1. Scope
Clawgnition is a hosted home for your centraid vault: your data is encrypted on your device and we store only the sealed bytes. This policy covers the data Clawgnition handles to run that storage service — your account, your vault metadata, and the sealed snapshots you upload. It does not cover the local-first software you use to talk to Clawgnition (for example centraid), which has its own privacy practices.
2. What we collect
- Account information: email address and authentication credentials. When billing launches, payment details will be processed through Stripe.
- Early-access requests: the email address, and optionally the name, phone platform, and note, you submit through the early-access form on our home page, plus the country your request came from. We use it only to send your beta invite and delete it on request.
- Vault metadata: the identifiers, byte sizes, and timestamps of your vaults and snapshots. This is the bookkeeping we need to enforce your storage quota, run the retention schedule, and show you your version history. We never see the contents of a vault — only its shape.
- Sealed snapshot bytes: the encrypted snapshots you upload. Because encryption happens on your machine before upload, we hold only ciphertext and cannot read it. We never receive or store your encryption keys.
- Session security metadata: each time you sign in, we record the IP address, coarse geolocation and timezone derived from it, network organization, Cloudflare edge location, and TLS/HTTP protocol versions of that connection, plus your browser's user agent string. We use this to secure your account (detecting suspicious sign-ins) and prevent fraud, and it powers the device/session list on the dashboard's account settings page so you can review and revoke sessions you don't recognize. This metadata is kept for the life of the session it's attached to; expired sessions, and the metadata on them, are pruned automatically by a background job that runs every six hours.
3. Infrastructure and sub-processors
Clawgnition runs on Cloudflare and uses a small, fixed set of sub-processors to operate the storage service:
- Cloudflare — compute (Workers), account and metadata storage (D1), and sealed-snapshot object storage (R2).
- Resend — transactional email (sign-in, verification, and the device-went-quiet alerts).
- Stripe — payment processing, once billing launches. No payment data is processed while the product is comped.
None of these sub-processors receives the plaintext contents of your vault — Cloudflare holds only the ciphertext your device produced. We do not sell your data, and we do not share your vault contents with any AI vendor or advertising network.
4. Vault Backup and encryption
Clawgnition uses client-side encryption: your data is encrypted on your machine before it is uploaded directly to our S3-compatible object storage, and we only ever hold ciphertext. We cannot decrypt your backups, restore them without your key, or recover them if you lose your key — there is no server-side copy of the key to fall back on. Restoring your own data does not incur an egress charge.
5. Retention
We retain your account and authentication data while your account is active, plus a limited period afterward for security and (once it launches) billing records. Vault metadata — identifiers, sizes, and timestamps, never contents — is retained alongside the snapshots it describes. Your snapshot version history follows one retention schedule that is the same for every account: we keep every version for the last 7 days, then a daily version out to 30 days, then a weekly version out to a year, and the newest version is never pruned. Purchasing more storage quota increases only the byte allowance; it does not change the retention schedule. Before a scheduled hard deletion, Clawgnition records and verifies an object inventory tombstone and waits through a recovery window.
6. Your rights
You can delete your account from the dashboard at any time. Deleting your account triggers deletion of your account data and any stored snapshots (a "GDPR-compliant purge"), subject to the limited retention described in Section 5. Reads and exports stay open even if your account is otherwise restricted, so you can always take your data out. If you are in a jurisdiction that grants a right to access or export your data, contact us and we will fulfill it manually while this is still an early-access product without self-serve export tooling.
7. Security
Data in transit to Clawgnition is encrypted (TLS). Account and vault metadata at rest is stored in Cloudflare D1. Snapshot content at rest in R2 is ciphertext produced by client-side encryption before it ever reaches us, on top of Cloudflare's storage-layer protections.
8. Children's privacy
Clawgnition is not directed at children and is not intended for use by minors.
9. Changes to this policy
We may update this policy as the product changes during early access. Material changes will be reflected in the "Last updated" date above.
10. Contact
Questions about this policy: legal@clawgnition.ai.