Current version · Data processing rules

How your data is collected, used, and protected

This policy explains the information involved when you visit the MacRents website, create or manage an account, rent a dedicated physical Mac mini, make a payment, or request support, including the data categories, processing purposes, retention principles, and rights available to you.

Key points

We process information only to the extent necessary to fulfill orders, deliver nodes, and protect accounts and services. We do not sell personal information. Any sharing for payments, infrastructure, or legally required responses is limited to the data fields needed for the specific task.

01

Scope

This policy applies to personal information processed when you visit macrents.com, browse plans and help content, create or manage a service account, configure a Cloud Mac order, pay an invoice, view instance status, or submit an inquiry through support email or a console ticket.

Our users include individuals who place orders directly, authorized team members acting on behalf of a team, business project contacts, and visitors who browse the site without creating an account. Before adding member information to the service, team administrators should confirm that they have the necessary authorization and submit only the information required for collaboration.

Covered processing scenarios

  • Website access: Basic access data generated when you view pages and plans or use language switching and security features.
  • Account and console: Authentication, order management, instance management, invoice viewing, and ticket communications.
  • Cloud Mac services: Assigning dedicated physical nodes, generating connection details, and recording necessary runtime and security events.
  • Support requests: Pre-sales, billing, technical, security, and privacy questions submitted through support@macrents.com or a console ticket.

You control the content and use of project files that you create, upload, or process yourself on a dedicated physical Mac mini. We process related technical information only as necessary to deliver the service, troubleshoot issues, respond to security events, or fulfill your explicit request.

02

Information we collect

The information we collect depends on the features you use. Browsing without an account does not generate order information; we process only the data required when you register, place an order, pay, manage an instance, or request support.

Account and contact details

This may include your email address, account identifier, verification result, team or organization name, and contact details you voluntarily provide in a support request. Passwords are handled in protected verification form and are never requested in plain text through support messages.

Order and configuration details

This may include the order number, selected MacRents model, rental term, node, SSD add-on, Thunderbolt 5 parallel connection option, order status, amount, and records of creation and status changes.

Device and browser data

This may include your IP address, browser type, operating system category, page path, language settings, request time, session security identifier, and limited technical signals used to identify unusual access.

Support records

This may include the ticket subject, issue category, order number, node, incident time range, reproduction steps, sanitized logs you submit, replies, and handling status.

Necessary runtime logs

This may include node assignment, connection status, authentication, security events, administrative actions, service errors, and resource status. Logs support delivery, troubleshooting, and security audits; they are not used to read your project content.

Payment reconciliation data

This may include the order amount, USD settlement record, payment channel, transaction status, and transaction identifier used to reconcile payment. Complete card details are handled by the relevant payment processor.

Please do not submit unnecessary sensitive information

Do not include private keys, complete access credentials, access tokens, certificate passwords, or unsanitized personal data in support messages or tickets. Troubleshooting usually requires only the order number, node, time range, reproduction steps, and relevant error excerpts.

03

How we use information

We use information for clear, explainable service purposes. Each purpose has its own data scope, and a support request does not automatically expand processing to data unrelated to the issue.

  1. Provide and deliver services Create accounts, generate orders, assign dedicated physical Mac mini devices, provide connection details, display instance and billing status, and process renewals, cancellations, or configuration changes.
  2. Verify identity and protect accounts Complete verification checks, maintain login sessions, detect unusual access, rotate credentials, and handle account recovery requests.
  3. Process orders and payments Calculate order items, confirm USD amounts, receive payment status, match transaction records, and show you verifiable billing results.
  4. Protect node and network security Detect unauthorized access, malicious requests, and resource abuse, and protect management networks, tenant traffic, and physical node delivery processes.
  5. Respond to support requests Identify connection, build, network, billing, or instance issues, document the work performed, and help subsequent support staff understand the troubleshooting steps already taken.
  6. Meet legal obligations Retain necessary order, transaction, and security records where required, verify valid requests, and protect the rights of relevant individuals as required.

When processing is based on fulfilling an order, protecting an account or service, responding to your request, or meeting an applicable obligation, we limit the data to what is necessary for that purpose. If a later use materially differs from the original purpose, we will explain it before processing.

04

Payment data

All orders are settled in USD. Available payment channels are limited to USDT-TRC20 and Visa / Mastercard / Amex (via Stripe). The checkout process will show which payment gateway is currently available.

Data responsibilities and scope during payment processing
Processing stage Key information What we process What the payment processor handles
Create invoice Order number, currency, amount, payment channel Generate and display the amount due No payment credentials are handled at this stage
USDT-TRC20 payment Transaction identifier, amount, confirmation status Match the order and record the payment result Process on-chain transaction confirmation data
Card payment Amount, payment status, transaction identifier Receive successful, failed, or pending results Process complete card details and payment verification
Billing support Order number, transaction time, amount, status Reconcile the order and payment result Assist with verifying transaction status when necessary

We will never ask you to send a complete card number, security code, private key, or wallet control credentials by email or ticket. Billing issues usually require only the order number, transaction time, USD amount, payment channel, and a publicly verifiable transaction identifier.

