Privacy

What we keep depends on which way you run Satchel.

Self-host
Nothing reaches us.
Carry
Your memory files live in your Google Drive, in a folder named Satchel. We store your account settings and an encrypted Google refresh token so the connector can reach that folder. We do not keep copies of your files.
Satchel (hosted)
Your memory files are stored on our servers (Cloudflare R2, or the host you see in /status), encrypted at rest by the provider. Shared satchels are always stored with us.

Google Drive

We ask for the drive.file scope only: we can see and change files this app created, and nothing else in your Drive.

What we don't do

We don't train models on your data. We don't sell it. We don't read it except to operate the service or when you ask us to help with your account. Request logs record the path of a file and which agent touched it, never the contents.

Your controls

Export everything as a zip at any time (satchel_export from any agent, or /export). Delete everything with satchel_delete_everything or DELETE /me; hosted files are removed immediately, Drive files stay in your Drive.

Contact: pat.edwards@pm.me