Privacy Policy
Privacy isn't a setting here — it's how the product is built. This policy explains what we collect, what we deliberately don't, where your data lives, and the control you have. It covers the SimpleDirect® website, the Vinci web app, the Vinci mobile apps for iOS and Android, Vinci Desktop for macOS (beta), the Vinci Platform (our developer console), and our developer API. We are a Canadian company, so this policy is led by Canadian law — PIPEDA and Québec's Law 25 — and also sets out your rights under the EU and UK GDPR and US state privacy laws.
The short version
By default, Vinci runs on zero data retention: your chats, attachments, model replies, and search queries pass through our inference providers only long enough to answer you, and are never logged or stored. Your conversation history lives on your device unless you turn on sync, which keeps an encrypted copy on Canadian infrastructure and is deleted the moment you turn sync off. Memory and custom instructions stay on your device (end-to-end encrypted on mobile when sync is on). The only content we store by default is documents you upload for retrieval — kept until you delete them. Product analytics are opt-in and off by default, and contain no conversation content. Model inference runs through DeepInfra or Fireworks, depending on the class, on zero-data-retention routes in Canada or the United States; your accounts, sync, and uploaded documents are stored in Canada (Montréal). Our other US providers are SendGrid (email), PostHog (opt-in analytics), and Stripe (payments). We don't sell or share your personal information, and you're always in control.
Who we are
The Services are operated by Alpine Pacific Trading Inc., a Canadian company operating as SimpleDirect®, based in Toronto, Ontario, Canada. "We", "us", and "our" refer to this company; "Vinci" is our AI assistant. This policy applies to our website at getsimpledirect.com, the Vinci web app, the Vinci mobile apps for iOS and Android, Vinci Desktop for macOS (beta), the Vinci Platform (our developer console at platform.getsimpledirect.com), and our OpenAI-compatible developer API (together, the "Services"). For privacy questions, contact our Privacy Officer (below).
Privacy Officer
We have appointed a Privacy Officer accountable for our handling of personal information under Canada's PIPEDA and Québec's Law 25. You can reach them at: Vikas Grover, Privacy Officer — [email protected]. If you are not satisfied with our response, you may complain to the Office of the Privacy Commissioner of Canada (OPC) and, if you are a Québec resident, to the Commission d'accès à l'information du Québec (CAI). Individuals in the EEA or UK may also contact their local supervisory authority.
What we collect
We collect as little as we can to run the Services, and we tell you exactly what each category is and where it lives. Most of what makes Vinci useful — your history, memory, and instructions — stays on your device, not on our servers.
Account information
If you create an account, we store your email address, a display name, and (if you sign in with Google or GitHub) the profile-image URL those providers return. For email-and-password accounts, we store a securely hashed password — never the password itself. Held in our Canadian database in Montréal.
Authentication & OAuth
When you sign in with Google or GitHub on the web, we store the tokens needed to keep you signed in. A session record links your device to your account.
Session & device data
Your session record includes your IP address and your browser/device user-agent. We also use your IP address in memory (not stored) to rate-limit and protect the Services from abuse.
Conversation content (zero data retention)
Your messages, file and image attachments, Vinci's replies, and any web-search queries are processed in server memory only to produce a response, and are never logged or stored — unless you turn on sync (see below). By default your history lives only on your device.
Uploaded documents (stored for retrieval)
If you upload a document so Vinci can reference it, we store its text as searchable chunks (vector embeddings in a Canadian vector database in Montréal) plus the filename and chunk count in our Canadian database. This is the one exception to zero data retention. It is scoped to your account and kept until you delete it; deleting it purges the embeddings and metadata.
Vinci Desktop project and tool data
Vinci Desktop is a beta application for macOS. Its projects live in folders on your Mac: it reads only files you select and writes its work back as ordinary files. Prompts, relevant context, and content you explicitly attach are sent through SimpleDirect's hosted inference gateway under zero data retention; project files otherwise stay on your device. Browser, terminal, and computer-control preview actions run locally and require your explicit approval, and computer-control preview also requires macOS Accessibility permission. The app installs signed automatic updates and uses your existing Vinci account and billing.
