Privacy Policy · Version 2026-07-22

Agent OverMind Privacy Policy

Agent OverMind is local-first by product design, but the connected website still processes limited customer-account data for identity, entitlement, device, download, and audit flows.

Current version

2026-07-22

Required for account access because the customer account service records immutable legal acceptance and account audit events.

Connected-account ledger

Immutable acceptance trail

The customer API requires the active policy versions and records acceptance in `policy_documents` and `legal_acceptances` before a website session is established.

What stays local

Provider credentials, local configuration, terminal ownership, and terminal history stay on the Windows machine running Agent OverMind.

When you explicitly invoke or refresh OverMind inside the product, a bounded, redacted summary of live workspace chats may be sent to the configured synthesis route. That optional behavior is separate from this website account service.

What the website stores

The website customer surface stores only the records needed for account access and audit: verified identity details, plan state, website session metadata, device and download records, account-history events, and immutable policy acceptance evidence.

Current policy versions are tracked in `policy_documents`. Individual account confirmations are retained in `legal_acceptances` with a minimized evidence payload and acceptance timestamp.

What is still missing

A full retention matrix, transactional email provider, monitored support inbox, and live deletion/export operations are still launch blockers. This draft does not claim those operations are complete just because the data tables exist.

Support and security contact paths are published as scaffolding only in this credential-free build. Do not submit secrets through an unpublished or unmonitored channel.