Legal
Privacy Policy
Version 1.1 · Effective date: To be announced
1. Controller
The controller responsible for data processing is Colin Schibli, Switzerland (full contact details).
2. Data we process
- Account information, such as email address and display name. Password authentication is processed by Firebase Authentication; Tavory does not store password hashes for normal Firebase users in its D1 data system.
- Workspace and usage data, such as chats, projects, file metadata, prompts, selected models, cost receipts and timestamps needed to provide the workspace and show account usage.
- Provider keys, where the bring-your-own-key feature is enabled with its required encryption configuration. In that case, they are encrypted with AES-GCM in D1 and are not returned through ordinary browser API responses.
- Technical and security data needed to operate, protect and diagnose the service.
- Payment information handled by Stripe during checkout. Tavory does not store payment-card numbers.
- Optional voice, camera, location and Google-integration context, only after the relevant device permission and action.
3. Why we process data
- To provide, maintain and improve the Tavory service, including contractual performance where applicable.
- To prevent fraud, abuse and security incidents.
- To send service and transactional emails where enabled or necessary.
- To comply with legal obligations and protect the service.
4. Service providers and AI requests
We use service providers that may process data for the purposes above:
- Firebase Authentication for authentication and account identity.
- Cloudflare for Workers, D1 database services and R2 file storage. The R2 configuration specifies EU jurisdiction.
- Vercel for application hosting and Vercel Analytics.
- Stripe for subscription and payment processing.
- Resend for transactional email delivery.
- Upstash Redis for login rate limiting.
- Requesty and the selected AI provider for server-side AI routing. Prompts and the content or attachments necessary for a request may be sent through Requesty to the selected provider. The provider can vary by the selected or automatically routed model. Tavory does not use user content to train its own models; third-party-provider practices are governed by their own terms and privacy notices.
- Google for optional Gmail actions with
gmail.modifyand Google Drive metadata search withdrive.metadata.readonly, after you connect the integration. Drive document contents are not requested for this tool. - Trustpilot for a browser registration script used for domain verification. This codebase does not implement automated review invitations.
5. Retention and deletion
We keep data only for as long as it is needed to provide the service, maintain security, resolve disputes or meet legal obligations. When you delete an eligible account, Tavory requests deletion of its workspace state and Firebase account data. Payment, infrastructure, security and backup providers may retain certain information for their own legal, contractual, security or backup purposes. We do not state fixed deletion periods unless they are technically and contractually verified.
6. Your rights
Depending on applicable law, you may have rights to access, correct, erase, restrict, object to or receive a copy of your personal data. Use the in-product export and deletion controls where available, or contact info@tavory.app.
7. Cookies and analytics
We use essential cookies for session and security. The site stores your cookie choice in local browser storage as tavory_cookie_consent. Optional Vercel Analytics is loaded only after you choose “Accept all”. The Trustpilot registration script is currently loaded independently for domain verification; choosing “Essential only” does not disable the workspace.
8. Optional device and integration features
Voice, camera, location and connected integrations are optional and require a separate permission or confirmation. A confirmed Google Drive search uses read-only file metadata and does not read document contents. Do not use optional context if you do not want it included in a request.
9. Changes and contact
We may update this policy. The current shared version and publication date are shown at the top of this page. Questions about privacy can be sent to info@tavory.app or to Colin Schibli, Leemattenstrasse 36, 5442 Fislisbach, Switzerland.