Memory
Durable facts Vinci remembers about you are stored on your device, where you can view, edit, and delete them. On mobile, when sync is on, memory is end-to-end encrypted (AES-256-GCM) with a key derived from your password and held only on your device — we see only ciphertext.
Custom instructions
Personalization preferences you set for Vinci are stored on your device, alongside your local history and memory.
Usage metering
We keep a daily token count per account — a single number with no conversation content — to apply fair-use limits. It resets each day.
API keys
If you create a developer API key, we store only a SHA-256 hash of it; the secret itself is shown to you once and is never stored. You can revoke a key at any time.
Product analytics (opt-in, off by default)
If — and only if — you turn on analytics, we collect metadata about how the Services are used: sign-in method, which feature was used, the model name, response latency, error type, and conversation turn count. No conversation content, and your IP address is not stored. Your consent is stored locally and you can turn it off anytime.
Communications & feedback
If you contact us or submit feedback, we receive your message and any name or reply email you include, so we can respond. Feedback is delivered to an internal inbox and is not stored in our product database.
Cookies & local storage
We use an essential session cookie for signed-in users and a signed, HttpOnly cookie that counts anonymous demo messages (no account, no server storage). Your analytics-consent flag is kept in your browser's local storage. We use no advertising or cross-site tracking cookies.
Your conversations (zero data retention)
By default, the Services run on zero data retention. The content of your conversations — your messages, file and image attachments, Vinci's replies, and any web-search queries — is processed in server memory only long enough to generate a response, then discarded. Vinci Desktop likewise sends prompts, relevant context, and content you explicitly attach through our hosted inference gateway under zero data retention; other files in your local project folders stay on your Mac. Content is not written to our logs, analytics, or any datastore, and is never used to train our models. Our inference runs through DeepInfra or Fireworks, depending on the class, on zero-data-retention routes in Canada or the United States, so requests are not logged. Your conversation history is kept on your device (in your browser on the web, in app storage on mobile, and in local project folders for Vinci Desktop) unless you choose to turn on sync. A built-in Private chat mode is never saved anywhere — not on your device and not on ours.
The controls you have
Privacy here is mostly defaults, not toggles you have to find. Where there are choices, you hold them:
Sync (off by default)
Turn on sync to keep an encrypted copy of your conversations on Canadian infrastructure (object storage in Montréal) so they follow you across devices. Turning sync off deletes the server-side copy.
Memory
View, edit, or delete what Vinci remembers, at any time. Memory lives on your device; on mobile with sync on, it is end-to-end encrypted so only you can read it.
Uploaded documents
Delete any document you've uploaded; this purges its embeddings and metadata from our systems.
Analytics
Product analytics are off until you opt in, and you can turn them back off whenever you like.
Custom instructions
Your custom instructions stay on your device; clear them anytime.
API keys
Revoke any developer API key instantly from the Vinci Platform or the app.
Demo without an account
Try Vinci without signing up. Demo usage is counted by a single anonymous cookie — no account and no server-side storage of your messages.
Why we use information, and our legal basis
We use the information above only for the purposes below. Under PIPEDA and Law 25 our handling rests on your consent and on what is necessary to provide a service you asked for; the GDPR equivalents (Article 6) are noted for users in the EEA and UK.
To provide the Services
Process your requests, return responses, retrieve from documents you upload, and keep you signed in. Legal basis: performance of our Terms with you (GDPR Art. 6(1)(b)); consent under PIPEDA and Law 25.
To secure and maintain the Services
Rate-limit, prevent abuse, and keep the Services available and reliable. Legal basis: our legitimate interests (GDPR Art. 6(1)(f)), balanced against your rights.
To remember and personalize (your choice)
Provide memory, custom instructions, and sync when you enable them. Legal basis: consent (GDPR Art. 6(1)(a)).
To communicate with you
Send transactional email such as verification, password reset, and email-change confirmations, and respond to your messages. Legal basis: performance of contract and consent.
