentication and per-handler IP rules are described in Solr cloud data security.

05 · Communication policy

Opensolr never sends unsolicited email or postal mail. The messages we do send are operational and limited to:

Maintenance windows and emergency alerts.

Account notices: resource usage, password resets, plan changes.

Service changes that affect every member.

To stop receiving them, close the account by writing to support@opensolr.com. What that does, and what is kept afterwards, is in cancelling your subscription or closing your account.

Exercising a data protection right?

Access, rectification, erasure, restriction, portability and objection all go to one address, and we answer within the thirty days the GDPR allows.

Write to supportFull privacy policy