Privacy Policy
What Modus collects, why, and how to delete it.
Last updated: July 2026.
This is a plain-language summary of what data Modus collects, what we use it for, and the controls you have.
What we collect
- Account: email, display name, profile photo (optional).
- Project content: prompts you type, files you upload, code Modus generates on your behalf, and metadata about your projects (titles, timestamps, chain selection).
- Diagnostics: crash and error reports (via Sentry, with personal data stripped) to debug and improve reliability. We do not run advertising or product-analytics trackers.
- Wallet: public addresses you connect for deployment. We never see private keys.
- Billing: on-chain payment records for crypto purchases (transaction hashes for USDT, USDC, and native-coin transfers), and Stripe customer/invoice records for card payments. We never store card numbers — Stripe holds them.
What we don't do
- We don't train models on your prompts or code. Builds run in per-project sandboxes.
- We don't sell your data to advertisers. We don't share project content with third parties except as noted in Sub-processors below.
- We don't read your project content for any purpose other than running the build.
Sub-processors
Our own systems — application servers, database, storage, backups and build sandboxes — run in the EU (Germany, Frankfurt), so your personal data stays in the EU. Some third-party providers below are US-based; those transfers are governed by the providers' data-processing terms.
- Neon: primary application database — EU (Germany).
- Object storage / backups: files, project artifacts and database backups — EU (Germany).
- Upstash: caching and rate-limiting — EU (Germany).
- Fly.io: application and build-sandbox hosting — EU (Frankfurt).
- Sentry: crash and error diagnostics, with personal data stripped — EU (Germany).
- Privy: authentication and wallet identity (email, linked accounts, wallet address) — US.
- Stripe: card payments for plans and top-ups (name, email, payment details) — US.
- OpenRouter — routing to Anthropic, OpenAI, Moonshot, Z.ai and other model providers: your prompts and relevant project context are sent per-turn for inference. None train on Modus traffic by default — US.
- Resend: transactional and (if you opt in) marketing email — US.
- Alchemy and public blockchains: on-chain deposit detection for credit purchases — US / public networks.
- Vercel / Netlify / GitHub / Figma / Cloudflare / Railway — and Supabase for your own project: only when you connect your account to deploy or import; data goes to the account you authorize.
A current register of processors is kept in our records of processing — contact us for the up-to-date list.
Your controls
- Export: download a machine-readable copy of your personal data from Settings → General → Your data, download project source as a zip, or push to GitHub.
- Delete account: Settings → General → Danger zone → Delete account. Deletion starts a 7-day grace period during which you can cancel; after it ends, your data is permanently erased from our live systems. Residual copies in encrypted backups are expunged on our backup-retention cycle.
- Email preferences: marketing email is off unless you opt in (Settings → Notifications). Turn it off any time there or via the unsubscribe link in any marketing message. Transactional email — receipts, security, verification — is always sent.
- Disconnect integrations: Integrations → click any connected service to revoke.
Cookies
We use only strictly-necessary cookies: a sign-in session (set by our auth provider, Privy). Your theme choice lives in your browser's local storage, not a cookie. We don't use advertising or analytics cookies, so no consent banner is required. See Cookie Settings for the full list.
Contact
Questions about privacy go to [email protected]. For deletion or data-export requests, include the email on your account.