To understand product usage (opt-in only)
Measure feature use and reliability through analytics, only if you opt in. Legal basis: consent (GDPR Art. 6(1)(a)), withdrawable anytime.
To meet legal obligations
Comply with applicable law and respond to lawful requests. Legal basis: legal obligation (GDPR Art. 6(1)(c)) and legitimate interests.
Where your data lives
Here's where things run. Model responses are served by DeepInfra or Fireworks in Canada or the United States, depending on the class. Both inference providers use zero-data-retention routes, so your prompts and replies are never logged or stored. Your accounts, opt-in sync storage, and uploaded documents are stored on Canadian infrastructure in Montréal, Québec. Our other US providers are SendGrid (email), PostHog (opt-in analytics), and Stripe (payments), each described below.
Who else processes data for us
We rely on a small, named set of providers, each under contract and limited to what its role requires. We do not sell your personal information. Our providers, by role:
Canadian cloud database (Montréal)
Hosts accounts, sessions, document metadata, usage counts, and opt-in sync references in Canada.
Canadian object storage (Montréal)
Stores the encrypted copy of your conversations only if you turn on sync.
Canadian vector database (Montréal)
Stores the embeddings of documents you upload, so Vinci can retrieve from them.
AI inference — DeepInfra and Fireworks (Canada/US routes)
Serve Vinci's model responses, depending on the class. Both use zero-data-retention routes — prompts and replies are not logged or stored.
SendGrid (United States)
Sends transactional email — verification, password reset, and email-change messages — and receives the recipient email and name needed to deliver them. Also relays feedback-form messages to our internal inbox.
PostHog (United States)
Receives opt-in, content-free product analytics. Loaded only if you consent; no conversation content and no stored IP address.
Stripe (United States)
Processes payments and stores billing details for paid plans.
How long we keep it
Conversation content: none by default — processed transiently and discarded (zero data retention). Sync copies: kept while sync is on, and deleted when you turn it off. Uploaded documents: kept until you delete them. Memory and custom instructions: kept on your device until you remove them. Account information: kept for the life of your account and deleted (or de-identified) when you close it or ask us to. Usage metering: a rolling daily count that resets each day. Session and security data: kept only as long as needed to operate and secure the Services, then deleted. We retain information longer only where the law requires it.
Your rights
Wherever you live, you can ask us to:
- Access the personal information we hold about you
- Correct information that is inaccurate or incomplete
- Delete your information (erasure), subject to legal limits
- Receive a portable, machine-readable copy of your information
- Withdraw consent at any time, including for sync and analytics
- Object to or ask us to restrict certain processing
- Not be subject to a decision based solely on automated processing that produces legal or similarly significant effects
- Complain to your privacy regulator
Region-specific rights
Your jurisdiction may add to these. Québec's Law 25 adds data portability, the right to de-indexing and to the cessation of dissemination, and disclosure about automated decisions. The EU and UK GDPR add the rights to restriction and to lodge a complaint with a supervisory authority. US states such as California (CCPA/CPRA) add the rights to know, delete, correct, and opt out of the "sale" or "sharing" of personal information — which we do not do. These are detailed in the full policy below.
To exercise any right, contact our Privacy Officer at [email protected]; we may need to verify your identity. In-app account-deletion and export tools are still being built, so for now we honour these requests manually within the timeframes the law requires (generally 30 days under PIPEDA and Law 25, and one month under the GDPR). You can also see your data controls
Cross-border transfers
Some processing happens in the United States. Model inference is served by DeepInfra or Fireworks in Canada or the United States, depending on the class; SendGrid sends our transactional email; PostHog receives opt-in, content-free analytics; and Stripe processes payments for paid plans. Your stored data — accounts, opt-in sync, and uploaded documents — stays in Canada. Conversation content is processed under zero data retention wherever inference runs, and is never logged or stored. These transfers are governed by contractual protections (including standard data-protection terms), and analytics also require your prior consent. We remain accountable for your information whenever a provider processes it on our behalf, wherever it operates.
