Privacy Policy
1. Scope
This Privacy Policy applies to SIDRA AGENT OS ("SIDRA", "we", "us", or "our"), the SIDRA website, licensing services, protected connector services, and related support. It does not replace the privacy terms of third-party services you choose to use with SIDRA, including ChatGPT/OpenAI or Paddle.
2. Information we process
Billing and subscription information
Payments are processed by Paddle as merchant of record. We may receive and store identifiers and status information needed to fulfill your purchase, such as Paddle customer, transaction and subscription references, subscription status, billing-period dates, and the SIDRA checkout-session reference. We do not receive or store your full payment-card number.
License and device information
To activate and protect your subscription, we process information such as license status, plan, expiry date, device identifier, device name, operating-system/platform information, activation timestamps, last-seen timestamps, and security digests used to verify setup and device credentials. One-time setup values and device credentials are designed so that server-side records store cryptographic digests rather than reusable plaintext secrets.
Technical and security information
Our infrastructure and service providers may process normal network and request metadata such as IP address, timestamps, request status, and security or diagnostic events needed to operate, protect, troubleshoot, and prevent abuse of the service.
3. Local workspace and ChatGPT data
SIDRA is built to operate on your own computer. Workspace files, terminal output, browser actions, and other local development data are accessed by the local runtime when you instruct SIDRA to work with them. When you use SIDRA through ChatGPT, the information required to fulfill your request may pass through SIDRA's protected connector and be processed by ChatGPT/OpenAI under the terms and privacy settings of your ChatGPT account.
SIDRA's billing and licensing database is not designed as storage for the contents of your source code, project files, or terminal output. Protected relay infrastructure may transiently transmit requested data as needed to complete your active session.
4. How we use information
- Provide and verify your paid subscription and device entitlement.
- Issue and protect one-time setup sessions and connector capabilities.
- Operate the protected relay between your local runtime and supported AI clients.
- Detect abuse, protect service integrity, troubleshoot failures, and maintain reliability.
- Provide customer support and respond to account, privacy, billing, or security requests.
- Meet legal, accounting, tax, fraud-prevention, and compliance obligations where applicable.
5. Service providers
We use service providers where necessary to operate SIDRA. These currently include Paddle for checkout, subscription billing and buyer support; Cloudflare for hosted infrastructure and protected network services; and OpenAI/ChatGPT when you choose to use SIDRA through ChatGPT. Each provider processes information under its own applicable terms and privacy notice.
6. Retention
We retain billing, subscription, license, device, security, and support records for as long as reasonably necessary to provide the service, maintain security, resolve disputes, prevent fraud, and satisfy legal or accounting requirements. Retention periods can vary by record type and legal obligation. When information is no longer required, we delete or de-identify it where reasonably practicable.
7. Security
We use safeguards intended to limit unauthorized access, including device-specific credentials, one-time setup sessions, hashed or digested server-side credentials where applicable, encrypted HTTPS connections, bounded local execution controls, and protected connector URLs. No system can guarantee absolute security, so users should also protect their computer, ChatGPT account, and private connector information.
8. Your choices and rights
Depending on your location, you may have rights to request access, correction, deletion, restriction, portability, or objection regarding personal information we control. You may also cancel your SIDRA subscription to stop future renewals. We may need to verify your identity before completing certain requests.
9. Children
SIDRA AGENT OS is a professional developer tool and is not directed to children. We do not knowingly market the service to children who are below the minimum age required to enter into contracts in their jurisdiction.
10. Changes
We may update this policy as the product, providers, or legal requirements change. The current version and effective date will be published on this page.
11. Contact
For privacy, account, support, or security questions, contact sidra.support.info@gmail.com.