Privacy Policy
Last updated 2026-08-31.
What we collect
- When you sign in with GitHub: your GitHub username, display name, avatar URL, and email address (whatever GitHub's OAuth gives us) -- see github.com/settings/connections to review or revoke this at any time.
- A session cookie that keeps you signed in. It's necessary for the site to work, not used for tracking or advertising.
- Domains you generate -- the business description and tool schemas you submit, and the resulting generated code, so it can be shown back to you under Your Runs.
- Runs you upload or execute -- the scenario id, pass/fail results, cost, and the full rendered report, so it can be shown back to you under Your Runs.
- Your own Anthropic API key, if you use /run -- used only for that one request, sent directly to our run-execution worker over an internal connection, and never written to any database, log, or file. We have no record of it after the request finishes.
What we don't collect
No advertising trackers, no analytics cookies, no third-party tracking scripts. We don't sell or rent your data to anyone.
Who else sees it
Generating a domain sends your business description and tool schemas to Anthropic's API to produce the result -- that's the only third party your data passes through, and only for that purpose. See Anthropic's own privacy policy for how they handle it.
How long we keep it
For as long as your account exists. There's currently no self-serve "delete my account" button -- email us (see the contact on the home page) and we'll delete your account and associated data by hand.
Children's privacy
This service isn't directed at children under 13, and we don't knowingly collect data from them.
Changes
If this policy changes in a way that matters, we'll update the date at the top of this page.