Privacy policy
Effective date: September 29, 2026. What Cloudtifact collects, why, who else handles it, how long we keep it, and how to delete it. This covers the website, the web app, the command-line tool and the iOS app.
What we collect
Account details
Your name, email address, username (your handle on Cloudtifact) and profile image. They come from the sign-in method you choose: GitHub, Google, or an email code. We keep the provider's user ID so the same login finds the same account.
What you create
Docs, pages and files you publish, their versions, comments and replies, room chat messages, room docs, files you upload to a room, apps you build, and data that people save through those apps and pages.
Workspace activity
Who invited whom, who joined, who changed sharing or billing, and which agent or tool acted for you. Workspace admins can read this log. Entries record the IP address the request came from.
Device sign-in
When you sign in the command-line tool or the iOS app with a device code, we store the device's name, its user agent, and a one-way hash of its IP address, so you can check the request is yours and we can limit abuse. Each device gets an access token you can revoke in Settings.
Guests
If a page lets people comment or save data without an account, we store the name they give and their IP address, to show who wrote it and to rate-limit abuse.
Request logs
Our hosting keeps basic logs of requests (time, address requested, status, IP address, user agent) to run the service and investigate errors and abuse.
Billing
If you pay for a plan, the payment processor collects your card and billing details. We don't see or store your full card number. We store which plan a workspace is on and its usage.
We don't show ads, don't sell or share personal data for advertising, and don't use analytics or tracking SDKs in the website, the web app, the command-line tool or the iOS app. Sign-in uses cookies. Your browser stores your theme choice locally.
How we use it
To run the service
Sign you in, store and show what you create, and share it with the people you choose.
To send email
Invitations to workspaces and rooms, and messages about your account. No marketing email without your consent.
To bill
Charge for paid plans and enforce plan limits.
To keep it safe
Prevent abuse, review reports, enforce the terms, and fix bugs and security problems.
Because the law requires it
For example, keeping billing records for tax.
Where the law asks for a legal basis (such as the GDPR): running the service you asked for is performance of a contract; safety, abuse prevention and request logs are our legitimate interest; billing records are a legal obligation; anything else asks for your consent.
AI features
Rooms have an AI participant, and apps can be built with AI. The AI runs only when someone asks it: a room message that starts with @ai, or a build request. We then send Anthropic the request, the room's doc and chat context, and the parts of uploaded files that match the request. Anthropic returns the answer and we store it in the room. Everyone in a room can see what's asked and answered there.
Under Anthropic's commercial terms, content sent through its API is not used to train its models. The AI never changes a doc by itself; a person accepts or rejects each suggestion.
Who else handles your data
| Company | What for | What they receive |
|---|---|---|
| Cloudflare | Hosting: Workers, D1 and Durable Objects databases, R2 file storage, request logs, sending email | Everything stored in Cloudtifact |
| Clerk | Sign-in and account management | Name, email, username, profile image, sign-in methods |
| Anthropic | The AI in rooms and the app builder | What's sent when someone asks the AI (see above) |
| Autumn | Plans, subscriptions and usage limits | Workspace ID and name, billing email, plan and usage |
| Stripe | Payment processing, through Autumn | Payment and billing details |
How long we keep it
We keep your account and what you create until you delete it or delete your account. Request logs are kept for a few days. Database backups roll off within 30 days, so deleted data can remain in a backup for up to 30 days before it's gone. Billing records are kept as long as tax law requires.
Deleting your account
In the iOS app, open the account menu and choose Delete account. On the web, go to Settings and choose Delete account. Or email support@cloudtifact.com from the address on your account.
What's removed
Your account, your sign-in methods, every access token and signed-in device, and your personal workspace with its spaces, pages, rooms and apps.
What stays
Messages you wrote in rooms shared with other people stay so the conversation still makes sense, but they show as 'Deleted user'. A shared workspace you own passes to another member.
Deletion can't be undone. If your personal workspace has a paid plan, it's canceled.
Your rights
You can ask to see, correct, export or delete your personal data, and object to or restrict how we use it. Most of this you can do yourself in the app. For the rest, email support@cloudtifact.com. We answer within 30 days. We may need to confirm the request comes from you. If you're in the EEA or UK you can also complain to your data protection authority. We don't sell personal information, as California law defines it.
Children
Cloudtifact is not directed to children under 13, or under 16 in the EEA and UK, and they may not create an account. If you think a child has given us personal data, email support@cloudtifact.com and we'll delete it.
Changes and contact
If we change this policy we'll update the effective date above, and tell you by email or in the app before a significant change takes effect. Questions: support@cloudtifact.com. Security issues: security@cloudtifact.com.