Unofficial status

Steward is an unofficial fan-made companion for D&D 5.5e / 2024 tables, published as Fan Content permitted under the Fan Content Policy. It is not affiliated with, endorsed, sponsored or approved by Wizards of the Coast or D&D Beyond.

Ownership

Dungeons & Dragons, D&D and related names are property of Wizards of the Coast LLC. All other trademarks belong to their respective owners.

SRD attribution

This work includes material from the System Reference Document 5.2.1 ("SRD 5.2.1") by Wizards of the Coast LLC, available at dndbeyond.com/srd. The SRD 5.2.1 is licensed under the Creative Commons Attribution 4.0 International License, full text at creativecommons.org/licenses/by/4.0. Steward reformats this material for its own presentation and adapts some of it into paraphrased rule text and derived character options. Content not drawn from the SRD is original writing, paraphrased general guidance, homebrew, a user-entered value, or an editable placeholder, and none of it should be mistaken for official D&D material.

Steward's own licence

Steward's code, design, artwork and writing are © 2026 Agustin / Steward, all rights reserved. Steward is source-available, not open source: the app is a single file your browser downloads, so its source is visible to anyone, and that part is by design. What is reserved is redistribution. You may use Steward freely at your table, keep a local copy so it keeps working offline, study the source, and quote from it with attribution. You may not republish it, bundle it into another product, or present it as your own. Full text: the Steward Source-Available License. If you want to do something the licence does not cover, write to hello@stewardrpg.com: the point is that the decision stays with the author, not that the answer is no.

This does not apply to the SRD 5.2.1 material described above, which keeps its own Creative Commons licence, and it does not apply to anything you type into Steward, which is yours.

Content policy

  • Steward does not provide access to paid official books.
  • Steward does not import content from D&D Beyond.
  • Steward separates SRD-safe content, original paraphrased guidance, editable placeholders, homebrew and user-entered data.
  • Steward is not a source of official rules. Your books and your DM remain the authority at your table.

User-entered data

Content you type into Steward, including character names, notes, backstory and homebrew, belongs to you. In this early version it is stored locally on your device, and nothing sends it anywhere on its own. There is exactly one way it can leave: if you tick the box to attach your character sheet to a feedback report, described under "Feedback you send from the app" below. That box is off by default, the name and the portrait and anything you wrote by hand are removed before it goes, and you can read the whole thing first. Steward backs your character up automatically before anything risky like an import, but it still cannot survive a cleared cache on its own: export or download your character if it matters to you. On iPhone and iPad, Safari can also delete it by itself: it clears a site's saved data after seven days of use without a visit. Adding Steward to your Home Screen avoids that, and a downloaded copy protects you either way.

To help with that, Steward keeps two small notes of its own next to your character, on your device only. One is the date of your last saved copy (a download, a copy from Data or an import), or, until you save one, the day it started keeping track, so it can remind you after 14 days. The other records that you closed the Home Screen tip. They are reminders for you, not counts: they are never sent anywhere, not with the usage counts and not with a feedback report, and they cannot tell one visit from another. When you download a copy, Steward also asks your browser to keep its saved data instead of clearing it to free up space. Your browser decides whether to grant that, and asking sends nothing.

Privacy

Steward does not require an account. Your character (name, notes, backstory, homebrew) is stored locally on your device and never leaves it on its own. Since version 0.49 the app sends a few anonymous counts about how it is used, described under "Anonymous usage counts" below, and you can turn them off in Settings. Apart from those counts, it contacts us only when you send feedback, described further down.

This website loads one third-party service on every page, whether or not you interact with anything: Cloudflare Web Analytics (static.cloudflareinsights.com), which measures anonymized page views so we know which pages get read. It receives the connection details any web request includes, such as your IP address and browser information, directly from your browser when it loads the page, not from us. It does not use cookies or fingerprinting and does not track you across other sites, and it never receives anything about your character.

This site sets no cookies at all. It stores nothing on your device except the offline cache that lets the pages open without a connection, which is what makes Steward installable. There is nothing here to consent to, so there is no cookie banner.

