Privacy Policy

Last updated: this is a prototype legal page — replace with counsel-reviewed language before public launch.

1. What we collect

Account details (email, and profile info from Google if you sign in that way); the content of your project trees (nodes, descriptions, chat messages, generated documents); usage and error events; and billing metadata from Stripe (we never see or store your card number).

2. Sub-processors

We use a small set of vetted providers to run the service:

  • Supabase — database, authentication, and storage for your account and project data.
  • Stripe — subscription billing and payment processing. Stripe holds your payment details; Leefy never receives raw card numbers.
  • PostHog — product analytics, to understand feature usage and improve the app.
  • Sentry — error monitoring, to catch and fix bugs.
  • Anthropic and OpenAI — process the text of your AI requests (node content, prompts, chat) to generate AI responses, whether you use Leefy's included credits or your own API key (BYOK).

3. Bring-your-own API keys

If you provide your own Anthropic or OpenAI API key, it is encrypted at rest with AES-256-GCM before it is stored. The encrypted key is decrypted in memory only at the moment an AI request is made on your behalf, and is never logged, displayed in full, or sent anywhere except directly to that provider's API.

4. Data access and deletion

Row-level security ensures your project data is only ever readable by your own account. You can request export or deletion of your account and its data at any time by contacting us at the address on your billing receipts.

5. Cookies

We use essential cookies for authentication (via Supabase) and, where enabled, analytics cookies (via PostHog) to understand product usage.

6. Changes

We may update this policy as the product evolves. Material changes will be communicated in-app or by email before they take effect.