Data use

Privacy and data use

Naming work can be commercially sensitive. This notice explains what the product sends, stores, measures, and deletes so you can decide what belongs in a brief.

Last reviewed

Product data

What a strategy run processes

A naming project can contain your idea, audience, promise, traits, required and banned terms, domain policy, generated brands, checked domains, provider status, prices, feedback, and refinements. Do not put secrets, personal data, or confidential client information in a brief unless you are comfortable with the processing described here.

OpenAI processes the brief and structured naming evidence to generate and evaluate brand concepts. Fastly receives domain labels for current research. Cloudflare runs the application, Workflow, security controls, and D1 storage.

Accounts

Authentication uses the minimum required account data

If you sign in, the product stores the account and session information needed for Google or email magic-link authentication. Google participates only when you choose that sign-in method. Resend delivers requested magic-link emails, and Cloudflare Turnstile protects that flow.

Retention and control

Projects have explicit retention

Guest naming projects are deleted after seven days. Account-owned naming projects remain until you delete them. The active workspace shows guest expiry and provides an immediate project-delete action; deletion cascades through runs, concepts, domain variants, offers, evaluations, and feedback.

Measurement

Analytics excludes naming content

Optional PostHog events contain route, preset, count, revision, warning, and feedback-disposition fields. They do not contain briefs, brand names, domains, evidence, or prices. Session replay is disabled, as are autocapture, heatmaps, exception capture, performance capture, and browser persistence.