Perch AI · perchai.app
Privacy Policy
This policy describes how Perch AI handles information when you visit perchai.app, contact us, or use Perch AI Web, Desktop, or CLI.
1. Who we are
Perch AI operates the marketing website at perchai.app, Perch AI Web at chat.perchai.app, and the Perch Desktop and CLI applications (together, the “Services”).
2. Information we collect
Depending on how you interact with us, we may process:
- Website and marketing data: pages viewed, referral information, device and browser type, and similar technical logs from hosting and analytics (when enabled).
- Business inquiries: information you submit through forms on perchai.app, such as your name, email address, company, and message.
- Account information: email address, authentication identifiers, and profile metadata supplied through Supabase Auth, including through email/password or enabled third-party identity providers.
- Plan and membership data: workspace or organization membership, plan status, entitlement records, Starter Data Program settings and acknowledgements, and related administrative metadata.
- User Content: prompts, chats, model responses, artifacts, files, documents, workspace materials, browser or email content involved in an action, and configuration you create, upload, connect, or generate through the Services.
- Product activity and agent records: events generated while Perch works, which may include task descriptions, model inputs and outputs, tool selections, tool arguments and results, workflow steps, failures and retries, evaluation results, and approval, rejection, or correction signals.
- Technical data: IP address, timestamps, device and application information, performance measurements, error reports, and security logs generated by our infrastructure.
- Billing data: for paid plans, subscription status, plan, and billing metadata. Payments are processed by Stripe; your full payment-card details are collected and stored by Stripe, not Perch AI. We receive limited information such as card brand, the last four digits, and transaction status.
3. How we use information
We use information to:
- provide, personalize, maintain, and improve the Services;
- authenticate users, maintain secure sessions, and administer plans and entitlements;
- process model requests and carry out tools or workflows you request;
- meter usage, prevent abuse, debug failures, and protect the Services;
- respond to support requests, security incidents, and business inquiries;
- send service messages and occasional product updates, announcements, or offers, which you may opt out of using the unsubscribe link in a non-essential message; and
- for eligible Starter activity only, create and use Derived Training Data as described in the Starter Data Program below.
Perch does not sell personal information or raw User Content, and we do not use personal information for targeted advertising. For eligible Starter usage only, Perch may commercially license, sell, or provide Derived Training Data that has been processed as described below and is not reasonably linkable to a person, account, workspace, customer, or organization.
4. Starter Data Program
The free Starter plan includes a data program that helps support Perch-funded hosted usage. The program is enabled by default after the applicable versioned notice is shown. You may turn it off at any time in Settings → Privacy.
The program applies only to eligible activity generated while the applicable account or workspace is on Starter, Perch is funding the hosted model usage, and the program is enabled. It does not apply to Pro, Enterprise, active or complimentary Pro access, bring-your-own-key usage, or self-hosted model usage. Eligibility is determined by the plan and inference source in effect when an interaction is generated: upgrading or downgrading later does not reclassify earlier activity.
This program applies prospectively to eligible interactions generated on or after September 13, 2026, after the program notice has been presented and the applicable acknowledgement recorded. For existing Starter users, acknowledgement authorizes prospective participation only. Earlier activity is not included solely because this policy changed; Perch would require separate, explicit authorization before using historical activity in the program.
To create Derived Training Data, Perch may process eligible Starter User Content and product activity through filtering, redaction, abstraction, transformation, annotation, generalization, aggregation, suppression, and quality review. Derived Training Data may preserve useful task and action structure, including transformed or deidentified task descriptions, model inputs and outputs, tool selections, tool arguments and results, failures and retries, workflow steps, evaluation results, and approval, rejection, or correction signals.
Perch may use Derived Training Data to develop, train, fine-tune, evaluate, benchmark, test, and improve AI models, agents, systems, datasets, and related technologies. Perch may also commercialize, license, sell, or provide Derived Training Data to third parties for those purposes.
Derived Training Data does not include raw prompts, raw chats or model outputs, raw tool arguments or results, files, documents, workspace materials, email content, browser page content, account or profile information, payment information, personal information, credentials, passwords, authentication tokens, API keys, or secrets. Structural information about a browser or email tool action may be retained only after the underlying email or browser content is removed. We do not license or provide raw User Content or information that remains reasonably linkable to a person, account, workspace, customer, organization, or confidential source.
Before Derived Training Data is used or provided outside Perch, we apply technical and organizational controls designed to remove direct and indirect identifiers, detect secrets and sensitive content, abstract source-specific details, suppress rare identifying events, deduplicate repeated material, and assess whether a record is reasonably linkable to its source. We exclude records that cannot be adequately transformed or that present a material privacy, confidentiality, intellectual-property, or security risk.
