Privacy Policy

Last updated September 30, 2026

Draft. Written to match how Breadboard Studio works today. Have a lawyer review it and fill in the highlighted parts before launch.

1.The short version

2.Who is responsible

Breadboard Studio is run by Cohen Michael Gleason Stewart, a sole proprietor in Wichita, Kansas, USA, doing business as Breadboard Studio, who is responsible for the personal information described here. Contact: breadboardstudio@gmail.com.

3.What stays on your device

The builder saves these in your browser's local storage, on your device only:

We cannot see or recover this data. Clearing your browser's site data, or using Settings then Delete everything in the builder, removes it. The backup download leaves your keys out.

4.What your workflows send to others

When you run a workflow, your browser sends requests straight to the services it calls, such as an AI provider or a data API, along with any keys and data the workflow includes. Those services receive that data under their own privacy policies, not this one. Check them before sending anything sensitive.

5.What we collect

When paid plans launch, we will also collect billing information through our payment provider, and we will update this policy before that happens.

6.How we use it

Where laws such as the GDPR apply, our legal bases are performing our agreement with you (your account), your consent (waitlist), our legitimate interests (running and securing the site) and legal obligation.

7.Who we share it with

We share personal information only with providers that help us run the Service, under agreements that limit their use of it:

We may also disclose information when the law requires it, or as part of a merger or sale of the business, in which case this policy continues to apply.

8.Cookies

We use one strictly necessary cookie, to keep you signed in, and your browser’s local storage for the builder data described above and to remember your theme. We do not use advertising, analytics or tracking cookies. Our Cookie Policy lists each one.

9.How long we keep it

Account details are kept while your account is open, and deleted within 30 days after you ask us to delete the account. Sign-ins expire after 30 days, or when you log out. Failed log-in records are deleted after a day. Waitlist emails are kept until paid plans launch and for up to 12 months after, or until you ask us to delete them. Server logs are kept for a short period set by our hosting provider.

10.Your choices and rights

You can ask us to access, correct or delete your personal information, or to stop emailing you, by writing to breadboardstudio@gmail.com. Every email we send has an unsubscribe link. Depending on where you live, for example in the EU, UK or California, you may have further rights, including the right to complain to your data protection authority. We will not treat you differently for using your rights.

11.Security

We use HTTPS for the whole site, store passwords only as salted hashes, keep the sign-in cookie out of reach of page scripts, and limit access to our database. No system is perfectly secure. Because API keys are stored in your browser, only add them on a device you trust.

12.Children

The Service is not meant for children under 16, and we do not knowingly collect their information. If you believe a child has given us personal information, contact us and we will delete it.

13.International transfers

Our providers may process data in the United States and other countries. Where required, we rely on safeguards such as standard contractual clauses.

14.Changes

We will update this policy as the Service changes, especially before billing launches. We will change the date at the top and tell waitlist members and account holders about significant changes.