05

Information sharing

We do not sell personal information. We provide limited information to service providers performing the relevant task or to authorized entities only when necessary to deliver infrastructure, process payments, provide customer support, protect security, or respond to valid legal requirements.

When sharing may occur

  • Infrastructure and node delivery: Provide the order identifier, node selection, and necessary technical records to assign equipment, configure the network, maintain connectivity, and handle hardware events.
  • Payment processing: Provide the order number, USD amount, currency, payment channel, and transaction status to create transactions, verify payments, and handle billing issues.
  • Customer support: Process the order details, node, time range, reproduction steps, and sanitized logs you submit to analyze a specific issue during support.
  • Security protection: Process relevant network and security events and account identifiers to prevent unauthorized access, malicious requests, or resource abuse.
  • Legal requirements: After receiving a request with a valid legal basis, defined scope, and proper authority, verify the request and provide only the information requested and necessary.

Service providers may process information only within the agreed task scope and must apply access controls and safeguards appropriate to the data risk. We assess their arrangements based on the service type, processing location, data scope, and security capabilities.

06

Retention and deletion

Retention periods are determined by the service relationship, order fulfillment, billing reconciliation, security investigations, dispute handling, and applicable legal obligations. Once the purpose is fulfilled and no basis for continued retention remains, data is deleted, anonymized, or isolated from routine business systems.

Retention basis and deletion process by information category
Information category Retention basis Trigger Subsequent handling
Account data Provide login, order, and support features Account closed and related matters completed Delete unnecessary data and retain limited records required by law
Orders and billing Fulfill orders, reconcile accounts, and handle disputes Retention basis expires Delete or move to restricted archive records
Support records Follow up on issues and maintain continuity Issue closed with no need for continued retention Delete attachments and unnecessary content; retain a necessary handling summary
Security and runtime logs Detect anomalies, audit, and investigate incidents Security purpose ends with no unresolved incident Delete or aggregate according to log rotation procedures
Returned-device data Complete return, media cleaning, and redeployment checks Rental term ends and the cleaning process begins Perform media cleaning and pre-delivery checks

Actions to complete before returning a device

Before the rental term ends, migrate project files, build artifacts, caches, and logs you need to keep; revoke deployment keys and access tokens; and verify that backups can be restored. After the term ends, the device enters media cleaning and pre-redeployment checks.

Residual copies in backup systems leave the available data set according to the established rotation schedule. When specific records must be retained for legal requirements, security investigations, or unresolved disputes, access is restricted and the information is handled once the basis for continued retention ends.

07

Cross-border processing and security

MacRents offers four node locations: Singapore, Japan (Tokyo), South Korea (Seoul), and Hong Kong. Depending on your selected node, team members’ locations, support processing locations, and payment providers’ arrangements, account, order, or necessary technical information may be transferred between or accessed from different regions.

Cross-border processing is limited to delivering the selected node, completing payments, providing support, protecting security, and meeting applicable obligations. We assess transfer scope and safeguards based on data category, processing purpose, access role, and local requirements.

Access controls

Permissions are granted according to responsibilities and limited to what is necessary. High-risk actions require explicit confirmation, and internal administrative access is recorded for traceability.

Transmission and credential protection

Management data is transmitted over protected connections. Verification credentials are subject to restricted storage, rotation, and detection of unusual use.

Physical node isolation

Each valid rental corresponds to one dedicated physical Mac mini. Its compute, memory, and local storage resources are not shared with other tenants.

Data minimization

Support and security processes prioritize order identifiers, time ranges, and sanitized logs, avoiding complete credentials or project content unrelated to the issue.

All nodes operate normally 365 days a year. Security events are handled through discovery, isolation, investigation, remediation, and necessary notification, with data access limited according to the scope of the event.

08

Your rights and contact

Where applicable, you may request access to personal information associated with your account, correction of inaccurate data, deletion of information no longer needed, restriction of specific processing, or information about data sources, purposes, sharing scope, and retention basis.

When submitting a request, provide

  • The email address associated with your account and an order or ticket number to help locate the records.
  • The right you want to exercise, such as access, correction, deletion, or restriction of processing.
  • The relevant data and approximate time range to avoid repeated verification caused by an unclear scope.
  • Necessary identity verification information, but do not send passwords, private keys, access tokens, or complete payment credentials.

You can email support@macrents.com or log in to the console to submit a ticket. We will first verify the requester’s relationship to the account or order, then confirm the request scope, applicable conditions, and outcome.

If a deletion request concerns an order still being fulfilled, unfinished billing processing, a security event, or records that must be retained by law, we will complete the necessary processing first and restrict access to data that must remain. Other eligible data will enter the deletion or anonymization process.

Applicable law and dispute handling

This policy and related personal information processing are governed by the laws of the jurisdiction where the platform operator is established. Disputes arising from this policy that cannot be resolved through communication may be submitted to a court with jurisdiction in that jurisdiction.

Need to verify your personal information?

Start with a verifiable account or order record

Existing users can submit a ticket through the console and associate it with an order. General privacy questions can be sent directly to the support email. Please provide only the minimum information needed to locate your request.