Skip to content
Legal

Privacy Policy

Last updated July 2026

This policy explains what data Yaib, Inc. (“Yaib”) collects, how we use it, and the choices you have. We build for privacy by construction — your project data is isolated per organization and never used to train shared models.

Data we collect

We collect only what we need to run the service:

  • Account data — name, email, and organization, provided at sign-up or by your SSO/OAuth provider.
  • Project data — the prompts, specs, and code your builds produce, isolated to your organization.
  • Usage data — logs, build metadata, and diagnostics used to operate and secure the service.
  • Trial data — an anonymous cookie (yaib_trial) that counts and time-boxes free builds. No account required.

How we use it

  • To provide, secure, and improve the platform.
  • To authenticate you and enforce per-organization isolation (row-level security).
  • To communicate about your account, security, and service changes.
  • We do not sell your data, and we do not train shared models on your project data.

Security

Data is encrypted in transit and at rest. Secrets are held in an encrypted vault and never written to code or version control. Access is role-based and audit-logged. See our Security page for details.

Your rights

Depending on your region (including under GDPR), you may access, correct, export, or delete your personal data, and object to certain processing. Signed-in users can self-serve an export or deletion any time from Settings → Privacy & data. For anything that flow doesn't cover, contact [email protected] and we will respond within the statutory window.

Cookies

We use strictly-necessary cookies for authentication and the anonymous trial. Analytics cookies, if enabled, are only set with your consent via the banner.

Analytics and advertising measurement are off by default. You can allow analytics and advertising separately, reject both, and change your choice at any time from the privacy control.

Depending on the deployment configuration, Yaib may use Google Analytics or Tag Manager, Plausible, PostHog, and the Meta, LinkedIn, TikTok, or Microsoft measurement pixels. No optional provider is loaded before the matching consent is granted.

After analytics consent, campaign parameters such as UTM values and click identifiers are retained for first- and last-touch attribution. The browser measurement layer removes email, phone, name, address, passwords, tokens, and secrets from event properties.

Contact

Questions about this policy? Reach us at [email protected].

This is a template for the Yaib platform. For a binding agreement tailored to your organization, contact our team.

Privacy Policy — Yaib