---
title: Privacy notice
url: "https://modpack.egoeimi.org/privacy"
status: Draft for counsel review
version: v1 (draft)
effective: 2026-09-25
policy_document: privacy_notice v1
publisher: "Modpack, Inc."
---

# Privacy notice

> **Draft for counsel review.** A lawyer hasn’t reviewed this yet. Until one approves it, it applies only to test accounts. Notes marked “Counsel” are open questions, each with the default we chose for now.

Version v1 (draft) · Effective Sep 25, 2026

What we collect, why, where it’s kept, for how long, who helps us, and your rights. Everyone gets the same rights, whatever state you live in.

## The short version

- We collect what it takes to run packs for you: your account, what you send to runs, their results, and receipts.
- Your inputs, files and results stay in your account. Creators never see them.
- Packs improve from de-identified patterns in how runs go, never from your files, inputs or results. Nobody may re-identify you.
- We don’t sell your personal data or share it for ads, and we don’t train AI models on it.
- Everything is stored in the US, with a short list of US-hosted service providers.
- Export, deletion, “what we hold” and stopping learning are free and open to everyone.

Also read: [the Terms](https://modpack.egoeimi.org/terms), [Security](https://modpack.egoeimi.org/security), [Pricing](https://modpack.egoeimi.org/pricing).

## On this page

1. [What this covers](https://modpack.egoeimi.org/privacy#scope)
2. [What we collect](https://modpack.egoeimi.org/privacy#collect)
3. [Why we use it](https://modpack.egoeimi.org/privacy#use)
4. [Learning and de-identification](https://modpack.egoeimi.org/privacy#learning)
5. [No selling, no AI training](https://modpack.egoeimi.org/privacy#no-sale)
6. [Who we share it with](https://modpack.egoeimi.org/privacy#sharing)
7. [Where it’s stored](https://modpack.egoeimi.org/privacy#where)
8. [How long we keep it](https://modpack.egoeimi.org/privacy#retention)
9. [Your rights](https://modpack.egoeimi.org/privacy#rights)
10. [Children](https://modpack.egoeimi.org/privacy#children)
11. [Security](https://modpack.egoeimi.org/privacy#security)
12. [Cookies](https://modpack.egoeimi.org/privacy#cookies)
13. [If you’re a creator](https://modpack.egoeimi.org/privacy#creators)
14. [Changes to this notice](https://modpack.egoeimi.org/privacy#changes)
15. [Contact](https://modpack.egoeimi.org/privacy#contact)

## 01 · Who we are and what this covers

This notice explains how Modpack, Inc. (“Modpack”, “we”) handles personal data. It’s the Privacy Policy you agree to when you connect Modpack. It covers modpack.md, the Modpack connection in your AI agent, our emails, and every pack you run.

Modpack is a US-only beta for people 18 or older. We process and store data in the United States.

Your agent’s maker, such as Anthropic for Claude, handles your chats under its own privacy policy. Modpack receives only what your agent sends to a run, never your other chats or memory.

Pack creators don’t receive your personal data (section 06).

## 02 · What we collect

We sort data into classes. Where it’s stored, who can reach it and how long we keep it follow the class.

| Class | What it includes | Where it comes from |
| --- | --- | --- |
| Account | Name, email, sign-in method (passkey, Google, Apple or GitHub), your handle if you’re a creator, your US and 18+ confirmations, consent records, settings and limits. | You and your sign-in provider |
| Your private run data | What you ask packs to do, the inputs and files you give them, their results and files, run history, receipts, and private evidence about how your runs went. | You, your agent and the packs you run |
| Restricted | Tokens for accounts you connect to packs, detailed run logs, and payment details: card brand, last 4 digits, billing ZIP and state, and Stripe references. We never receive your full card number. | Your connections, our systems and Stripe |
| Agent connections | Which agent connected (for example Claude or Claude Code), its version, the device or address it connects from, approximate location from a shortened IP address, and times. | Your agent, when you connect it |
| Usage and device | Steps you reach (for example “connected” or “first result”), shortened IP address, browser type, errors, and the cookies in section 12. | Your browser and our servers |
| Creator and payout | Your public profile, packs and prices. For payouts, Stripe collects your identity, bank and tax details; we receive whether the checks passed and what we need to file tax forms. | You and Stripe |
| Messages | Support emails, reports, appeals, and copyright notices and counter-notices, with the contact details in them. | You |
| Public | Pack listings, public creator profiles, and questions asked on pack pages, shown without names. | Creators and visitors |
| Shared learning | De-identified, minimized evidence about how runs go. It isn’t linked to you (section 04). | Derived inside your account |

We don’t ask for sensitive personal data, and our Terms ask you not to put it into runs. We don’t collect precise location, and we don’t buy data about you.

