Privacy Notice
Last updated: 21 July 2026
1. Who this covers
This notice is for two audiences: workspace owners (whether they signed up themselves or we provisioned a workspace for them directly) and their end users (visitors who talk to an embedded assistant). We are a data processor for end-user conversation content on behalf of the workspace owner, who is the data controller for their own site's visitors.
2. What we collect
- Conversations. Messages between an end user and the assistant, plus which tools were called and their results, so the workspace owner can review and audit them.
- Page context. A small, allowlisted set of structured facts the host page explicitly shares (for example, which product or article is open) — never the full page body or DOM.
- A short-lived identifier. Signed-in end users are identified by the external ID the host application already uses; anonymous visitors get an ephemeral or cookie-based guest ID, gated by the host's own cookie-consent mechanism where one exists.
- Usage metadata. Token counts and request timing, used for the workspace's own usage dashboard and our infrastructure monitoring — not sold or shared.
We do not receive the workspace owner's permanent API credentials in the browser at any point; those stay server-side.
3. What we don't do
- We don't sell personal data.
- We don't use one workspace's conversations to improve or train models used by other workspaces.
- We don't scrape or receive the full DOM or page body automatically.
4. Retention and deletion
Workspace owners can export a full workspace's conversation history (NDJSON) or delete an individual conversation at any time through their workspace. For the WordPress integration specifically, end users can also request export or erasure of their own conversations through the site's standard WordPress privacy tools, keyed to their account.
5. Sub-processors
Running the assistant involves at least one LLM provider (OpenAI or an OpenAI-compatible endpoint the workspace owner configures) to generate responses, and our own infrastructure to store conversations and serve the API. We don't add further sub-processors without updating this notice.
6. Self-hosting
If you self-host the open-core instead of using our hosted service, this notice doesn't apply to your deployment — you control where the data lives and who processes it.
7. Contact
Questions about this notice, or a request to exercise a data subject right: reach us through the contact form linked from the homepage footer.