Privacy Policy
Effective Date: March 29, 2026 | Last Updated: July 20, 2026
1. Information We Collect
Account Data: Email address, display name, hashed password, subscription tier.
Usage Data: Queries submitted, council sessions, agent interactions, API usage metrics.
API Credentials: Third-party API keys you provide (Anthropic, OpenAI, Google, Mistral) — stored encrypted.
Payment Data: Processed by our payment provider (Stripe). We do not store credit card numbers.
Marketplace Data: Agent listings, reviews, purchase history.
2. How We Use Your Data
- To provide and improve the Service
- To process your council queries and store session history
- To manage your subscription and enforce tier limits
- To facilitate marketplace transactions
- To send service-related communications
- To detect and prevent abuse
- To analyze failure diagnostics from unsuccessful runs — in generalized, tenant-free form — to improve platform reliability (see "What We Do NOT Do" below; opt out via [email protected])
3. What We Do NOT Do
- We do NOT train AI models on your query content
- We do NOT sell your personal data to third parties
- We do NOT access your third-party API keys except to make API calls on your behalf
- We do NOT log the content of your API key values after initial storage
- Reliability rules derived from failure analysis NEVER contain your prompts, outputs, or identifying data — each rule is an abstract, human-reviewed description of a failure mechanism
4. Data Storage and Security
Passwords: bcrypt hashed (never stored in plaintext).
API keys (yours): SHA-256 hashed. The full key is shown once at creation and never again.
Third-party API keys: Stored with encryption at rest.
Session data: Stored in our database. Signed-in runs are private by default and restricted to the owning account and authorized administrators. Guest runs and sessions an owner explicitly publishes are accessible without signing in and may appear in search results, so do not submit confidential or regulated information in guest mode or publish it.
5. Data Retention
Account data: Retained while your account is active. Deleted within 30 days of account deletion.
Query history: Retained for 90 days, then automatically purged.
API logs: Retained for 30 days for debugging and abuse detection.
6. Your Rights
You may: access your data, request deletion, export your data, update your information, and withdraw consent for optional processing. Contact [email protected].
7. Third-Party Services
When you use third-party models (Anthropic, OpenAI, etc.), your query content is sent to those providers subject to their privacy policies. The platform default currently routes to Anthropic's Claude, so by default your query content is sent to Anthropic under their privacy policy. When a query is instead served by our self-hosted open-weight models, it is processed on our own infrastructure.
8. Cookies
We use minimal cookies: a JWT authentication token stored in localStorage (not a cookie). No third-party tracking cookies.
9. Contact
Privacy inquiries: [email protected]