Privacy Policy
Last updated: August 11, 2026
1. What we collect
- Account data: your name, email, organization membership, and, once you verify it, the phone number you text Orbit from. Identity is managed by our sign-in provider (Clerk).
- Conversations: messages you exchange with Orbit in the app and over your organization's iMessage number, plus memories Orbit saves to be useful later.
- Connected-app data: content Orbit reads or writes in apps you explicitly authorize (for example Gmail or Google Calendar), accessed through our integration broker with per-workspace isolation. Orbit only requests the scopes a feature needs.
- Meeting recordings and transcripts: when you invite Orbit's notetaker to a call, the meeting is recorded and transcribed so Orbit can produce notes and action items. The notetaker joins as a visible participant.
- Usage and audit records: events, timestamps, and token counts that power the Usage view and keep an activity ledger of what Orbit did.
- Analytics and diagnostics: we use product analytics and error monitoring to understand feature usage and fix crashes. Our marketing site also uses an advertising pixel to measure campaigns. These tools may set cookies.
2. How it's used
Solely to run Orbit for your workspace: answering you, executing the workflows you set up, and showing your team what Orbit did. Model inference runs on Anthropic's API. We don't sell your data, and we don't use your workspace content to train models.
3. Where it lives
Application data is stored in our backend database (Convex). Authentication and subscription billing run through Clerk and its payment processor; we never see full card numbers. iMessage delivery runs through our messaging provider, and meeting recording through our notetaker provider. Each vendor processes only what its role requires.
4. Isolation between workspaces and people
Every record is scoped to your organization. Personal app connections (like your Gmail) are additionally scoped to you as an individual member; teammates and other workspaces cannot reach them. Apps connected at the workspace level by an admin are shared: the whole team's requests act through that connection.
5. Your controls
- View and delete individual memories, or clear them all, from Assistant settings.
- Disconnect any app at any time. Orbit loses that access immediately and dependent automations stop.
- Quiet hours and notification preferences limit when Orbit may text you.
- Only record meetings where you have the consent the law of your region requires; you control which calls the notetaker joins.
- Leaving or deleting the workspace, or deleting your account, removes your data on the schedule below.
6. Retention and deletion
Workspace data is retained while your subscription is active. After deletion of a workspace or account, we remove application data within 30 days, except minimal billing records we are legally required to keep.
7. Security
Access is authenticated end to end, secrets are held server-side, and app permissions are requested at the narrowest scope that supports the feature. Every action Orbit takes is written to an audit ledger. If you believe you've found a vulnerability, email us and we'll respond quickly.
8. Changes and contact
If we change this policy in a material way, we'll announce it in the product before it takes effect. Questions or requests about your data: support@getcybersphere.com.