If something goes wrong
We maintain safeguards to prevent privacy breaches and keep a register of confidentiality incidents, as Law 25 requires. If a breach creates a real risk of serious injury (Law 25) or a real risk of significant harm (PIPEDA), we will notify the Commission d'accès à l'information du Québec and/or the Office of the Privacy Commissioner of Canada, and the affected individuals, without undue delay. For users in the EEA or UK, we will notify the competent supervisory authority within 72 hours where the GDPR requires it, and affected individuals where the risk is high.
Age requirement
The Services are for adults. You must be at least 18 to create an account or use Vinci, and the Services are not directed to children — including children under 14 in Québec or under 13 elsewhere. We do not knowingly collect personal information from anyone under 18; if we learn that we have, we will delete it. Where a user is under the age of majority in their province or country, a parent or guardian must consent.
Cookies and local storage
We keep cookies to a minimum and use none for advertising or cross-site tracking. For signed-in users, an essential session cookie keeps you logged in. For anonymous visitors trying the demo, a signed, HttpOnly cookie counts your demo messages — it holds no account data and nothing is stored on our servers. Your analytics-consent choice is saved in your browser's local storage, not in a cookie, and you can change it anytime; turning analytics off stops PostHog from loading.
Changes to this policy
We'll post any changes here with a new "last updated" date and version, and keep prior versions available. For material changes, we'll give notice through the app or website before they take effect.
Contact us and complaints
Questions, requests, or complaints: contact our Privacy Officer, Vikas Grover, at [email protected], or write to SimpleDirect® (Alpine Pacific Trading Inc.), Toronto, Ontario, Canada. If you're not satisfied with our response, you can contact the Office of the Privacy Commissioner of Canada (priv.gc.ca), or — in Québec — the Commission d'accès à l'information du Québec (cai.gouv.qc.ca). In the EEA or UK, you may contact your local data-protection supervisory authority (in the UK, the Information Commissioner's Office).
The summary above is a plain-language guide. The complete policy follows, organized by section and led by Canadian law. Where the summary and this full text differ, this full text governs.
1. About this Policy and scope
This Privacy Policy explains how Alpine Pacific Trading Inc., a Canadian company operating as SimpleDirect® ("we", "us", "our"), collects, uses, discloses, and protects personal information across all of our surfaces: the getsimpledirect.com website, the Vinci web app, the Vinci mobile apps for iOS and Android, Vinci Desktop for macOS (beta), the Vinci Platform (our developer console at platform.getsimpledirect.com), and our OpenAI-compatible developer API (together, the "Services"). Because we are based in Canada, this policy is led by Canadian privacy law — the federal Personal Information Protection and Electronic Documents Act (PIPEDA) and Québec's Act respecting the protection of personal information in the private sector, as amended by Law 25 — and also addresses the EU and UK GDPR and US state privacy laws for users in those regions.
2. Who we are — controller and Privacy Officer
The organization accountable for your personal information is Alpine Pacific Trading Inc. (SimpleDirect®), Toronto, Ontario, Canada. For EU and UK purposes we act as the "controller" of the personal information described here. We have appointed a Privacy Officer — Vikas Grover — who is accountable for our compliance with PIPEDA and Law 25 and is your point of contact for any privacy matter, at [email protected].
3. Personal information we collect
Depending on how you use the Services, we may handle: (a) account information — email address, display name, and OAuth profile-image URL, plus a securely hashed password for email-and-password accounts; (b) authentication data — Google or GitHub OAuth tokens (web) and a session token; (c) session and device data — IP address and user-agent in the session record, with IP also used in memory for rate-limiting; (d) conversation content — your messages, attachments, Vinci's replies, and web-search queries, which are not stored by default (see section 7); (e) uploaded documents — text chunks and embeddings, plus filename and chunk-count metadata, stored until you delete them; (f) Vinci Desktop data — prompts, relevant context, and user-attached content processed under zero data retention, while selected project folders, ordinary project files, and local tool actions remain on your Mac; (g) memory and custom instructions — stored on your device; (h) usage metering — a daily token count with no content; (i) API key hashes — a SHA-256 hash only; (j) product analytics — opt-in, content-free metadata; and (k) communications and feedback you send us. We do not seek special-category or sensitive data, biometric data, or precise geolocation.
