Project policy 01
Privacy, in plain English.
User Flow Library is an independently operated software project, not an incorporated company. This policy explains what the service handles and why.
Effective
August 6, 2026
01
Who operates this service
User Flow Library is operated by an individual in California. In this policy, “User Flow Library,” “we,” and “us” refer to that individual operator and the service at userflowlibrary.com.
Questions or requests about your data can be sent through the private contact options on the Support page.
02
Information the service handles
We handle information in four main categories:
- Account information: your name, email address, profile details, authentication identifiers, and organization membership supplied through Clerk.
- Project content: screenshots, recordings, routes, flow diagrams, generated markup, comments, project settings, and other material you upload or create.
- Connected-service data: repository data from GitHub, deployment data from Vercel, and files or frames from Figma when you choose to connect those services.
- Technical and usage data: IP address, browser and device details, pages and features used, session events, diagnostic logs, and cookies or local storage needed for authentication and product operation.
If paid plans are offered, the billing provider handles payment-card details. We may receive subscription, transaction, and billing-status information, but not your complete card number.
03
How the information is used
- Provide, maintain, secure, and troubleshoot the service.
- Create and organize the flows, screens, and artifacts you request.
- Authenticate accounts and enforce project access controls.
- Understand product usage and improve the service.
- Respond to support, privacy, and security requests.
- Meet legal obligations and prevent abuse.
04
Services that process data
The service relies on a small set of providers to operate. Depending on the feature you use, data may be processed by:
- Clerk for authentication and account management.
- Supabase for database and file storage.
- Vercel for hosting and first-party web analytics.
- Anthropic, OpenAI, or Google when an AI-powered feature analyzes or generates content at your request.
- GitHub, Vercel, or Figma when you connect an account or import content from that provider.
These providers process information under their own terms and privacy policies. We do not sell personal information or project content, and we do not share it for cross-context behavioral advertising.
05
Your content and public sharing
Projects are private unless you choose to create a public share link. Anyone with an active share link may be able to view the project content exposed by that link. Disable sharing before placing confidential material in a link you no longer want others to access.
Do not upload passwords, private keys, access tokens, regulated health information, or payment-card details. Repository and provider tokens are stored only where a connected feature requires them and should be revoked through the relevant provider when no longer needed.
06
Retention, access, and deletion
Account and project information is kept while your account is active and for as long as reasonably needed to provide the service, resolve disputes, prevent abuse, or meet legal obligations. Backup copies and security logs may remain for a limited period after primary data is deleted.
You may ask to access, correct, export, or delete your personal information through the Support page. We may need to verify that the request comes from the account owner. Available rights vary by location, and legal exceptions may apply.
08
Security and international processing
We use reasonable technical and organizational safeguards, including access controls and encryption provided by the service infrastructure. No online service can promise absolute security.
The service is operated from the United States. Providers may process data in the United States or other countries where they operate, which may have different data-protection rules from your location.
09
Children and policy changes
User Flow Library is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
If this policy changes materially, the effective date on this page will be updated. Material changes may also be announced in the product when practical.