Privacy Policy
Your data and how we handle it.
Last updated: June 16, 2026
Enhancivity (“Enhancivity,” “we,” “us”) is a memory and context layer for AI tools. This policy explains what we collect, why, and the choices you have. By using Enhancivity you agree to this policy.
Information we collect
- Account information: your name, email address, and a securely hashed password (we never store your password in plain text). If you sign in with Google, we receive your name, email, and profile image from Google.
- Project memory you create: the projects, subprojects, and memory items you save — including their titles and content. This is the core data the product exists to store.
- Provider API keys (optional, “bring your own key”): if you add an OpenAI or Anthropic API key, we store it encrypted at rest and use it only to run your own requests. We never display it back to you in full and never share it.
- Usage and technical data: basic request metadata needed to operate and secure the service (for example, timestamps and error logs).
How we use your information
- To provide the service: store your memory, and prepare destination-ready prompts that you review before using them in another AI tool.
- To authenticate you and keep your account secure.
- To send essential account email (email verification and password reset).
- To operate, debug, and improve the service.
We do not sell your personal information, and we do not use your project memory to train our own models.
Service providers we share data with
To run Enhancivity we rely on a small number of processors:
- AI model providers (OpenAI, Anthropic): when you prepare a prompt, the relevant request and selected context are sent to the model provider to generate the prepared prompt. When you use your own key, that processing happens under your account with that provider.
- Email delivery (Resend): used to send verification and password-reset emails.
- Hosting and infrastructure (e.g. AWS): used to host the application and database.
These providers process data on our behalf under their own terms; we share only what is needed for each function.
How we protect your data
- Passwords are hashed with bcrypt.
- Provider API keys are encrypted at rest (AES-256-GCM) and decrypted only momentarily to run your request.
- Sessions use signed tokens that expire and can be invalidated.
- Access to data is restricted to your account; your memory is scoped to you.
No system is perfectly secure, but we take reasonable measures to protect your information.
Data retention
We keep your data while your account is active. You can delete individual memory items and projects at any time. To delete your entire account and associated data, contact us at the address below; we will remove it within a reasonable period, except where we must retain limited records for legal or security reasons.
Your rights and choices
- Access, correct, or delete your memory and account data.
- Remove a saved provider key at any time from Settings.
- Request a copy or deletion of your data by contacting us.
Your browser stores a session token in local storage so you stay signed in; clearing it signs you out. We do not use third-party advertising or tracking cookies.
Children
Enhancivity is not directed to children under 16, and we do not knowingly collect their data.
Changes to this policy
Enhancivity is an early-stage product and this policy may change. We will update the “last updated” date above and, for material changes, provide reasonable notice.
Contact
Questions about this policy or your data? Email privacy@enhancivity.com.