Privacy policy
Last updated: August 25, 2026. This policy describes the current Sevra product and is periodically reviewed and updated.
How Sevra works
Sevra is the managed home for brains, operated by VibeCraft Inc. We are the data controller for account and service data. We process hosted brain contents on the owner's behalf. A brain is a store of plain markdown files in the db.md format: an open format, published under the Apache-2.0 license, exportable and self-hostable. Sevra hosts your store, keeps it available, and keeps it indexed and organized.
You can operate your store with your own AI agent, such as Claude Code or Codex, under your own AI account. Paid features may also let you authorize Sevra to run declared work for you. Your own agent is never metered by Sevra.
What we collect
Account information. Name and email address, collected through WorkOS when you sign in.
Billing information. Processed by Stripe. Sevra stores your Stripe customer ID and subscription status. Card details are held by Stripe and never touch Sevra's servers.
Application form. Email address and optional message submitted when you request access.
Store contents. The markdown files you keep in your hosted store. Sevra stores them in object storage in order to host, index, and organize them. They are your data. You can export or delete them at any time.
Brain vault. Secret values you deliberately save for authorized functions or runs. Values are encrypted separately from brain contents. The browser receives names, consumers, and audit events, not secret values. Authenticated owners can read values back through the CLI.
Service and security data. Requests, account and API-key identifiers, audit events, error details, and usage needed to authenticate requests, enforce limits, operate the service, and investigate abuse or incidents.
Install telemetry. Anonymous events when a CLI is installed or checks for updates through our install routes: a timestamp, the route, and the request's User-Agent string. We do not store IP addresses or browser fingerprints in these events.
Product analytics. Sevra records visits, page and feature usage, product outcomes, browser and device category, referrer, and performance or error signals. After sign-in, the account identifier, name, email address, and verification status are attached so activity belongs to the right account.
Session recordings. Sevra records a privacy-masked replay of page layout and interactions. All text, images, input values, and every authenticated dashboard body are masked. URLs are normalized and query strings are removed before collection. Brain contents, prompts, chat answers, file paths, invite identities, secret names, API keys, device codes, and vault values are not recorded.
What we do not collect
Sevra does not collect or store:
- Conversations between you and your own AI agent, unless you choose to save their contents in your brain.
- Your card details. Payments are processed by Stripe.
- Passwords. Sign-in is handled by WorkOS.
We do not sell your data, and we do not use your data to train AI models.
Your store
Your hosted store lives in Cloudflare R2. Contents are encrypted at rest by the storage provider and encrypted in transit with TLS. Every committed mutation also creates an application-encrypted recovery envelope in a separate R2 bucket.
The format is open. Your store is plain markdown files, readable without Sevra. You can export the full store at any time, and you can self-host it. Sevra is the default home for your store, not the only home.
Access to store contents by Sevra personnel is limited to what is needed to operate the service and is governed by internal policy.
Recovery objects are protected by a 30-day storage lock. When you delete a brain or your account, Sevra removes the active copy, vault values, and the per-brain recovery key. Locked backup ciphertext becomes unreadable immediately and is physically pruned after the retention lock expires. You can request deletion at any time by writing to privacy@sevrahq.com.
Sign in with Sevra on published sites
When you sign in with Sevra on a published site, that site's owner learns your display name and a per-site identifier so they can recognize your submissions. They never receive your email address, and the identifier is different on every site, so owners cannot link you across sites. The consent screen states this at sign-in.
AI usage
You can bring your own agent, such as Claude Code or Codex, under your own account with your AI provider. Those requests go directly from your agent to that provider and are governed by your agreement with it.
When you authorize an available Sevra-run AI feature, Sevra sends the content required for that requested work to the named model provider. Declared vault values are resolved only for their authorized consumer. Sevra does not use your data to train AI models.
Third-party services
Sevra uses the following services to operate the platform.
- WorkOS for authentication
- Stripe for billing and payments
- Vercel for application hosting (www.sevrahq.com)
- Neon for the application database
- Cloudflare for object storage, published sites, and isolated functions
- Resend for transactional email
- PostHog for product analytics, error signals, and privacy-masked session recordings
- Anthropic only when you authorize an available Sevra-run AI feature
Data residency
Sevra uses United States-based service providers and infrastructure that may process data in the United States and on globally distributed delivery networks. Sevra does not currently offer a customer-selectable data-residency region.
Because the format is open, you can keep a full copy of your store anywhere you choose. Export is available at any time.
Your rights
You have the right to:
- Access the account data Sevra holds about you
- Correct inaccurate account information
- Delete your account and associated active data, subject to the recovery-ciphertext and legal-retention rules described here
- Export your full store at any time, in the open db.md format
To exercise any of these rights, email privacy@sevrahq.com.
Data retention
Account data (name, email) is retained while your account is active and deleted when you delete the account or make a verified deletion request, except where law requires retention.
Billing records are retained as required by law.
Brain contents and vault values are removed from active systems when you delete a brain or account. The recovery key is destroyed at the same time. Unreadable backup ciphertext remains only for the 30-day locked retention window and pruning period.
Session recordings are retained for no more than 30 days. Product events and the account-linked analytics profile are retained while useful for operating and improving Sevra, and are included in a verified access or deletion request.
International transfers
If you access Sevra outside the United States, your information may be transferred to and processed in the United States or other locations used by our service providers. We use the contractual and provider safeguards available for those transfers.
Children
Sevra is not directed to children under 13, and we do not knowingly collect personal information from them.
Contact
For privacy questions: privacy@sevrahq.com