Agreements with recipients prohibit attempts to reidentify a person or customer, reconstruct User Content, combine the data with other information for reidentification, contact or target an affected person or organization, or use the data for targeted advertising. Recipients must use appropriate security controls and use the data only for the permitted training, evaluation, benchmarking, testing, or development purposes.
Turning the program off stops future eligible collection and use for the program. Where feasible, we also remove eligible records that remain raw and have not been exported or incorporated into Derived Training Data. Because completed Derived Training Data is designed to no longer be reasonably linkable to its source, we may no longer be able to associate it with your account or remove it from a dataset already delivered to a recipient or from model weights already trained with it. Turning the program off does not limit processing necessary to provide, secure, support, debug, meter, or enforce the Services.
5. Pro, Enterprise, and private inference
Pro and Enterprise activity is excluded from the Starter Data Program, including activity generated during complimentary Pro access. Bring-your-own-key and self-hosted model usage is also excluded on every plan. Perch does not sell or license the User Content or customer-identifiable product activity from those excluded categories, or use it to train models or improve products for other customers.
We may still process excluded-category data as necessary to provide, secure, maintain, debug, support, meter, and enforce the Services, including through approved service providers and inference providers acting on our instructions. Enterprise terms or a data processing agreement may provide additional protections.
6. Cookies and local storage
We use cookies and similar technologies to remember preferences, keep you signed in, protect against abuse, and measure site usage when analytics are enabled. You can control cookies through your browser; disabling essential cookies may prevent sign-in or other core functionality.
7. How we share information
We may share information with:
- Infrastructure and service providers: for example Supabase (authentication and database), Vercel (hosting), PostHog (analytics when enabled), Stripe (payment processing), and email delivery services.
- AI inference providers: the material needed for a request, including your prompt and relevant workspace content for that turn, is sent to Amazon Web Services / Amazon Bedrock, Weights and Biases / W&B Inference, or Fireworks for processing. These providers process request content to deliver inference to Perch and are not permitted by Perch to train models on it or share it with underlying model vendors.
- Starter Data Program recipients: properly processed Derived Training Data may be provided for the purposes and under the restrictions in Section 4. These recipients do not receive raw User Content or personal information through the program.
- Professional advisors: lawyers, auditors, or insurers when reasonably necessary.
- Corporate transactions: a buyer, successor, or advisor in connection with a merger, financing, acquisition, reorganization, bankruptcy, or sale of all or part of our business, subject to this policy and applicable law.
- Authorities: when required by law or reasonably necessary to protect rights, safety, and security.
8. Data retention
We retain personal information and User Content for as long as needed to provide the Services, respond to inquiries, resolve disputes, and meet legal obligations. You may request deletion of your account, subject to identity verification and lawful retention requirements. Derived Training Data that can no longer reasonably be linked to an account is not personal information or User Content and may not be capable of account-level retrieval or deletion.
9. Security
We use measures including encrypted transport, encryption at rest through our infrastructure providers, access controls, and least-privilege administrative practices. No method of transmission or storage is completely secure; use a strong, unique password and protect your credentials.
10. Your choices and rights
Depending on your location, you may have rights to access, correct, delete, or restrict certain processing of your personal information. Contact us at privacy@perchai.app. We may need to verify your identity before fulfilling a request.
Starter users may turn off the Starter Data Program in Settings → Privacy as described in Section 4. You can opt out of marketing and non-essential product email using the unsubscribe link in a message or by emailing privacy@perchai.app. We will still send essential security, billing, and account notices.
11. International users
If you access the Services from outside the United States, information may be processed in the United States and other countries where our providers operate. We use transfer safeguards where required by applicable law.
12. Children
The Services are not directed to children under 16, and we do not knowingly collect personal information from children.
13. Changes
We may update this Privacy Policy from time to time. We will update the date above and provide any additional notice or acknowledgement required by applicable law or the commitments in this policy. Policy changes do not by themselves authorize historical activity for the Starter Data Program.
14. Subprocessors
We use a small number of providers to deliver Perch. Service providers process data to provide their contracted services to Perch and are subject to appropriate confidentiality and security terms.
- Amazon Web Services, Amazon Bedrock — model inference.
- Weights and Biases, W&B Inference — model inference.
- Fireworks — model inference.
- Supabase — authentication, workspace data, document index, memory, and conversation storage.
- Vercel — hosting and delivery of the website and product.
- Stripe — payment processing and subscription billing.
- PostHog — website and product analytics when enabled.
- Email delivery provider — transactional, account, and service email.
We will update this list as providers change and will reflect material changes here.
15. Contact
Questions: privacy@perchai.app. See also our Terms of Service and Starter plan guide.