Privacy Policy
DraftThe final wording will land before public launch. While the document is being prepared, here is how things work today.
What we store
Your OAuth provider profile (name and email address), the agents you create, skills, connections, and your conversations with agents.
Tokens and keys
The refresh token lives in an HTTP-only cookie and is unreachable from JavaScript. LLM provider keys and connection secrets are stored server-side and are never shown again in the interface.
Third-party services
Model requests go to the provider whose key you connected. Tool calls go to the services you connected yourself.
Logs
We keep a log of tool calls and triggers — it exists for your own troubleshooting and is visible in the dashboard.
Self-hosted
When deployed on your own server, data never leaves your infrastructure.
Deletion
Write to us and we'll delete your account and the data attached to it.
Questions
Write to us in the community chat — we'll answer. Community chat