Privacy
What we hold, and why.
This covers the hosted service at worclaude.com. If you run Worclaude on your own machines, none of this applies to us, because we never see any of it.
Last updated 2 September 2026
Who runs this
Worclaude is built and run by a small team, not yet a company. Where this page says we, that is who it means. Writing to the address at the bottom reaches that team directly.
What you give us
Your name, email address and profile picture when you sign in, whether by Google or with a password. Your chats and the answers in them. The settings for the sources you connect, with every secret locked away. What your questions cost, so you and your administrators can see the bill. And whatever you write to us through the contact form.
What we never hold
A readable copy of any password, token or key. Those are scrambled before they are stored and we cannot read them back. A database or a tracker is read live, at the moment you ask, and nothing from it is kept beyond the answer in your chat. A source you ask us to import is deliberately different: we hold a searchable copy of that content, because holding it is what makes it searchable, and it goes when you disconnect the source.
Google Drive, and what we do with it
If you connect Google Drive, you approve read-only access and we import the documents you point us at so they can be searched. We keep the text of those documents, and a token to fetch them again when they change, until you disconnect the source — at which point both are deleted. We never write to your Drive and we never touch a file you did not point us at. Our use of data received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements: that data is used only to answer your questions about your own documents, it is never sold, never used for advertising, and never used to train or improve any general-purpose model. No person reads it, except where you ask us for support, where the law requires it, or where we must investigate abuse or a security problem.
Why we hold it
To run the service, to show you what things cost, to keep a record your administrators can audit, and to answer you when you write to us. That is the whole list. We do not sell anything and we do not share your data with anyone who is not helping us run the service.
Who else sees it
The model provider you choose sees the questions you send them, under your own account with them, and their terms cover that. Our hosting, database, email, page counting and error reporting providers hold data on our behalf and nothing more. Nobody else.
What an administrator can see
Whoever runs your deployment can see how much you use it and what it costs: how many questions you asked, which sources you connected, when you last signed in. They cannot read your chats and they cannot read your credentials. Counts and costs, not content.
When something breaks
If Worclaude fails, a report of the failure is sent to an error tracker so it can be fixed. It carries the technical detail: what broke, in which part of the code, on which page. It is scrubbed of passwords, keys and tokens on the way out, using the same pass that keeps them out of our logs, and it never carries your questions, your answers or the contents of a form you were filling in.
How we count visits
Page views on the public pages are counted with Cloudflare Web Analytics. It sets no cookies, stores nothing on your device, and cannot follow you to another site or build a profile of you. We see that a page was opened, roughly from where, and nothing that points back to a person. There are no advertising pixels and no third party cookies. The one cookie we set keeps you signed in for a week and does nothing else.
How long it stays
Your chats and sources stay until you delete them. Disconnecting a source removes our copy of its imported content at the same time. The audit log keeps ninety days by default. Ask us to close your account and we remove your data.
Your choices
You can see, correct, export or delete what we hold. Write to us and we will do it. You can also delete a chat or a source yourself at any moment, without asking anyone.
Questions about any of this reach a person, not a form. Message us