Privacy Policy
This Privacy Policy explains what personal information Fulcrum Global Tech LLC ("Dev404", "we", "us") collects when you use the Dev404 website, dashboard, editor integration, agents and hosting (the "Service"), how we use and share it, how long we keep it, and the choices you have. It applies together with our Terms of Service.
1. Information we collect
Information you give us
- Account details: your username, email address and password. Passwords are stored only as a salted hash. Your username is public: it is part of the web address of any application you publish.
- Age confirmation: at sign-up we ask for your date of birth to confirm you are old enough to use the Service. We do not store your date of birth. We keep only a record that the check was passed and when.
- Consent record: the version of the Terms and this Policy you accepted, and when.
- Your content: the prompts and messages you send, files and images you attach, project notes, environment variables and secrets you save for a project, and the repositories you connect.
- Payment information: purchases are processed by Stripe. We receive your Stripe customer and subscription identifiers, plan, payment status and purchase amounts. We never receive or store your full card number.
- Integrations: if you connect Slack, the webhook address you provide.
Information from services you connect
- GitHub and GitLab: your account identifier and username, the list of repositories you can access, and access tokens that let the Service act on your behalf. Tokens are stored encrypted.
- Repository content: when an agent works on a project, the repository is copied into a cloud workspace and its contents are read, changed and sent to AI model providers as needed to do the work.
Information created when you use the Service
- Activity records: chats, agent runs, the commands and tools an agent used and their results, logs, screenshots and recordings of the agent's workspace, workspace backups, branches and commits it created, and deployments.
- Usage records: for each AI model call, the model, token counts, cost in credits, and the project and chat it belonged to.
- Technical data: session identifiers, and the IP address, browser type and request details that our hosting providers log when you connect.
2. Cookies and local storage
We use one essential cookie and a token in your browser's local storage to keep you signed in, and local storage to remember preferences such as your selected model. We do not use advertising cookies or third-party analytics trackers. Some pages load a script library from a public content-delivery network, which receives your IP address as part of delivering the file.
3. How we use information
- to provide the Service: authenticate you, run agents on your instructions, store your projects and chats, build and host your applications, and send notifications you set up;
- to bill you, meter usage, prevent fraud, and enforce usage limits;
- to keep the Service secure, investigate abuse and incidents, and fix faults;
- to improve the reliability and quality of the Service, using operational data such as logs and error reports;
- to communicate with you about your account, changes to the Service or these documents, and support requests;
- to comply with the law and enforce our Terms.
We do not sell your personal information, and we do not use your code, prompts or other content to train AI models. The AI model providers you choose handle the content sent to them under their own terms; see section 4.
Where the law requires a legal basis for processing, we rely on: performing our contract with you; our legitimate interests in running, securing and improving the Service; your consent where we ask for it; and compliance with legal obligations.
4. Who we share information with
We share personal information only as described here:
- AI model providers. To do the work you ask for, your prompts, relevant repository content, files and tool results are sent to the provider of the model you select, through the routing service OpenRouter or directly. Available models are operated by companies including OpenAI, Anthropic, Google and xAI, and, if you select them, by providers based in the People's Republic of China (such as Alibaba/Qwen, DeepSeek, Moonshot AI, Z.ai, MiniMax and ByteDance). Each provider processes that content under its own terms and privacy policy, which may allow it to retain or review content. Choose a model whose provider you are comfortable with, and do not send content you are not permitted to share.
- Infrastructure providers. Cloudflare (application hosting, databases, file storage, agent workspaces and hosting of applications you deploy) and Vercel (web hosting and routing).
- Payments. Stripe processes payments and holds your payment details.
- Services you connect. GitHub or GitLab (to read and write your repositories as you direct) and Slack (to deliver notifications you set up).
- Organizations. If you join an organization on Dev404, its members and administrators can see your name, email, and the projects and activity shared with that organization.
- The public. Applications you publish are public, at the address you choose. Anything you put in a published application or a public repository is visible to others.
- Legal and safety. We may disclose information if we believe in good faith that it is required by law or legal process, or needed to protect the rights, safety or property of our users, the public or us.
- Business transfers. If we are involved in a merger, acquisition, financing or sale of assets, information may be transferred as part of that transaction, subject to this Policy.
5. Data retention and deletion
- While your account is open, we keep your account details, projects, chats, activity records, workspace backups and usage records so the Service can work and you can review your history.
- Deleting a project removes its chats, runs, logs, files, backups and recordings, takes its deployed application offline, deletes that application's database, and releases its public address. The repository on GitHub or GitLab is not deleted unless you explicitly choose that option.
- Deleting your account (Settings → Account) is permanent. It cancels any active subscription immediately, deletes all of your projects as described above, and deletes your account record, username, sessions, connected-provider tokens, chats, usage history, credits and stored files from our live systems. We do not delete repositories, branches or commits on GitHub or GitLab; those remain under your control there.
- What may remain for a limited time. Copies in our providers' routine backups and point-in-time recovery systems are overwritten on their normal schedule, generally within 30 days. Server and security logs held by our infrastructure providers are kept for their standard retention periods.
- What we must keep. Records of payments, invoices and related tax information are retained by Stripe and by us for as long as tax, accounting and anti-fraud laws require. We may also keep the minimum information needed to resolve disputes, enforce our Terms, or honour a legal obligation.
- Content sent to AI model providers is retained by them according to their own policies, which we do not control.
- Inactive accounts. We may delete accounts and their content after an extended period of inactivity, after giving notice to the account's email address.
6. Children's privacy
The Service is not directed to children under 13, and we do not knowingly collect personal information from them. We ask for a date of birth at sign-up and do not create an account, or keep any of the information entered, if it shows the person is under 13. If you believe a child under 13 has given us personal information, contact us at archonic.labs@gmail.com and we will delete it. People aged 13 to 17 may use the Service only with a parent's or guardian's permission.
7. Your choices and rights
- Access and correction: you can see your projects, chats and usage in the dashboard.
- Deletion: you can delete individual projects, or your whole account, yourself at any time.
- Disconnecting services: you can revoke Dev404's access in your GitHub or GitLab account settings at any time.
- Legal rights. Depending on where you live (for example the European Economic Area, the United Kingdom, or US states such as California), you may have the right to request access to, a copy of, correction of, or deletion of your personal information, to object to or restrict certain processing, to withdraw consent, and not to be discriminated against for exercising these rights. You may also have the right to complain to your local data-protection authority.
To make a request we cannot fulfil through the dashboard, email archonic.labs@gmail.com. We may need to verify your identity before acting, and we will respond within the time the law requires.
8. International transfers
We and our providers process information in the United States and other countries, which may have data-protection laws different from those where you live. Where required, we rely on appropriate safeguards for those transfers. Selecting an AI model operated by a provider in another country sends the related content to that country.
9. Security
We use measures designed to protect your information, including encrypted connections, hashed passwords, encrypted provider tokens, and isolated workspaces. No system is perfectly secure, and we cannot guarantee the security of your information. You are responsible for keeping your password confidential, for the secrets you choose to store in a project, and for the security of applications you publish.
10. Data in applications you build
If you build and publish an application with Dev404 that collects personal information from its own users, you are responsible for that information and for your own privacy notice and legal compliance. We host that data on your behalf and act only on your instructions regarding it.
11. Changes to this Policy
We may update this Policy. If a change is material we will give notice, for example in the dashboard or by email, before it takes effect. The date at the top shows when it was last updated.
12. Contact
Fulcrum Global Tech LLC
1471 E Flamingo Way
Gilbert, AZ 85297
USA
Email: archonic.labs@gmail.com