Celestia

Privacy Policy

Last updated: July 2026

This policy describes how the Celestia team ("we", "us") handles your data when you use Celestia, a Hypixel Skyblock companion mod, the website, and related services. We aim to collect the minimum data needed to operate the service and protect user accounts.

Data you provide

When you create an account, we store the username you choose, an optional email address, and an argon2id hash of your password. Passwords are never stored in plaintext and cannot be recovered. Your account identifier doubles as your public user number.

Authentication data

Your web sign-in is stored in an encrypted cookie on your device. When you approve a Minecraft device, we store a hashed refresh token and a human-readable device label, plus the approval IP and user agent, so you can review and revoke sessions from your dashboard. Raw tokens are never stored server-side.

Build and integrity data

Each loader build is watermarked to your account so we can trace leaks back to the source. The loader reports runtime integrity signals to help detect tampering and protect the protection layer. We do not collect your Minecraft chat, inventory contents, or in-game communication.

Analytics and crash reports

We may collect anonymized usage signals and crash reports to diagnose failures and improve compatibility with Hypixel updates. Where crash reports contain account identifiers, they are used only for support and are not shared publicly.

Data sharing

We do not sell your data. We share data only where necessary to operate the service, respond to abuse or fraud, or comply with legal obligations. Aggregated, non-identifying statistics may be published.

Your choices

You can review and revoke remembered devices from your dashboard at any time. You may request deletion of your account by contacting support through our Discord. Removing your account also removes the sessions, subscriptions, and build associations tied to it.

Security

Passwords are hashed with argon2id using OWASP-recommended parameters. The native loader bootstrap uses an encrypted ECDH exchange, and build payloads are watermarked per account. No system is perfectly secure, but we design the protection layer to resist tampering and credential theft.

Changes to this policy

We may update this policy as the service evolves. The "Last updated" date above reflects the most recent revision. Continued use after a change means you accept the updated policy.