Skip to main content

Trust

How your library is protected

A prompt library holds real work — client language, internal processes, half-finished ideas. Here is concretely how we protect it, without the badge wall.

The practices that matter

  • No passwords to leak

    Sign-in is Google OAuth only. We never see or store a password for your account.

  • Per-user isolation

    Every prompt, folder, tag, and source is scoped to your account with database row-level security — enforced by the database itself, not just the application.

  • Private file storage

    Uploaded sources and profile photos live in private storage and are served through short-lived signed URLs, never public paths.

  • Analytics without content

    Product analytics record counts and identifiers — never the text of your prompts, sources, or notes. We do not train anything on your content.

  • Hardened endpoints

    Authentication, saving, sharing, uploads, and billing endpoints are rate-limited, and billing webhooks are signature-verified and replay-protected.

  • Exit on your terms

    Export your full library from Settings anytime. Account deletion is scheduled with a short grace window, then permanent.

Sharing is opt-in, always

Everything you save is private by default. A prompt becomes visible to someone else only when you explicitly create a share link, and attached sources stay private even then. Revoking a share works immediately.

Found something?

If you believe you have found a security issue, email [email protected] with enough detail to reproduce it. We read every report. Please do not test against other people’s data — use your own account.

For what data we process and why, see the privacy policy.

Start your prompt library

Free includes 100 prompt saves a month. Sign in with Google — no card required.