precuneus

Privacy Policy

Effective October 10, 2026

This policy explains how we handle personal data when you use Precuneus: the web app at precuneus.dev and its MCP server. We follow the Swiss Federal Act on Data Protection (FADP) and, where it applies to you, the EU General Data Protection Regulation (GDPR).

1. Who is responsible

Agimem Sàrl (CHE-115.787.131), a company registered in Switzerland, is responsible for your data. For anything about your data, email hello@precuneus.dev.

2. What we collect

  • Account: your name, email address and profile picture, and your account id at Google or GitHub, as they give them to us when you sign in.
  • Sessions: a random token in a cookie while you're signed in. We store only a hash of it, with when it expires.
  • Connected assistants: the name and callback addresses of each assistant that registers with us, the access you grant it, and when it last used it.
  • Generations: your prompts, the options you chose (such as a voice, length or aspect ratio), any images or audio given as input, the results, and each generation's status, price and time.
  • Credit: your balance and every purchase, charge, refund and adjustment, with the Stripe ids of your customer record and payments. We never see your card details.
  • Technical data: IP address, browser and the requests you make, in short-lived logs kept for security and to fix problems.

We don't use analytics, advertising or tracking tools.

3. Why we use it

  • To provide Precuneus (performance of our contract with you): sign you in, run your generations, store and show the results, and keep your balance.
  • To meet legal obligations: keep accounting records and answer lawful requests from authorities.
  • For our legitimate interests: keep the service secure, prevent abuse and fraud, enforce rate limits, fix errors and check model costs against charges.

We don't sell your data, use it for advertising, or use your prompts and results to train models. We email you only about your account and the service.

4. Who receives it

  • Cloudflare, Inc. hosts Precuneus: the app, the database, the stored results and the logs. It also runs the models for us, through Workers AI and AI Gateway, which records each model call.
  • Model makers receive the prompt and inputs of each generation made with their models, to make the result: Bria AI, ByteDance, ElevenLabs, Google, Inworld AI, Recraft. They don't receive your name or email address.
  • Google and GitHub sign you in and tell us your account id, name, email address and profile picture.
  • Stripe handles purchases as merchant of record. It collects your payment details, billing address and tax information directly, as a controller under its own privacy policy.
  • The assistants you connect, such as Claude by Anthropic, receive your results, links and history when they ask for them, and handle them under their own terms.
  • Authorities, when the law requires it, and a buyer of our business, if Precuneus is sold, after we tell you.

5. Transfers abroad

Cloudflare runs a global network, and several of the companies above are in the United States or other countries outside Switzerland and the EU. When a country lacks adequate data protection, we rely on the Swiss-U.S. and EU-U.S. Data Privacy Frameworks for certified companies, or on the standard contractual clauses approved by the Swiss Federal Data Protection and Information Commissioner and the European Commission.

6. Links to results

Every result has a link that opens without signing in, so your assistant can show it. Anyone who has the link can see the result. The links are long and random, and we don't list or publish them.

7. How long we keep it

  • Your account, generations and results: as long as your account is open.
  • When you delete your account, we delete it with its generations and results at once, or within 30 days if you ask us by email. Copies in backups are overwritten within 30 days.
  • Records of purchases and credit: 10 years, as Swiss accounting law requires (art. 958f of the Code of Obligations).
  • Sessions: 30 days, or until you sign out. An assistant's access: until you revoke it or it expires.
  • Request logs: a few days. Records of model calls: up to 30 days.

8. Cookies

We use only the cookies needed to sign you in, so we don't ask for consent. Stripe sets its own cookies on its payment pages.

CookiePurposeLasts
__Host-sessionKeeps you signed in.30 days, or until you sign out
sign_in_stateProtects sign-in against forgery.10 minutes

9. Your rights

You can ask us for a copy of your data, in a common machine-readable format if you like, and ask us to correct or delete it, restrict how we use it, or object to its use. Email hello@precuneus.dev, or delete your account yourself from your account page. We answer within 30 days and may ask you to confirm your identity.

You also have the right to complain to a data protection authority.

10. Security

All traffic is encrypted. We store sign-in tokens and secrets only as hashes, and limit who can reach your data. No system is perfectly secure, so please don't send us anything you couldn't afford to have exposed.

11. Children

Precuneus is not meant for anyone under 18, and we don't knowingly collect their data.

12. Changes to this policy

We'll post changes here and update the date above. We'll tell you about important changes by email or in the app before they take effect. See also our Terms of Service.