This policy explains what we collect, why, and how we protect it. Our model is simple: your server, your agent, your data — isolated per tenant and never sold.
The controller of personal data processed for the Tectonic Agents service is Tectonic Agents.
Tectonic Agents.
Contact email is not configured yet — set it under Admin → Settings → Legal identity.
Account data (such as email, organization name, timezone), billing metadata via Stripe, and operational data your agents generate — usage events, activity logs, and chat or tool turns needed to run the product.
We do not receive your full payment card details; those are handled by Stripe.
Bot tokens and provider keys are designed to be envelope-encrypted when stored. They are treated as write-only secrets: we do not display full secret values back in the UI, and another tenant must not be able to read them.
Customer data is intended to be isolated per tenant (including database row-level security and per-tenant runtime boundaries). An agent’s learning, memory, and skills are meant to stay within your tenant.
To operate the service, meter usage, provide support, secure the platform, and improve reliability. Per-tenant memory is used to make your agents better on your systems — not to train shared foundation models across customers.
We share data only with subprocessors required to run the service (billing, model inference you use or we manage, and hosting). We do not sell personal data.
Hosting / infrastructure: your configured cloud or VPS provider (set legal_hosting_provider in Admin → Settings).
See /legal/subprocessors for the current list.
You can export activity and request organization deletion through the product where those features are enabled. On deletion we remove tenant data and encrypted secrets subject to legal retention requirements (for example billing records).
Depending on your location you may have rights to access, correct, delete, or export personal data, or to object to certain processing. Use the privacy contact below.
Contact email is not configured yet — set it under Admin → Settings → Legal identity.
Contact email is not configured yet — set it under Admin → Settings → Legal identity.
This is a plain-language summary for product use. It is not legal advice. Questions? Use the support or privacy email above once configured, or the Discord link in the footer when set.