Privacy Policy
Last updated September 7, 2026
Stash is a desktop app. This policy covers the whole product, because there isn't a separate service to describe: no Stash server exists, and nothing about your files or your account passes through one.
What Stash does with your files
Stash reads the folders and files you configure inside the app, zips them, and writes that zip directly to a destination you choose — your own Google Drive account, or a disk you point it at. That upload goes straight from your machine to Google's servers (for Drive) or to the disk (for local backups). We never see it, store it, or have a copy of it anywhere.
What Stash asks Google for
When you connect Google Drive, Stash requests one OAuth scope: https://www.googleapis.com/auth/drive.file. This scope only grants access to files and folders that Stash itself creates in your Drive — it cannot see, list, or read anything else already in your account.
The access and refresh tokens Google issues are encrypted on disk using your operating system's built-in secure storage (Keychain on macOS, DPAPI on Windows, libsecret on Linux) and stay on your machine. They are never transmitted anywhere except directly to Google's own OAuth endpoints, and only to authenticate your own Drive requests.
What we collect
Nothing. Stash has no backend, no analytics, and no telemetry. We don't know how many people use it, what you back up, or when you run it. The only information exchanged over the network is between your machine and the destination you configured yourself (Google's API, or a disk).
Local disk backups
If you choose a local disk as your destination, no network request happens at all for that stash — files are copied on your machine or over your own local network, using the operating system's file APIs.
Revoking access
You can disconnect Stash from Google Drive at any time from inside the app (Settings → Google Drive → Disconnect), or by removing Stash's access from your Google Account permissions page. Either action deletes the locally stored tokens; it does not delete files already written to your Drive.
Changes to this policy
If this policy changes, the date at the top of this page will change with it. Material changes will be noted in the release notes of the next version.
Contact
Questions about this policy: danieltostes@live.com.