Privacy Policy
Effective August 4, 2026
1. What this policy covers
This policy describes how Looseleaf (“we”, “us”) collects, uses, and protects information when you use the Looseleaf service and website. It applies to workspace owners, signed-in members, and visitors who use or evaluate the service.
2. Information we collect
Account information. Your name and email address, provided when you sign in or when a workspace is created for you.
Content you store. The markdown documents, version history, and tags that you or your authorized assistants write to your workspace. Looseleaf stores pages you ask an assistant to save; it does not automatically ingest every conversation. Page deletion inside the workspace is reversible; full account erasure is a separate request described below.
Usage and log data. Standard technical records such as IP addresses, request timestamps, and the identity of the token or agent that performed each change. Our application logs record that operations happened — they do not record the content of your documents.
Cookies. We use only the cookies required to operate the service, such as the session cookie that keeps you signed in. We do not use advertising or cross-site tracking cookies.
3. How we use information
We use the information we collect to provide and secure the service, attribute changes within your workspace, respond to your requests, communicate with you about the service, and diagnose problems. We do not sell your information, share it with advertisers, or use your stored content to train machine-learning models.
4. Where your data lives
Your data is stored with our cloud hosting provider and protected in transit with TLS. Access to production systems is restricted to those who need it to operate the service.
5. Retention and deletion
Document history is retained deliberately so you can compare and restore versions. You can export your workspace at any time. Deleting a page inside the service is reversible until your account itself is erased. If you ask us to delete your account, we erase your workspaces, documents, version history, and account records from active systems.
6. Services we rely on
We use a small number of service providers to run Looseleaf, such as cloud hosting, transactional email, and payment processing when billing is configured. These providers process data only as needed to provide their service to us and are bound by their own confidentiality obligations. Connected AI providers also apply their own data policies to prompts, page content, and tool results you choose to send through them.
7. Your rights
You can access and export the data in your workspace at any time, ask us to correct account information, or ask us to delete your account and its data entirely. Depending on where you live, you may have additional rights under local data-protection law; we will honor requests to exercise them.
8. Changes to this policy
We may update this policy from time to time. If a change is material, we will provide notice before it takes effect, such as by email or a notice in the service.
9. Contact
A monitored support email is not configured yet. Set SUPPORT_EMAIL before launch so customers have a real contact path.