BuddyClaw ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, desktop application, cloud service, and API (collectively, the "Services"). Please read this policy carefully. By using our Services, you agree to the practices described here.
1. Information We Collect
1.1 Information You Provide
- Account information: Name, email address, and password when you register.
- Payment information: Billing details processed securely by our payment provider (Stripe). We do not store full card numbers.
- Communications: Messages you send to our support team.
- Conversation data (Cloud mode only): Prompts and responses generated through the Cloud service or API.
1.2 Information Collected Automatically
- Usage data: Pages visited, features used, session duration, and interaction patterns.
- Device data: Browser type, operating system, IP address, and device identifiers.
- Log data: Server logs including timestamps, error reports, and API call metadata.
1.3 Information We Do NOT Collect
- In Desktop mode, all conversation data is processed and stored locally on your device. It never reaches our servers.
- We do not collect biometric data, sensitive personal categories (health, financial, political), or information about children under 13.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Services
- Process transactions and send related information (receipts, invoices)
- Send administrative messages, security alerts, and support responses
- Analyze usage trends to improve product features and performance
- Detect and prevent fraud, abuse, and security incidents
- Comply with legal obligations
We will never: sell your personal data, use your conversation content to train AI models, or share your data for advertising purposes.
3. Desktop Mode & Local Processing
BuddyClaw's Desktop application is designed with a local-first architecture. When you use Desktop mode:
- All conversation data is stored exclusively on your local device
- No conversation content is transmitted to BuddyClaw servers
- Model inference may occur locally (via Ollama or LM Studio) or directly with third-party model providers you configure โ BuddyClaw does not intercept these requests
- Only essential telemetry (crash reports, feature usage) may be sent, and you can opt out in Settings
4. Data Sharing & Third Parties
We do not sell your personal data. We may share information with:
- Service providers: Companies that help us operate (hosting, payments, analytics) โ under strict confidentiality agreements
- AI model providers: In Cloud mode, prompts are forwarded to providers such as OpenAI, Anthropic, and Google under their respective data processing agreements
- Legal requirements: When required by law, court order, or to protect our users and services
- Business transfers: In the event of a merger or acquisition, your data may transfer to the successor entity, with equivalent protections
5. Data Security
We implement industry-standard security measures including:
- TLS 1.3 encryption for all data in transit
- AES-256 encryption for data at rest
- Regular security audits and penetration testing
- Access controls and employee training
- Incident response procedures
No system is 100% secure. If you become aware of a security vulnerability, please contact us at security@buddyclaw.ai.
6. Data Retention
We retain your data for as long as your account is active or as needed to provide services. Specifically:
- Account data: Retained until account deletion + 30-day grace period
- Conversation data (Cloud): Retained for the duration of your subscription; deleted within 30 days of account deletion
- Billing records: Retained for 7 years as required by law
- Log data: Retained for 90 days
7. Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal data
- Correction: Update inaccurate or incomplete data
- Deletion: Request deletion of your account and data
- Portability: Receive your data in a machine-readable format
- Restriction: Limit how we process your data
- Objection: Object to certain processing activities
To exercise these rights, email privacy@buddyclaw.ai. We will respond within 30 days.
8. Cookies
We use cookies and similar technologies to:
- Keep you logged in (essential cookies)
- Remember your preferences
- Analyze aggregate usage patterns (analytics)
You can control cookies through your browser settings. Disabling essential cookies may affect service functionality.
9. Children's Privacy
Our Services are not directed to children under 13. We do not knowingly collect personal information from children under 13. If we learn we have collected such data, we will delete it promptly. Contact us at privacy@buddyclaw.ai if you believe we have inadvertently collected a child's data.
10. International Data Transfers
BuddyClaw operates globally. Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place (such as Standard Contractual Clauses for EU data transfers) to protect your information in accordance with this policy.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or a prominent notice in the application. The "Last updated" date at the top of this page reflects the most recent revision. Continued use of the Services after changes constitutes acceptance of the updated policy.
12. Contact Us
For privacy-related questions or to exercise your rights: