Privacy
Draft — last updated August 28, 2026. Plain-language summary; formal review before launch.
What we store
Your name, email, settings document (with revision history), project definitions, hashed authentication tokens and passkey public keys, and the documents you publish. Settings pushes record which device sent them.
What we never store
Passwords — there are none. Plain-text tokens — only hashes. The server-side deny-list strips secret-shaped keys from synced settings.
Analytics
Published documents count views. No third-party trackers, no ad tech, anywhere.
Sharing
Nothing is public unless you make it so: published document URLs are unguessable capability links you choose to share. We do not sell or share your data with anyone.
Deletion
Deleting your account deletes your settings, projects, tokens, and published documents.