Saturn
privacy

Privacy policy.

What we collect, what we don't, and how to ask us anything about either.

Last updated

What we collect

Saturn collects only what we need to run the service for you. Account information comes from Clerk, our authentication provider, and includes your email address, display name, and (if you choose) a profile image.

Project data is whatever you create inside Saturn — plans, briefs, ships, comments, settings. Audit events record actions you take inside your workspace (creating a project, dispatching a build, changing a setting) so we can power your activity timeline and help you recover from mistakes.

Billing information is handled by Stripe. We never see your card number. We store the Stripe customer id, the plan you're on, and basic invoice metadata (date, amount, status).

How we use it

We use your data to run Saturn — render your projects, dispatch agents you ask for, send transactional email (sign-in links, billing receipts, security notices), and keep the service stable. We do not sell your data, we do not rent it, and we do not use your project content to train models.

We may use aggregate, de-identified usage signals (e.g. "X% of Pro users dispatch a build run in their first session") to improve product decisions. Nothing in those aggregates can be tied back to you.

Third parties we rely on

Saturn is built on a small set of trusted infrastructure providers. Each one only sees the slice of data they need to do their job. The full list with regions and data shapes lives at /subprocessors.

  • Clerk — authentication and account management.
  • Supabase — primary database and file storage.
  • Stripe — billing, checkout, and customer portal.
  • Vercel — application hosting, edge delivery, and IP-level request logs.
  • Anthropic — AI model calls (Plan questions, Build runs, Take-the-Wheel agents).
  • Resend — transactional email delivery (recipient name, address, IP).

AI and prompts

When you use Saturn's AI features, we send the prompt and necessary context (e.g. the project plan you're editing) to Anthropic to generate a response. Anthropic's API does not retain prompt content for model training. Saturn stores the prompt and response inside your project so you can scroll history, iterate, and audit what was asked.

Data retention

Active projects are kept as long as your account is active. When you delete a project it enters a 30-day soft-delete window, during which you can restore it; after 30 days it is permanently removed from our database and from backups within the next backup cycle.

When you delete your account, all of your projects, audit events, and personal data are queued for permanent deletion. The same 30-day soft-delete window applies, after which the data is unrecoverable. Billing records that we are required by law to retain (e.g. invoices) are kept for the period required and then deleted.

Exporting your data

You can export a copy of your account data on demand from /settings/data. The export is a single JSON file containing your profile, workspaces, projects, plan questions and decisions, build steps, and audit events you authored. Encrypted secrets are intentionally omitted. If you need a format the self-serve export doesn't cover, email support@saturnos.app.

Your rights

Depending on where you live, you may have rights under GDPR (EU/UK), CCPA (California), or similar laws — including the right to access, correct, delete, or port your data, and to object to certain processing. To exercise any of these rights, email support@saturnos.app. We'll verify your identity and respond within 30 days.

Cookies

Saturn uses essential cookies only. These are required to keep you signed in (set by Clerk) and to remember preferences like your color theme. We do not use advertising cookies and we do not run third-party trackers.

Analytics

We use Vercel Analytics, a cookie-free pageview tracker. It collects anonymized page views and Web Vitals to help us improve performance. No personally identifiable information is captured.

Security

Data is encrypted in transit (TLS) and at rest in our database. Access to production systems is limited to a small set of engineers and is logged. We will notify affected users without undue delay if we discover a breach that affects their data.

Changes to this policy

We'll update this page when our practices change and bump the "last updated" date at the top. For material changes (new categories of data, new third parties handling personal data) we'll also send an email to active accounts.

Contact

Privacy questions, requests, and concerns: support@saturnos.app. We read everything sent to that address and aim to reply within two business days.

Companion documents: Terms of service · Subprocessors.