Fonts come from this site's own server, for the website and the app alike. Neither one requests a typeface from Google Fonts or any other font provider, so opening a page or the app does not hand your IP address to one. The site's security policy only allows fonts from this server, so that stays true even if a page tried to load one from elsewhere.

Buttondown is different: nothing loads from it unless you use the newsletter form yourself. If you subscribe to project updates, your email address is stored by our newsletter provider (Buttondown), used only to send Steward project news and never sold or shared. We track which links you click in these emails to see what content is useful, but not whether or when you open them. Subscriptions are confirmed by double opt-in and every email includes an unsubscribe link.

Anonymous usage counts

Changed in version 0.49. Until then the app sent nothing at all on its own.

The app sends a short, anonymous note to an endpoint we run ourselves when one of these five things happens:

  • the app opens, with whether this device already holds a character, a draft, or neither;
  • you pick one of the three ways to create a character;
  • you finish a step of the creation wizard or of the questionnaire;
  • you sign a new character into the ledger;
  • your character levels up, with the level it reached.

Each note carries that and the app version, nothing else. No name, nothing you typed, no other detail of your character, and no identifier of you or your device: no ID, no cookie, and nothing stored on your device to tell one visit from another. We can see that forty people finished the ability scores step and thirty signed, but not who, and not whether two notes came from the same person.

The notes go to the same Cloudflare Workers endpoint that receives feedback and are kept in Cloudflare's Workers Analytics Engine, with the time they arrived, for three months, after which Cloudflare deletes them. As with any web request, Cloudflare sees your IP address; we do not store it, not even to count. If you are offline the note is simply dropped: nothing is queued and nothing waits for it.

To turn the counts off, open Settings in the app and switch off "Anonymous usage counts". If your browser sends Global Privacy Control, they start switched off. We use them for one thing: finding where character creation loses people, so we can fix that part.

Feedback you send from the app

The Send feedback button inside the app, under Settings, is the one place where you can choose to send us something. Nothing leaves your device until you tap Send, and you can read the whole report first: the form shows you the exact text it will attach.

What goes out is the category you picked, the options you ticked, whatever you wrote, your email address, and a block of technical context. That context is the app version, which screen you were on, your class, subclass, species and level, your browser with its viewport and screen size, your language and time zone offset, whether the app is installed or running in a tab, whether your browser is set to light or dark, how long the app has been open in this session, how long you spent in the form, whether this character was created here or came from an imported file, how large your saved character is and whether a backup of it exists, how many spells and items and similar entries it holds, the last few JavaScript errors, and the names of the last few buttons you tapped. It does not include your character's name, your portrait, your notes, your inventory descriptions or your spell notes.

If, and only if, you tick "Attach my character sheet", your saved character travels with the report as a file, with the name, the portrait, every embedded image and every free-text field you wrote removed first. What is left is the mechanical side: class, level, spells, inventory, choices. This box is off by default.

The report goes to an endpoint we run ourselves on Cloudflare Workers, which turns it into an email to hello@stewardrpg.com and sends you an acknowledgement. As with any web request, Cloudflare sees your IP address. We use it only to count how many reports arrive from one device, so that the channel cannot be flooded, and it is not stored alongside your report. Your email address is used to reply to you and for nothing else, and it is remembered on your own device so you only type it once. If a report cannot be sent because you are offline, it waits on your device until you open the form again: it is never sent in the background.

Donations

Donations support the development and hosting of Steward. They do not unlock playable content, do not grant features and are not payments for official D&D material.

Two platforms handle them: Patreon and Ko-fi. Both take monthly memberships, with the same tiers on either one, and Ko-fi also takes a single one-off tip. Neither one loads anything into this website. The buttons on the support page are plain links, so nothing reaches either company until you click through to their own site, where their terms and their privacy policy apply. Payment details are handled entirely by them: Steward never sees your card, your address or your account.

Names on the ledger page are published with permission only. Supporting Steward does not put your name on this site by itself. Nothing appears there unless you say it can, the name used is the one you ask for, no amount is ever shown next to a name, and a request to be taken off is honoured without question at hello@stewardrpg.com. The same applies to contributors, reviewers and playtesters listed there.