## 03 · Why we use it

| Purpose | Data used |
| --- | --- |
| Run packs for you, and deliver results to you and your agent | Account, private run data, agent connections |
| Bill runs, handle top-ups, refunds and receipts, and pay creators | Account, run costs, payment and payout data |
| Keep Modpack secure, prevent fraud, abuse and extra accounts, and screen for sanctions | Account, agent connections, usage and device, payment data |
| Support you and handle reports, appeals and legal notices | Account, messages, and run data you point us to |
| Improve packs through de-identified learning (section 04) | Shared learning, derived inside your account |
| Understand how Modpack is used, to make it faster and simpler | Usage data, pseudonymized |
| Send service email: results, receipts, security, and changes to these documents | Account |
| Meet legal duties, such as tax and financial records | Account, payment and payout data |

We don’t use your data for advertising, and we don’t send marketing email unless you ask for it.

## 04 · Learning from runs, and de-identification

Packs improve automatically from how runs go. The [contribution license](https://modpack.egoeimi.org/terms#contribution) in the Terms covers the rights; this is what it means for your data.

**Where it happens.** Evidence is derived inside your account’s boundary. When an AI model helps classify it, that call runs for your account under our commercial agreements with US-hosted AI providers. It isn’t public learning.

**What can leave your account.** Only de-identified, minimized evidence: outcomes, error and failure types, timings, resource use, which checks passed, which fix worked, and general patterns. Never your files, inputs or results, data from your connected accounts, credentials, raw logs, or anything that identifies you or another person.

**How.** Fixed fields instead of free text, rounded values, synthetic test cases instead of your inputs, checks that no text from your inputs slips through, and a minimum of 5 accounts behind any metric. Dates in metrics are rounded to the week and never come with file names or which runs a fix came from. Anything unclear is held back and deleted after 7 days.

**Who it reaches.** The learning audience: the pack’s creator, who sees totals across 5 or more people (below that, “not enough data yet”), and the Modpack network, as improved pack versions everyone can use.

**Our commitment.** We keep de-identified information in de-identified form and don’t attempt to re-identify it. Everyone who receives it, including creators and other users, is bound by contract not to re-identify it either.

**Stopping.** Stop anytime in [Settings](https://modpack.egoeimi.org/account/withdraw). New evidence stops being eligible at once, and your packs pause, because learning is part of how managed packs work. Export, files, receipts and every right in section 09 keep working. What was already built into released versions stays there; it was never linked to you.

**Changes.** We ask for your fresh agreement before using your runs for learning in a materially different way. A change never applies to runs from before you agreed.

> **Counsel:** Confirm that the three de-identification conditions (technical measures, this public commitment, and the contractual ban in the Terms) meet CCPA §1798.140(m) and Connecticut’s definition, so contribution isn’t a “sale” (plan §12.7, Q-09).

## 05 · No selling, no ads, no AI training

**We don’t sell personal data.** We don’t sell your personal data, and we don’t “share” it for cross-context behavioral advertising, in the sense California law uses.

**No ad trackers.** There are no advertising or social media trackers on Modpack.

**No AI training on your data.** We don’t train foundation models or any other AI models on your data, and our AI providers’ commercial terms don’t let them train on it. Learning improves packs, meaning their code, instructions and checks, not AI models.

**Opt-out signals.** Because we don’t sell or share, there’s nothing to opt out of. We still honor Global Privacy Control signals as an opt-out request.

> **Counsel:** Confirm the current API terms of each AI provider (no training on API data, retention periods, zero-retention options) before first use (plan §7.7, §12.7).

## 06 · Who we share it with

**Service providers.** Companies that host, run and support Modpack for us, under contracts that limit their use of your data to that work. They’re listed below, and we add a provider here before we use it.

