Who operates SelfTune
SelfTune is operated by PragSys Collaborative LLC ("PragSys", "we", "us", or "our"). PragSys is the controller of personal information described in this policy. Charges may appear under the PragSys billing entity.
For privacy questions or requests, email hello@selftune.dev.
What we collect
- Account information: name, email address, organization, role, and authentication records.
- Billing information: subscription status, plan, and payment references. Payment card details are handled by Stripe rather than stored by SelfTune.
- Connected-service information: identifiers and authorization records for services you connect, such as GitHub.
- Content you choose to send: skill or Skill Set packages you explicitly share, plus the privacy-safe inventory manifest shown by Desktop before connection.
- Communications: support messages and the email address you submit for product updates.
- Operational information: request metadata, security events, device or app version, and diagnostic information needed to operate and protect the service.
What stays local
SelfTune Desktop and the CLI are designed to manage your local skill library on your computer. We do not receive local skills, prompts, transcripts, project files, paths, or evaluation evidence merely because you install or open SelfTune. Data leaves your device only when you choose an action that requires it, such as signing in, linking a device, sharing a package, starting checkout, or sending diagnostics.
How we use information
- Provide accounts, subscriptions, device linking, secure sharing, update notices, and support.
- Authenticate users, prevent abuse, investigate incidents, and protect the service.
- Process payments and maintain transaction and audit records.
- Send requested product updates and service communications.
- Diagnose failures and improve reliability using bounded operational data.
- Comply with legal obligations and enforce our agreements.
We process information to perform our contract with you, with your consent where an optional action requires it, to meet legal obligations, and for legitimate interests such as security, reliability, and preventing misuse. We do not sell personal information or use it for third-party targeted advertising.
Optional telemetry and diagnostics
Contributor telemetry is off by default and requires a separate, disclosed authorization. A sender cannot enable it merely by sharing a skill. Desktop error reporting operates only when configured and respects supported do-not-track settings. Native crash reporting requires explicit consent. Diagnostic exports are user-initiated and are redacted and size-limited before sharing.
Service providers and sharing
We use service providers to host, secure, authenticate, email, monitor, and bill for the service. Depending on the feature, these may include Cloudflare, Convex, and Stripe. Optional integrations such as GitHub are used only when you choose them. These providers process information under their own terms and our service arrangements. We may also disclose information when required by law, during a corporate transaction, or to protect users and the service.
If you share a skill or Skill Set, the intended recipient receives the content and metadata shown in the sharing preview. Public Registry publication makes the approved package and associated metadata public.
Cookies and local storage
SelfTune uses strictly necessary cookies and browser storage for authentication, security, active-workspace state, and preferences. We do not currently use non-essential advertising cookies. If that changes, we will update this policy and request consent where required.
Retention
Local data remains on your device until you remove it. Account data, privacy-safe manifests, and explicitly shared packages are kept while your account or workspace is active and for a reasonable period afterward for recovery, security, dispute resolution, and legal compliance. Newsletter addresses are retained until you unsubscribe or ask us to delete them. Operational logs and diagnostics are retained only as long as reasonably needed for security and reliability. Backup copies may remain for a limited period before deletion cycles complete.
Security and international processing
We use technical and organizational safeguards appropriate to the information and service. No system is completely secure. Our providers may process information in countries other than yours; where required, transfers rely on recognized legal mechanisms and provider safeguards.
Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, restrict, object to, or receive a copy of personal information. You may withdraw consent for optional processing and unsubscribe from marketing at any time. Contact hello@selftune.dev. We may verify your identity before completing a request. You may also complain to the data-protection authority where you live or work.
Children and changes
SelfTune is not directed to children under 13, and we do not knowingly collect their personal information. We will update this policy when our practices materially change and will revise the date above. Material changes will be communicated through an appropriate service or account notice.