Last updated: [DATE]
This policy explains what data SyncPoint (the "Service") collects, why, and where it goes. We've tried to write this in plain language rather than dense legal boilerplate.
| Data | Why we have it |
|---|---|
| Email address | Account login, password reset, billing receipts |
| Password | Stored as a one-way hash - we cannot see or recover your actual password, ever |
| Subscription tier & Stripe customer/subscription IDs | Knowing what plan you're on; billing |
| Question count per month | Enforcing free-tier usage limits |
| Squad notes you write | Shown to the other members of your Squad |
When you press the hotkey and ask a question with "include screen" turned on, a screenshot of your screen is captured and sent - along with your question - to our backend, which forwards it to Google's Vertex AI to generate an answer. We do not store your screenshots. They're used only to generate that one answer and are not saved to our database or servers afterward. Google's own data handling for API requests is governed by their own policies, not this one - we don't control that.
If you also enable web-search grounding, your question text is sent to Brave Search to find current information. Search queries are not stored by us beyond what's needed to generate that answer.
Clips and reels you save are stored only on your own computer, in your Videos folder. We never receive or store them - there's currently no feature to upload or share them with us or anyone else.
We use the following third-party services to run SyncPoint. Each only receives the specific data needed for its function:
The website stores your login session in your browser's local storage (not a tracking cookie) so you don't have to log in on every page. Clearing your browser data will log you out.
We keep your account data for as long as your account is active. If you delete your account, we delete your personal data within a reasonable time, except where we're required to keep billing records for tax/legal purposes.
SyncPoint isn't directed at children under 13, and we don't knowingly collect data from anyone under that age. If you believe a child has created an account, contact us and we'll close it.
You can ask us to access, correct, or delete your personal data at any time by contacting [YOUR SUPPORT EMAIL]. You can also delete your own squad notes and leave a squad directly from the app.
Passwords are hashed with bcrypt and never stored in plain text. Data is transmitted over HTTPS. No system is perfectly secure, but we take reasonable steps to protect your data.
We may update this policy as the Service changes. We'll post the updated version here with a new "last updated" date.
Questions about this policy or your data? Reach us at [YOUR SUPPORT EMAIL].