Privacy Policy
Synaptik Core (“we”, “us”, “our”) is committed to protecting your privacy. This policy explains how we handle information when you use our website (synaptik-core.ai) and our governed memory platform.
Architecture & your data
On Local and Team plans, all governed memory data is stored exclusively on your hardware. We have no access to your workspace contents, audit trails, or policy configurations. We cannot read, copy, or transfer this data.
On managed plans, workspace data is stored in managed infrastructure. We encrypt data at rest and in transit, and access is restricted to your authenticated account only.
What we collect
- Account information: Email address, name, and hashed password when you create an account.
- Billing information: Payment details are processed by Stripe. We do not store card numbers.
- Usage analytics: Anonymous, aggregated usage metrics (page views, feature adoption) to improve the product. No workspace content is included.
- Support communications: Messages you send to our support channels.
What we do not collect
- Contents of your governed memory workspaces (on Local/Team plans)
- Your AI model API keys
- Audit trail contents or policy configurations
- Behavioral data from desktop or CLI applications
Third-party services
We use the following services, each with their own privacy policies:
- Stripe — Payment processing
- Vercel — Website hosting
- Supabase — Authentication (managed plans only)
Cookies
We use essential cookies for authentication sessions. We do not use advertising or tracking cookies.
Data retention
Account data is retained while your account is active. You can request full deletion of your account and associated data by contacting hello@synaptik-core.dev.
On termination, you retain all data on local-first plans. On managed plans, data is retained for 30 days to allow export, then permanently deleted.
Your rights
Depending on your jurisdiction, you may have the right to:
- Access the personal data we hold about you;
- Request correction of inaccurate personal data;
- Request deletion of your personal data;
- Object to or restrict processing of your personal data;
- Data portability — receive your data in a structured, machine-readable format;
- Withdraw consent at any time where we rely on consent for processing.
European consumers may also lodge a complaint with their local supervisory authority.
Children’s privacy
Our service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children. If we become aware that we have collected personal data from a child, we will take steps to delete it promptly.
Changes to this policy
We may update this policy as the product evolves. Material changes will be communicated via email or in-app notification with at least 30 days’ notice before they take effect.
Contact
Questions about this policy? Reach us at hello@synaptik-core.dev.