Draft — pending legal review. Not yet binding.
This page reflects our current operating model and is published for transparency, but a lawyer has not signed off on the exact wording. If it contradicts something stated elsewhere, email support@sootbean.com and we'll reconcile.
This policy describes what data Tamagui LLC ("we", "us") collects when you use SootSim and sootbean.com, what we do with it, and what we never do with it.
When you sign up we collect your email address and the authentication details from your login provider (GitHub, Google, or email). We store your account identifier, email, and display name.
We collect operational metrics needed to run the service: preview uploads, API key usage, AI token spend, and aggregate counts used for billing and spending caps. We do not use this data for advertising.
When you push a preview, we store the bundled application, captured assets, and flow videos you produce. Personal and trial uploads do not auto-expire. Team previews are stored for 30 days and Team flow videos for 7 days. We do not scan, index, or read the contents of your uploads beyond what's required to serve them.
When you run agent flows, the prompts, diffs, and tool results you generate pass through Anthropic's API to produce responses. We log metadata (token counts, model used, spend) for billing and support. We do not use your prompts or responses to train AI models. Anthropic does not train on our API traffic under the terms of our business agreement with them.
We use minimal first-party analytics to understand which pages work and which don't. No third-party ad networks, no cross-site tracking pixels.
The following companies receive portions of your data to provide specific parts of the service. Each is bound by a data-processing agreement limiting what they can do with that data.
You can export a copy of your account data, correct inaccurate information, or delete your account and associated data by emailing support@sootbean.com. We respond within a reasonable time frame, and always within 30 days.
If you're in the EU/UK, GDPR rights apply. If you're in California, CCPA rights apply. In both cases the mechanism is the same — email support@sootbean.com.
Data in transit is encrypted with TLS. Uploaded content is stored in Cloudflare R2 with per-object access controls. We follow the principle of least privilege for internal access and rotate credentials routinely.
SootSim is not directed at children under 13. We do not knowingly collect data from children under 13.
Material changes to this policy will be announced by email to active subscribers and posted on this page before they take effect.
Questions about this policy — or a request to exercise any of the rights described above — should go to support@sootbean.com.