Legal · Privacy

Privacy policy.

Last updated: October 2026. This starter policy must be reviewed and adapted to your actual providers and business before commercial launch.

Data processed by the browser builder

The original browser-based builder generates a plan locally in your browser. Do not include secrets or sensitive customer data in workflow descriptions.

AI generation

If the server-side AI endpoint is configured with a provider API key, the workflow description is sent to that AI provider to generate a blueprint. Configure the provider's current retention and data-use settings, and update this policy with the provider name and applicable terms before enabling the feature publicly.

Email and service requests

If Cloudflare D1 is configured, the site may store an email address, signup source and timestamp, or a workflow service request. The current lead endpoint does not send marketing emails. Do not enable campaigns without appropriate notice, consent and unsubscribe handling.

Retention and deletion

Define retention periods, a contact for privacy requests and a process for deletion before launch. The initial database schema does not provide a self-service account deletion feature.

Third parties and international users

Cloudflare and any enabled AI, email, analytics or payment provider may process data according to their own terms. Add the actual providers, legal basis, transfer details and contact information after configuration. This page is a draft, not legal advice.

Contact

Publish a monitored business contact email here before collecting personal information at scale.