Privacy Policy
Kelvin Local — the app you download today — runs entirely on your machine. The contents of your sessions, screens and apps are NEVER sent to our servers: there is no server of ours in that path.
Kelvin Code Cloud is a separate, optional product, in closed alpha. When you opt into it, what leaves your machine is the app that will run, the evidence of the run — screen captures, the step by step and the hashes — and, in a live session, the screen images. There is no video in that path: neither side has anywhere to put one. Your Mac connects outbound only and exposes no shell, path or secret.
The intended retention windows for the Cloud are written down: evidence of a run that completed, 30 days; evidence of a run that failed, 7 days; the audit trail, 90 days.
Those are intentions, and it would be dishonest to present them as behaviour: today nothing deletes evidence on a schedule. Nothing you have sent has been erased automatically, and nothing here promises that it will be on a particular date.
What does get deleted is a room's state when it ends: chat, proposals, tickets and seats. No storage is public, and the signed addresses that serve the images last minutes, not days.
When deletion on request exists, the record that the evidence existed and was deleted will not go with it. An audit trail that could be erased by removing its subject would not be an audit trail.
Cloud sub-processors: Cloudflare and Vercel (dashboard and this site). Data follows the regions and jurisdictions contracted with those providers. The Cloud Alpha does not promise Brazilian data residency — anyone who needs that stays on Kelvin Local.
Usage telemetry is optional (opt-in) and anonymous. Crash reports are anonymous and used only to fix defects.
This site uses anonymous analytics only after your consent. We do not sell data. Draft pending legal review.
PortuguêsEnglish