4. How we collect it
We collect personal information in three ways: directly from you (when you create an account, use Vinci, upload a document, set memory or instructions, create an API key, or contact us); automatically (your IP address, user-agent, session and demo cookies, and — only if you opt in — product-analytics metadata); and from third parties (Google or GitHub, if you choose to sign in with them, which return your email, display name, and profile-image URL). We do not buy personal information or build advertising profiles.
5. Purposes and legal bases
We use personal information to: provide and operate the Services (performance of our Terms with you; GDPR Art. 6(1)(b)); secure them and prevent abuse, including rate-limiting (legitimate interests; Art. 6(1)(f)); provide memory, custom instructions, sync, and analytics where you choose them (consent; Art. 6(1)(a)); send transactional email and respond to you (contract and consent); and comply with legal obligations (Art. 6(1)(c)). Under PIPEDA and Law 25, our processing rests on your consent and on the collection that is necessary for the purposes we identify. We do not use your personal information for purposes incompatible with those described here without your consent.
6. Consent and how to withdraw it
We seek consent at or before the point of collection, and we use express opt-in consent for memory, sync, and analytics — all off by default. You may withdraw consent at any time (subject to legal or contractual limits) through in-product controls or by contacting the Privacy Officer; withdrawal is not retroactive. Commercial electronic messages, if any, are sent only with consent and always include an unsubscribe mechanism, consistent with Canada's Anti-Spam Legislation (CASL); transactional messages such as verification and password-reset emails are sent to operate your account.
7. Zero Data Retention and its exceptions
By default, the Services operate on zero data retention. The content of your conversations — messages, file and image attachments, Vinci's replies, and any web-search queries — is processed only in server memory to generate a response and is never written to our logs, analytics, or any datastore, and is never used to train our models. Vinci Desktop sends prompts, relevant context, and content you explicitly attach through the same hosted inference gateway under zero data retention; files in your selected project folders otherwise stay on your Mac. Our inference runs through DeepInfra or Fireworks, depending on the class, on zero-data-retention routes in Canada or the United States, so requests are not logged. There is one exception: documents you upload for retrieval are stored as text chunks and embeddings until you delete them (see sections 3 and 8). A Private chat mode is saved nowhere — not on your device and not on our servers.
8. On-device storage and opt-in sync
Your conversation history lives on your device by default — in your browser's local storage (IndexedDB) on the web, in app storage on mobile, and in local project folders for Vinci Desktop. Vinci Desktop reads files only from folders you select and writes its work back as ordinary files. If you turn on sync, we keep an encrypted copy of your conversations on Canadian object storage in Montréal so they follow you across devices; turning sync off deletes that server-side copy. Memory and custom instructions are stored on your device, where you can view, edit, and delete them. On mobile, when sync is on, memory is end-to-end encrypted with AES-256-GCM using a key derived from your password and held only on your device — we store only ciphertext and cannot read it. An optional auto-memory feature sends a message to a server endpoint to extract facts to remember; that request is processed under zero data retention and is not stored.
9. Service providers and sub-processors
We share personal information only with service providers that process it on our behalf under contract, each limited to its role: a Canadian cloud database in Montréal (accounts, sessions, document metadata, usage counts, sync references); Canadian object storage in Montréal (encrypted sync copies); a Canadian vector database in Montréal (document embeddings); DeepInfra and Fireworks for model inference in Canada or the United States, depending on the class (running Vinci with zero data retention and not logging requests); SendGrid in the United States (transactional email and feedback relay); PostHog in the United States (opt-in, content-free analytics); and Stripe in the United States (payment processing). We do not sell or rent personal information. We may disclose information where reasonably necessary to comply with law, enforce our Terms, or protect rights, safety, and security.
