Privacy

Last updated: 2026

What we collect

Biohost.app is anonymous — there are no accounts. When you upload a file we store the file itself in object storage and record limited metadata needed to run the service securely:

  • The file name, size, detected type and a content hash.
  • The expiration you chose and, if set, a securely hashed password (never the plaintext).
  • Network metadata for abuse prevention: an encrypted copy of your IP address, a one-way hashed form for analytics, coarse geolocation (country/region/city), network provider/ASN, VPN/proxy/Tor indicators, and a parsed browser/OS/device summary.

Why we collect it

This metadata exists solely to operate the service: enforcing size and rate limits, preventing abuse, responding to reports, and producing aggregate analytics. We do not sell data or use it for advertising.

What we never do publicly

Uploader IP addresses, geolocation and network details are never shown on public file pages or exposed through public APIs. IP addresses are encrypted at rest and only accessible to administrators for abuse investigations, which are audit-logged.

Retention

  • Files are permanently deleted from storage when they expire (1, 3 or 5 days).
  • File metadata is retained briefly after expiry for abuse handling, then purged.
  • Analytics and operational logs are retained for a limited window and then removed.

Reports & contact

If you report a file or contact us, we store your submission (and a hashed IP) so we can act on it. Contact us to request removal of a file you believe violates our terms.