**Pack creators.** Never your personal data, inputs, results or files. Creators see totals across 5 or more people (runs, how often runs worked, failure types) and the text of questions asked on their pack page, without names. When you report a pack, the creator never learns who reported it.

**Your agent.** Results go to the agent you connected, because you asked for them.

**Legal requests.** When the law requires it, such as a valid subpoena or court order. We tell you first unless the law or an emergency prevents it. We report child sexual abuse material to NCMEC as the law requires.

**If Modpack changes hands.** If Modpack is merged or sold, your data goes to the new owner, bound by this notice. We tell you first.

| Provider | What for | Where |
| --- | --- | --- |
| Google Cloud | Hosting, databases and file storage | US · us-east4 (Virginia) |
| Vercel | Sandboxes where packs run, and the website | US · iad1 (Washington, D.C. area) |
| WorkOS | Sign-in | US |
| Stripe | Payments, sales tax, creator payouts and identity checks | US |
| OpenRouter | AI steps in some packs, learning, and our checks. It passes each request to the host of the model the pack names (for example DeepInfra or GMICloud for Xiaomi MiMo; OpenAI, Google, Perplexity or Anthropic for the answer-engine checks). | US; model hosts vary |
| Email provider | Account and service email | US |
| Grafana Cloud | Metrics, logs and traces, without your inputs or results | US |
| Sentry | Error reports | US |
| Langfuse | Traces of learning steps, de-identified material only | US |
| Treg | Data calls in some packs, such as search and public social data. It gets the request the pack makes and a pseudonymous account code. | Being confirmed; not used until it is |
| Nango | Stores tokens for accounts you connect to a pack | Being confirmed; not used until it is |

List updated Sep 25, 2026. We add a provider here before we use it.

> **Counsel:** Confirm the hosting region and data processing terms for Treg and Nango before first use (plan §9.9), and name the email provider (plan §7.6: Postmark or Resend).

## 07 · Where your data is stored

In the United States. Our databases and files are in Google Cloud’s us-east4 region (Virginia), and packs run in Vercel sandboxes in iad1 (Washington, D.C. area). During the beta we use only US-hosted providers, and we don’t transfer personal data outside the US. A provider whose region we’re still confirming isn’t used for your data until we have.

## 08 · How long we keep it

| Data | How long | When you delete your account |
| --- | --- | --- |
| Your results and files | While your account is open. 5 GB free; 30 days’ notice and an export link before removing anything. | Deleted within 7 days |
| Detailed run logs | 7 days, for fixing problems | Deleted |
| Held-back learning material | 7 days, unless you allow a longer look | Deleted |
| Learning records | Private ones: while your account is open. Shared ones: de-identified patterns, kept as licensed contributions. | Private ones deleted; shared ones unlinked from you |
| Tokens for connected accounts | Until you disconnect the account | Revoked and deleted |
| Consent records | While your account is open, then with financial records | Kept as proof, with personal details reduced |
| Receipts and payments | 7 years, as US law requires for financial records | Kept, with only your name, dates and amounts |
| Sanctions screening records | 10 years, as the law requires | Kept |
| Security logs | 2 years | Your name replaced with a code |
| Export downloads | 7 days per link | Deleted |
| Backups | Replaced on a rolling basis, within 14 days | Gone within 30 days |

> **Counsel:** Confirm the financial-records period (draft: 7 years), the sanctions-record period (draft: 10 years, plan Q-12) and consent-record retention, which the plan leaves open (§8.9).

## 09 · Your rights and choices

These rights are for everyone, whatever state you live in. Most take one click in your account.

**See what we hold.** “What we hold” in [Settings](https://modpack.egoeimi.org/account/settings) lists the data in your account, your consent records and where each is kept.

**Export.** Download everything as one signed bundle from [Export](https://modpack.egoeimi.org/account/export). It’s free and works with a $0 balance, with paused packs and with no agent connected. We email you when it’s ready.

**Delete.** Delete your account from [Settings](https://modpack.egoeimi.org/account/delete), confirmed with a passkey or by signing in again. You can cancel for 24 hours. Your data is deleted within 7 days and backups expire within 30 days. Receipts stay as the law requires.

**Stop learning from your runs.** From [Settings](https://modpack.egoeimi.org/account/withdraw). Your packs pause; export and your other rights keep working.

