OpenPlanr
  • Workflow
  • Protocol
  • Features
  • Agents
  • GitHub
  • npm i -g openplanr

Privacy

Privacy Policy

Effective and last updated September 16, 2026

This policy explains what information OpenPlanr collects, how we use it, and the choices you have. It covers the public website and the hosted company application; the open-source CLI runs in your own environment and is described separately below.

  1. Scope of this policy
  2. Information you provide
  3. Information collected automatically
  4. How we use information
  5. How we share information
  6. Retention and deletion
  7. International processing
  8. Security
  9. Your choices and rights
  10. Children
  11. Changes to this policy
  12. Contact

Scope of this policy

This policy applies to the OpenPlanr website at openplanr.dev, the hosted company application at app.openplanr.dev, and the related hosted services that support it (together, the "Hosted Services"). It also explains where the open-source tools fit.

Local and open-source use. The OpenPlanr CLI and local planning tools are MIT-licensed software that generally operate in your own environment. When you use them without the Hosted Services, the plans, specifications, and code they work with generally stay where you run them, and we do not operate a service that receives them.

Third-party AI and runtime services. The local tools can be configured to call AI models, coding agents, package registries, and other services that you select. Those providers process whatever you send them under their own terms and privacy practices, which we do not control. Review their policies before connecting them.

Information you provide

When you use the Hosted Services, you may provide:

  • Account and profile information such as your name, email address, and profile image, including details passed to us by the sign-in provider you choose (for example, Google).
  • Organization and workspace information such as organization names, workspace names, member lists, roles, and invitations.
  • Content you create or upload such as plans, specifications, artifacts, design bundles, review threads, comments, and anything you attach to them.
  • Support requests including the messages and any files you send to us when you ask for help or report a problem.

Information collected automatically

When you visit the website or use the Hosted Services, we and our service providers may collect:

  • Device and browser information such as browser type, operating system, screen size, and language settings.
  • Logs and security events such as IP address, request timestamps and paths, sign-in attempts, access to shared artifacts, and errors, which help us keep the service reliable and secure.
  • Cookies and session data needed to keep you signed in, remember your organization, and protect against cross-site request forgery. The Hosted Services do not work without these essential cookies.
  • Analytics, where enabled, in the form of aggregated page-view and performance measurements that help us understand how the website and product are used.

How we use information

We use the information described above to:

  • authenticate you and maintain your account and sessions;
  • deliver collaboration features, including organizations, workspaces, artifact sharing, review, and comments;
  • detect, prevent, and respond to abuse, fraud, security incidents, and violations of our terms;
  • respond to support requests and communicate about the service;
  • monitor and improve reliability, performance, and availability;
  • understand how the product is used so we can improve it and plan new features; and
  • comply with legal obligations.

How we share information

We share your information only in the following ways:

  • With people you collaborate with. Members of your organization and people you share artifacts with can see the content you share, along with your name and profile details attached to it.
  • With service providers that host infrastructure, provide authentication, store data, deliver email, or provide analytics on our behalf. They may process information only as needed to provide those services to us.
  • For legal and safety reasons, where we believe in good faith that disclosure is required by law, legal process, or a government request, or is reasonably necessary to protect the rights, property, or safety of OpenPlanr, our users, or others.
  • In a business transfer. If OpenPlanr is involved in a merger, acquisition, reorganization, or sale of assets, your information may be transferred as part of that transaction subject to this policy.

Retention and deletion

We keep information for as long as your account or organization is active and as needed to provide the Hosted Services. How long specific data is kept depends on what it is used for: for example, shared artifacts remain available while the share is active, and logs are kept for as long as they are needed for security and troubleshooting.

We may retain some information after account deletion where we need it to comply with legal obligations, resolve disputes, enforce our agreements, or maintain security, and in backups until those are rotated. You can ask us to delete your account or specific content by contacting support@openplanr.dev.

International processing

The Hosted Services are operated with infrastructure and service providers that may be located in countries other than the one you live in. By using the Hosted Services, you understand that your information may be transferred to, stored, and processed in those locations. Where the law requires safeguards for such transfers, we rely on the mechanisms available under applicable law.

Security

We use reasonable technical and organizational measures designed to protect information from unauthorized access, loss, or misuse. No method of transmission or storage is completely secure, so we cannot guarantee absolute security. If you believe you have found a vulnerability or a security incident, please report it to security@openplanr.dev.

Your choices and rights

  • Account information. You can review and update most profile details through your account and sign-in provider.
  • Sharing. You control which organizations you belong to and which artifacts you share, and you can revoke shares you created.
  • Cookies. You can control cookies through your browser settings, but the Hosted Services will not function without essential session cookies.
  • Access, correction, export, and deletion. You can ask us to access, correct, export, or delete your personal information by emailing support@openplanr.dev. Depending on where you live, you may have additional rights under applicable law; we will respond to requests as that law requires.

Children

The Hosted Services are not directed to children under 13, and we do not knowingly collect personal information from them. If you believe a child under 13 has provided us with personal information, contact support@openplanr.dev and we will take appropriate steps to remove it.

Changes to this policy

We may update this policy from time to time. When we do, we will change the date at the top of this page and, for material changes, provide additional notice such as an email or an in-product message. Continuing to use the Hosted Services after a change takes effect means you accept the updated policy.

Contact

Questions about this policy or your information: support@openplanr.dev. Security reports: security@openplanr.dev.

OpenPlanr · GitHub · npm · openplanr.dev · MIT License · Privacy · Terms