Privacy Policy
DRAFT — pending lawyer review. Last updated: 2026-05-09.
What we collect
- Email address (for authentication via magic link)
- IP address at signup (for rate limiting and abuse detection — discarded after 24 hours)
- Device fingerprint (UUID generated on first launch + OS + app version) for the 3-active-device limit
- Subscription state (status, plan, billing dates) synced from Stripe
- Optional anonymous tampering telemetry (clock-tampering detections, signature failures) if you opt in
What we DO NOT collect
- The contents of your workspaces, files, prompts, code, or LLM interactions — these never leave your machine
- Your usage patterns within the app (which features you click, how often)
- Browsing or external behavior
How we use your data
- Authentication: email magic-link via Supabase Auth
- Billing: Stripe processes payments; we store only the subscription metadata necessary to enforce entitlement
- Support: when you email us, we use your address to reply
Third parties
We use these vendors as data processors:
- Stripe — payment processing (PCI-compliant; we never see card data)
- Supabase — authentication and database (US region)
- Resend — transactional email delivery
- Cloudflare — CDN and DNS
- Aptabase — anonymous tampering telemetry (only if opted in)
Data retention
- Account and subscription data: while active + 7 years after cancellation (US/EU tax compliance)
- Server logs: 90 days
- Signup attempt records: 24 hours
- Tampering telemetry (opt-in): aggregated indefinitely without personal identifiers
Your rights
Under GDPR, CCPA, and similar laws, you have the right to:
- Access your data — email privacy@orkest.io
- Delete your account — Settings → Plan → Delete Account in the app
- Data portability — export your billing history via Stripe Customer Portal
- Opt out of tampering telemetry — Settings → Privacy in the app
Cookies
This website uses only essential cookies for CDN and routing (Cloudflare). No tracking, no analytics, no ads.
Security
- All traffic encrypted with TLS 1.2+
- Auth secrets stored locally in your OS keychain via Tauri Stronghold (encrypted at rest)
- Database access governed by Row-Level Security policies — no user can read another user's data
Children
The Service is not intended for users under 13 (or 16 in the EU).
Changes
Material changes will be communicated via email at least 30 days before taking effect.