Privacy Policy

Last updated: March 8, 2026

This Privacy Policy explains how sideBar ("we", "us", "our") collects, uses, and discloses information when you use the sideBar web app, iOS app, and related services.

By using sideBar, you agree to the practices described in this policy. If you do not agree, please do not use the service.

1. Information We Collect

Account Information

  • Email address and authentication identifiers
  • Profile preferences and settings

Content You Provide

  • Prompts, chat history, tasks, notes, files, and saved website content
  • Workspace metadata (such as titles, tags, and organisation choices)
  • Memories: persistent reference documents created automatically by sideBar during conversations to improve future responses, as well as any memories you add or edit manually

Technical and Usage Data

  • Device, browser, and app version details
  • Operational logs, error diagnostics, and performance telemetry
  • IP address and approximate location derived from network requests
  • Precise device location, if you grant location permission, used to provide local weather and location context to the assistant

2. How We Use Information

  • Provide, maintain, and secure sideBar functionality
  • Process AI features and tool execution you request
  • Sync your account data across supported clients
  • Respond to support requests and service communications
  • Improve product reliability, safety, and performance
  • Comply with legal obligations and enforce our terms

3. AI Processing and Third-Party Services

sideBar uses a bring-your-own-key (BYOK) model for AI. You choose an AI provider (Anthropic, OpenAI, or Google) and supply your own API key in Settings. Your key is encrypted before being stored. When you use sideBar, your content is sent to the provider you have configured, not to all providers.

To provide sideBar, we also use infrastructure and service providers that may process data on our behalf, including hosting, authentication, storage, and analytics. This can include providers such as Supabase, Cloudflare R2, Vercel, and Sentry. We require vendors to handle data under contractual and security controls appropriate for their role.

Store Skills and Third-Party Integrations

Some Store skills connect to external services (such as Gmail or Spotify). When you install and use such a skill, relevant data may be sent to that third-party service to fulfil your request. Each skill's requirements are shown before installation.

Bug Reports and Feedback

When you report a bug or request a feature via sideBar's built-in feedback tool, we collect a summary of your report along with technical metadata (such as your conversation ID and device information) and file it as an issue in our development tracker. No full conversation content is included.

4. Legal Bases (EEA/UK Users)

Where applicable, we process personal data under one or more of these legal bases:

  • Contract: to provide the service you requested
  • Legitimate interests: to secure and improve sideBar
  • Consent: where you provide optional permissions
  • Legal obligation: where required by law

5. Data Retention

We retain data for as long as needed to provide the service, meet legal obligations, resolve disputes, and enforce agreements. Retention periods vary by data type and operational need.

When data is no longer required, we delete or de-identify it. Backup copies may persist for a limited period under standard disaster-recovery policies.

6. Data Sharing and Transfers

We do not sell your personal data. We may share data with service providers, affiliates, or legal authorities where necessary to operate sideBar, protect users, or comply with law.

Your data may be processed in countries outside your own. Where required, we use appropriate transfer safeguards.

7. Your Rights and Choices

Depending on your location, you may have rights to:

  • Access the personal data we hold about you
  • Request correction or deletion of your data
  • Object to or restrict certain processing
  • Request data portability where applicable
  • Withdraw consent where processing is based on consent

To exercise these rights, contact us at [email protected].

8. Account and Data Deletion

You can request deletion of your account and associated data by emailing [email protected] from your account email.

We may request verification before deleting data and may retain limited records where required for legal, security, or fraud-prevention reasons.

9. Children's Privacy

sideBar is intended for users who meet the minimum age requirement in their region. Based on our current App Store ratings, sideBar is intended for users age 16+ in most regions, and 15+ in Australia and the Republic of Korea.

We do not knowingly collect personal data from children below the applicable minimum age. If you believe a child has provided personal data, contact [email protected] and we will investigate and take appropriate action.

10. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will post the updated policy here and revise the "Last updated" date above.

11. Contact

For privacy questions or requests, contact: [email protected]

General inquiries: [email protected]

Administrative contact: [email protected]