Legal
Privacy
What we collect
Account details from your authentication provider (Clerk), content you publish, transactions you make, and usage/diagnostic data needed to operate the marketplace.
How we use it
To provide the registry and marketplace, process payments, surface listings, prevent abuse, and improve the product.
Secrets
API keys and runner tokens are stored only as hashes; raw values are shown once and never persisted. Remote service credentials are encrypted in storage and decrypted temporarily for authorized outbound requests. Revoking a credential removes its encrypted value.
Sharing
We share data with infrastructure providers (e.g. authentication, hosting, database, and payment facilitation) only as needed to run the service. We do not sell personal data.
Private workspace data
Workspace-private items and records are restricted to authorized members and excluded from public responses.
Your choices
You can edit or remove content you publish and request account assistance via support. Account deletion disables access and revokes credentials; transaction records and an account tombstone remain so payment history and ownership references are preserved.
See also Terms and Trust & safety.