10. Data residency and cross-border transfers
We keep your stored personal information in Canada: accounts, sync storage, and document storage are all in Montréal. Model inference runs through DeepInfra or Fireworks in Canada or the United States, depending on the class; conversation content is processed under zero data retention wherever inference runs. When inference runs in the United States, that cross-border transfer — like transfers to SendGrid (email), PostHog (opt-in analytics), and Stripe (payments) — is governed by contractual data-protection terms (and, for analytics, your consent). For transfers originating in the EEA or UK, we rely on appropriate safeguards such as the Standard Contractual Clauses where required. We remain accountable for personal information processed on our behalf, wherever a provider operates.
11. Retention
We retain personal information only as long as needed: conversation content — not retained (zero data retention); sync copies — until you turn sync off; uploaded documents — until you delete them; memory and custom instructions — on your device until you remove them; account information — for the life of your account, then deleted or de-identified on closure or request; usage metering — a rolling daily count; session and security data — only as long as needed to operate and secure the Services. We keep information longer only where the law requires it.
12. Security
We use administrative, technical, and physical safeguards appropriate to the sensitivity of the information, including encryption in transit and at rest for stored data, hashed passwords, hashed API keys, end-to-end encryption of mobile memory when sync is on, on-device storage of history by default, IP-based rate-limiting, and Canadian data residency. On mobile, session tokens and the memory-encryption key are held in the device's secure keychain. Vinci Desktop uses signed automatic updates, requires explicit approval before local browser, terminal, or computer-control preview actions, and relies on macOS Accessibility permission for computer-control preview. No system is perfectly secure, but we work to protect personal information against loss and unauthorized access, use, or disclosure.
13. Your rights in Canada — PIPEDA
Under PIPEDA you have the right to access the personal information we hold about you and to be told how it is used and disclosed, to challenge its accuracy and have it corrected, and to withdraw consent (subject to legal or contractual limits). We are accountable for information in our custody, including with service providers. To exercise a right, contact the Privacy Officer; we will respond within 30 days. If you are not satisfied, you may complain to the Office of the Privacy Commissioner of Canada (priv.gc.ca).
14. Québec — Law 25
If you are in Québec, you also have, under the Act as amended by Law 25: the right of access and rectification; the right to withdraw consent; the right to data portability (to receive computerized personal information in a structured, commonly used technological format); the right to de-indexing and to require that the dissemination of your information cease where the law permits; and the right to be informed of, and to submit observations about, a decision based exclusively on the automated processing of your personal information. We have a Privacy Officer (the person responsible for the protection of personal information), keep a register of confidentiality incidents, and conduct privacy assessments where required. You may complain to the Commission d'accès à l'information du Québec (cai.gouv.qc.ca).
15. EEA and UK — GDPR / UK GDPR
If you are in the EEA or UK, you have the rights of access, rectification, erasure, restriction, portability, and objection, the right to withdraw consent, and the right not to be subject to solely automated decisions with legal or similarly significant effects. Our legal bases are set out in section 5. You may lodge a complaint with your local supervisory authority (in the UK, the Information Commissioner's Office). Where we transfer personal information outside the EEA or UK, we use appropriate safeguards as described in section 10.
16. United States — CCPA/CPRA and other state laws
If you are a California resident, you have the rights to know the categories and specific pieces of personal information we collect and the purposes; to delete and to correct it; and to opt out of the "sale" or "sharing" of personal information and to limit the use of sensitive personal information. We do not sell or share personal information as those terms are defined, and we do not use sensitive personal information for purposes that require an opt-out. We do not discriminate against you for exercising your rights. Residents of other US states with comprehensive privacy laws (such as Virginia, Colorado, Connecticut, Utah, and Texas) have comparable rights; contact the Privacy Officer to exercise them, and we will verify your request as the law allows.
17. Automated decision-making and AI
Vinci generates responses, and — where you enable them — uses memory and your uploaded documents (retrieval) to personalize those responses for you. These outputs are for your use; we do not use automated processing to make decisions about you that produce legal or similarly significant effects (for example, about credit, employment, or eligibility). Where you are in Québec, the EEA, or the UK and a decision were ever based solely on automated processing, you would have the right to be informed and to request human review, as the law provides.
