Account information: email address, authentication identifiers, and profile fields from our identity provider (Supabase Auth), including MFA enrollment status when you enable it.
Usage and billing: subscription tier, generation usage, workflow metadata, seat and workspace membership, and payment-related identifiers processed by Stripe (we do not store full payment card numbers on our servers).
Content you provide: text you submit to AI workflows, saved outputs, templates, and team-visible artifacts when you choose team visibility.
Demo and preview use: when you run an unauthenticated demo, we process the notes you paste and may store a pseudonymous visitor identifier (derived from network and browser signals, not your email) to enforce weekly demo limits.
Technical and security data: device and browser type, IP address, timestamps, and logs needed for security, rate limiting, debugging, and fraud prevention.
Product analytics: event names and properties you trigger in the app (for example billing page views or workflow completions) stored in our analytics tables.
Optional integrations: if you connect Jira Cloud via OAuth, we store access tokens and site metadata needed to perform actions you request until you disconnect.