This policy covers the relayard website, Mac app and hosted relay operated by TXYOU, LLC ("we", "us"). Contact us at support@txyou.com with privacy questions. Services you connect separately, including your AI client, also have their own privacy policies.
1. Information processed and why
| Information | When and purpose |
|---|---|
| Account and connection information | Sign-in information such as your email where required, account and endpoint identifiers, device connection state, OAuth grants and security credentials are processed to authenticate you, connect your Mac and enforce access permissions. |
| Project and operation content | Selected project identifiers and paths, tool names and arguments, requested source excerpts, file changes, operation status and build logs are processed to perform your requested development tasks and return their results. These can contain personal or confidential information present in your project. |
| Previews and screenshots | Images requested by an authorized operation are transferred to your client. The image delivery path can use hosted object storage; a local file path does not mean the image stays only on your Mac. |
| Service and security records | Network requests can include IP addresses, request times, client or browser details, error information and access records. These support service delivery, troubleshooting, abuse prevention and security. |
| Purchases and subscription status | Apple processes payments; relayard does not receive payment-card details. Apple-signed purchase information includes product, transaction and original transaction identifiers, purchase and expiry dates, revocation status and store environment. An app account token links purchases to your relayard account. Cloudflare D1 stores subscription records; verified Apple notifications update access after renewals, expiry or refunds. |
| Support correspondence | If you email us, we process your email address, message and any attachments you choose to send to answer the request and resolve the issue. |
Project files and native builds remain on your Mac. The relay processes the content requested by enabled operations; do not treat a project binding as a guarantee that secrets or personal data inside that project cannot be transmitted.
TestFlight beta signup
When you request an invitation, we store your email address, page language, signup page, submission time, consent wording version and invitation status in a private Cloudflare D1 database through this website. The address is not verified at signup. We use it only to manage this beta, send TestFlight invitations and essential testing messages, and handle your request; it does not subscribe you to marketing emails.
Submitting the form does not send an invitation or automatically transfer the address to Apple. When we issue a TestFlight invitation, the address is provided to Apple for that purpose. Registration records are retained while arranging and running the beta, or until you withdraw and the request has been handled, subject to any applicable legal obligations. Email support@txyou.com with the subject “relayard beta — withdraw” to withdraw, correct or request deletion of your signup. We may verify that you control the address. This website signup is separate from a relayard app account; deleting an app account does not automatically delete a signup.
To reduce automated submissions, the signup endpoint may process a temporary daily digest of the request IP and an attempt count. These are stored separately from the email list and expire for rate-limit purposes after 24 hours; expired entries are removed on subsequent signup requests. The signup handler does not store raw IP addresses or user agents with your registration or log email addresses and form contents. Hosting providers may still maintain their own network and security logs.
2. Website controls, cookies and analytics
The website's setup checklist runs in your browser. Its answers are not submitted to a relayard server or saved by the website. Copy buttons place text on your clipboard only when you choose to copy. This website does not add advertising pixels, an analytics collector or tracking cookies. Hosting providers may process network and security information needed to deliver the site. These statements describe the website and do not mean the Mac app or hosted relay processes no data.
3. Who receives information
- Your authorized AI client: receives requested content and tool results. Its account settings, retention and model-improvement policies apply to the data it receives. Review those settings before connecting.
- Infrastructure providers: Cloudflare supports the hosted relay and image storage; this website uses ChatGPT Sites. Hosting, storage and email providers process the information needed to provide those services.
- Support and legal obligations: information may be used to handle your support request, investigate misuse, protect service security or respond to a legally required disclosure.
Relevant provider information: Cloudflare privacy policy and OpenAI privacy policy. Other connected clients are governed by their respective policies. Providers may process information outside your country; this service does not promise a particular data-residency region.
4. Retention and deletion
- Cloud task data: native text results remain accessible for up to five minutes after verified receipt. Authorized images and source bundles have up to 24 hours of logical access in private Cloudflare R2; authorization expiry or revocation can end access earlier. General operation receipts and retry identifiers expire after 24 hours. Minimal account-level project and work-tracking records remain until account deletion to enforce project limits and preserve unresolved-work safeguards. They do not contain source bodies, images or native result text. A receipt expiring does not make unknown work complete.
- Image links and physical storage: signed image links last at most 15 minutes and require the original account, device, endpoint and authorization to remain valid. Anyone holding a valid link may read that image. Logical expiry blocks access; scheduled cleanup removes physical bytes asynchronously. It does not erase client copies or set a retention period for provider backups.
- On your Mac: completed results and images are pruned after seven days or above 300 retained entries, when the app launches or writes history. Active operations are preserved. Source-change stages expire after 24 hours but require explicit local pruning to remove bytes. Recovery journals and associated backups stay for local review; account deletion does not remove them. Credentials are stored in Keychain.
- Purchase records: successful account deletion removes account-linked subscription and project records. Keyed purchase and account-token markers remain until 180 days after the later of deletion or the last verified subscription expiry, to prevent reuse of retired purchases. They contain no email, raw account token or signed purchase payload. Notification identifiers and digests for duplicate prevention expire after 180 days; scheduled cleanup removes expired records.
- Other records: operational authentication and diagnostic logs follow the configured Cloudflare logging policy and applicable provider policies; no fixed log-retention period or storage region is promised. They are designed to exclude credentials, email codes, source bodies and image payloads. Support correspondence is retained as needed to resolve the request and meet applicable obligations.
Pausing, revoking authorization or uninstalling does not delete server records or third-party copies. The hosted service privacy notice describes the same task and purchase-data lifecycle. Deleting your relayard account does not cancel Apple subscription renewal.
5. Your choices and privacy requests
- Choose the project and permissions you authorize. Begin with read-only access when possible.
- Pause the relay to stop new dispatches or revoke the client's authorization to stop further access through that grant. This does not roll back completed work or prove that a running operation was cancelled.
- Delete your account in the Mac app under Settings > Remove access > Delete account, or from the signed-in hosted account page, after authenticating again. Deletion blocks new remote access and revokes devices before account records are removed. An interrupted deletion can be retried from the same signed-in browser or Mac app. Local project and recovery files, and copies received by a client, are not deleted. Manage Apple renewal separately.
- Email support@txyou.com to request access, correction or deletion, or to ask about withdrawing consent. Include the account email, request type and enough non-secret information to identify the relevant connection. We may need to verify ownership.
- Manage conversations and retained content separately in your AI provider's account. relayard cannot erase third-party copies on your behalf.
Depending on your location, you may also have rights to portability, restriction, objection or a complaint to your data-protection authority. We handle requests under applicable law. Do not email passwords, OAuth tokens, API keys or complete private projects.
6. Security and children
Project authorization, OAuth and permission controls help limit access. No service can guarantee absolute security. See Security & control for the boundaries of pausing, revocation and local execution. relayard is a developer tool and is not directed to children under 13. Contact us if you believe a child has provided personal information so that we can investigate and address it.
7. Policy updates and contact
We update this page when our practices change and identify the revision date above. Material changes will be communicated as required by applicable law. For privacy questions or a security concern, contact TXYOU, LLC at support@txyou.com. You can also use the support page to prepare a report.