privacy policy
last updated: march 6, 2026
what we collect
when you sign in with google, we receive your name, email, and profile picture from your google account. we store this to identify your account and display your name on public projects.
we store the project data you create — names, descriptions, stack, ai tools, urls, connected services, costs, and notes. this is the core of what buildrack does.
how we store it
your data is stored in supabase (managed postgresql). all data is encrypted at rest using AES-256 and encrypted in transit via TLS. each account is isolated using row-level security — no user can access another user's data at the database level.
private by default
all projects are private by default. only you can see your projects, costs, and notes. when you toggle a project to "public", only the project name, description, stack, ai tools, urls, and connected service names become visible. costs and notes are never shown publicly.
what we don't do
- we don't sell your data
- we don't run ads
- we don't share your data with third parties beyond infrastructure providers (supabase, vercel)
- we don't use your project data to train AI models
- we don't track you across the web — no analytics scripts, no cookies beyond auth
deleting your data
you can delete any project at any time. to delete your entire account and all associated data, contact us and we'll remove everything within 48 hours.
infrastructure
- hosting: vercel (united states)
- database: supabase (AWS, united states)
- auth: supabase auth (google oauth)
contact
questions about privacy? reach out at hello@buildrack.com