This Policy describes what the dbtempo platform collects, how it is used, and how long it is kept. It supplements the Terms of Service.
We collect account information (name, email), usage data (credit consumption, thread metadata), and the analysis artifacts described in section 3 of the Terms — query statistics, example query text, schema and index metadata, execution plans, and database configuration. Where you use a managed direct or SSH connection, we also store the database and SSH credentials you supply, encrypted at rest; with the dbtempo agent those credentials never leave your environment. We do not collect raw table rows, and we retain only the repository file spans needed to locate the queries we analyze.
We use your data to provide the service, improve our models with anonymized aggregate data, and communicate service updates. We do not sell your data to third parties.
Raw collection artifacts expire on a fixed 30-day schedule and are deleted automatically: collection payloads, server-configuration snapshots, and the per-call records of AI inference. Thread history and the recommendations derived from it carry no expiry — they are kept for as long as your account exists, because a recommendation is only meaningful next to the history that produced it. Retention does not vary by plan. You may delete an individual thread at any time, and export or delete your entire account from settings; deleting the account deletes the threads, recommendations, and stored credentials with it.
We use a limited set of subprocessors for infrastructure, email, and LLM inference. A full list is available at /legal/subprocessors.