**Correct.** Change your name and email in Settings, or ask us to fix anything else.

**Disconnect.** Revoke an agent or a connected account anytime in [Connections](https://modpack.egoeimi.org/account/connections).

**Email choices.** Turn off optional email in Settings. Email about your runs, money and security stays on while your account is open.

**Asking us.** Email [privacy@modpack.md](mailto:privacy@modpack.md). We confirm it’s you by asking you to sign in, and answer within 30 days, or 45 at most if we tell you why we need longer.

**Someone acting for you.** An authorized agent can ask for you with your signed permission. We still confirm your identity with you.

**If we say no.** Reply to our answer to appeal. A different person reviews it and answers within 45 days. If you’re still unhappy, you can contact your state attorney general.

**No penalty.** We don’t charge you more or treat you worse for using these rights. Stopping learning pauses managed runs because learning is part of how they work; everything else, including export, keeps working.

> **Counsel:** Response and appeal times follow the common state-law pattern (45 days to answer; appeals answered within 45 to 60 days). Confirm them together with open question 1 in plan §12.7 (mandatory contribution and anti-waiver rules).

## 10 · Children

Modpack is for adults. You must be 18 or older, and everyone confirms it when they connect. Nothing on Modpack is aimed at children. If we learn an account belongs to someone under 18, we close it and delete its data. If you think a child has an account, email [privacy@modpack.md](mailto:privacy@modpack.md).

## 11 · How we protect it

- Every run gets a fresh sandbox of its own, deleted after the run. Pack code never runs on your computer.
- Sandboxes reach only the sites a pack declared, through our network proxy, and hold no secrets. Every connection is logged.
- Tokens for accounts you connect stay in our vault and are added only at the network edge. Packs never see them.
- Only signed pack versions run, and the signature is checked before each run.
- Data is encrypted in transit and at rest.
- Staff access is limited, needs strong sign-in and is logged.

No system is perfectly secure. If a breach affects your personal data, we tell you within 30 days and tell regulators as the law requires.

Report a security issue to [security@modpack.md](mailto:security@modpack.md); we reply within 1 business day. More on the [Security page](https://modpack.egoeimi.org/security).

## 12 · Cookies

We use only the cookies Modpack needs to work. There are no advertising or analytics cookies and no third-party trackers.

| Cookie | What it does | How long |
| --- | --- | --- |
| `__Host-mp_session` | Keeps you signed in | 30 days, or until you sign out |
| `__Host-mp_csrf` | Stops other sites from submitting forms as you | Same as your session |
| `__Host-mp_intent` | Remembers the pack you picked on a pack or share page while you sign in and connect | 2 hours |
| `mp_ix` | Ties your agent’s connection request to this browser while you connect | 1 hour |
| `mp_login` | Protects the sign-in step | 10 minutes |
| `mp_creator_onboard` | Keeps your place in first-time creator setup | Until setup ends |
| Stripe | On the top-up page only, Stripe sets its own cookies to prevent fraud | Set by Stripe |

Your browser can block cookies, but then you can’t sign in.

## 13 · If you publish packs

**Public by design.** Your handle, profile, packs, prices, versions and pack evidence are public.

**Payouts.** Stripe collects your legal name, address, date of birth, bank details and tax ID through Stripe Connect Express. We receive whether its checks passed, your payout status and what we need to file your 1099-MISC, and keep tax records as the law requires.

**What you see about people who run your packs.** Totals across 5 or more people, and question text without names. Never their identity, inputs, results or files.

**Counter-notices.** If you send a copyright counter-notice, we forward your name, address, phone number and statement to the person who sent the notice, as the law requires.

## 14 · Changes to this notice

We post every version here with its date. Before a material change applies, we tell you by email and in your account, and ask for your agreement. A change to how we use your runs for learning always needs your fresh agreement and never applies to runs from before you agreed.

## 15 · Contact

**Privacy questions and requests.** [privacy@modpack.md](mailto:privacy@modpack.md)

**Security issues.** [security@modpack.md](mailto:security@modpack.md)

**Legal.** [legal@modpack.md](mailto:legal@modpack.md)

**Postal address.** Modpack, Inc., \[postal address to be added\]

---

HTML page: https://modpack.egoeimi.org/privacy · Catalog: https://modpack.egoeimi.org/packs.md · About Modpack: https://modpack.egoeimi.org/llms.txt
