Privacy Policy

Last Updated: October 26, 2025

Welcome to Graphgpt. Your privacy is a core principle of our service. This policy explains what information we collect, how we use it, and, most importantly, what we *don't* do with your data.

Our Privacy-First Commitment

We do not store, share, or analyze your personal data, AI prompts, or uploaded files without your explicit and direct consent. Your work is yours alone.

Information We Collect (And Why)

We only collect the absolute minimum information necessary to make Graphgpt functional and secure for you.

1. Information You Provide With Consent

  • Account Information: When you voluntarily create an account, we collect your email address and a hashed password (meaning we never see your actual password). We *only* use this information to log you in, secure your account, and handle password resets at your request.
  • Saved Graph Data: When you explicitly click the "Share" button to generate a link, we store that graph's data (its data points, axis settings, and function expressions) in our secure Firebase Firestore database. This is only done with your direct consent (i.e., when you click "Share"). If you never save or share a graph, its data never leaves your browser and is never stored by us.

2. Information We Explicitly DO NOT Collect

We believe in "privacy by design," which means we've built our systems to *avoid* collecting sensitive data in the first place.

  • AI Prompts: Your AI prompts (from the "AI Assistant" text box) are sent directly to the Google Gemini API via a secure proxy. We do not log, view, or store these prompts on our servers.
  • Uploaded Files: Data from imported files (like CSVs) is processed entirely within your browser. The original file is never uploaded to, or stored on, our servers.
  • Local Graph Data: Any graph you build, AI-generate, or import is processed and held locally in your browser. We have no access to it unless you explicitly consent to saving it by clicking "Share".