18. Children
The Services are for adults. You must be at least 18 to create an account or use Vinci, and the Services are not directed to children, including children under 14 in Québec or under 13 in other jurisdictions. We do not knowingly collect personal information from anyone under 18 and will delete such information if we learn of it. Where a user is under the age of majority in their province or country, a parent or guardian must provide consent.
19. Cookies and similar technologies
We use an essential session cookie for signed-in users and a signed, HttpOnly cookie that counts anonymous demo messages (no account, no server-side storage). Your analytics-consent choice is stored in your browser's local storage rather than in a cookie. We use no advertising, profiling, or cross-site tracking cookies. You can clear cookies and local storage through your browser, and you can turn analytics off at any time.
20. The Vinci mobile app
On iOS and Android, your conversation history and memory are stored on the device; the session token and the memory-encryption key are kept in the device's secure keychain. The app requests photo-library and document-picker permissions only so you can attach images and files to a conversation — that content is processed under zero data retention and is not stored unless you upload it as a retrieval document. The app contains no push notifications, no crash-reporting SDK, no advertising SDK, and no third-party trackers. We collect no audio. The same Canadian residency, sync, analytics, and rights described here apply to the mobile app.
21. Vinci Desktop (macOS beta)
Vinci Desktop is a beta desktop application for macOS and uses the same Vinci account and billing as our other surfaces. Projects live in folders on your Mac: the app reads only files you select and writes its work back as ordinary files. Model inference is provided through SimpleDirect's hosted gateway under zero data retention, so prompts, relevant context, and content you explicitly attach are sent to our servers only to produce a response; project files otherwise remain on your device. Browser, terminal, and computer-control preview actions run locally and require your explicit approval. Computer-control preview also requires macOS Accessibility permission. The app installs signed automatic updates.
22. Changes to this Policy
We may update this Policy and will post the revised version here with a new effective date and version number, keeping prior versions available. For material changes, we will provide additional notice through the app or website before they take effect. Your continued use after an update means you accept the revised Policy, except where additional consent is required by law.
23. How to contact us and complaint avenues
For any privacy question, request, or complaint, contact our Privacy Officer, Vikas Grover, at [email protected], or write to SimpleDirect® (Alpine Pacific Trading Inc.), Toronto, Ontario, Canada. If you are not satisfied with our response: in Canada, contact the Office of the Privacy Commissioner of Canada (priv.gc.ca); in Québec, the Commission d'accès à l'information du Québec (cai.gouv.qc.ca); in the EEA, your national data-protection authority; in the UK, the Information Commissioner's Office (ico.org.uk).
Software you run yourself, and where your requests go
This policy covers the services SimpleDirect operates. Vinci Code runs on your own computer, so what reaches us depends on how you run it. In Vinci Managed mode you sign in to a Vinci account and your prompts pass through our gateway to the model: this policy applies in full, including the retention and sub-processor terms set out above. In direct mode you supply your own provider credential. That credential is stored on your machine, the request travels from your computer to the provider you chose, and our servers are not in the path — we do not receive the credential, the prompt, the attachments or the reply, and this policy therefore does not govern that traffic. The privacy terms of the provider you chose do. Two things hold in both modes. Session transcripts are written to your own disk, and credentials the client recognises are masked before they are written — both text you type at the prompt and the output of the tools it runs. Three things escape that masking: the `!` shell shortcut is handled outside those hooks, large shell output can spill to a temporary file before masking runs, and a credential in a format the patterns do not recognise is stored as it appeared. Sessions recorded before this masking existed were never masked at all. Treat both your session directory and your temporary directory as sensitive. Separately, the client contacts our release manifest to check whether a newer version exists, which tells us a version was checked and nothing about your work.
Official builds and community builds
An official build is one we publish and sign. If you install a fork, a rebuild, or a package someone else distributes, we did not publish it, we do not review it, and we do not operate it — this policy does not describe how it handles your information, and whoever distributes it is responsible for saying how it does. Our installer fetches a signed, versioned archive, which is how you can tell an official build from one that only looks like it.