legal
Privacy
Cosmos stores a graph of what you (and your authorized agents) have said about you. This page describes exactly what we collect, what we do with it, and how to get it out or delete it.
What we collect
- Account. Your email address (or your Apple Sign-In private-relay address). A hashed magic-code if you use email login. An RS256-verified Apple subject id if you use Apple.
- Your graph. Nodes and edges you write, including content text, source tags, timestamps, weights, and confidence. Conversations you have with cosmos in chat. Briefings cosmos generates for you. Sessions, inputs, observations, character snapshots.
- Connector activity. When you connect a client through MCP (Claude, Cursor, Obsidian, Notion, WaxFeed, others), that client writes observations into your graph. Each write is tagged with which client did it.
- iMessage sync (opt-in, local). If you run local sync on your Mac, the tool reads your chat database and AddressBook on your machine, filters noise, and ships surviving conversational turns into your graph. The local read happens on your Mac; we never have access to your chat database ourselves.
- Operational logs. Server-side request logs (IP address, user-agent, endpoint, status code, duration), retained for 14 days for security and debugging. We do not log request or response bodies.
- Vectorize embeddings. We compute embeddings of your node labels so cosmos can find semantic matches. Embeddings live in Cloudflare Vectorize indices scoped to your user id.
What we do not collect
- Browser fingerprints, third-party trackers, or cross-site cookies.
- Advertising identifiers.
- Your contacts, your photos, or anything on your device that cosmos was not handed (except opt-in local iMessage sync).
- Bodies of the requests and responses going through us, beyond what your graph stores.
Where it lives
Cosmos runs on Cloudflare. Your graph is in Cloudflare D1. KV is used for cache. Vectorize is used for embeddings. Workers AI is used for reasoning. We do not export your graph to any other backend.
How access is limited
- You. Through the cosmos UI, chat, and any client whose MCP key you have minted.
- Polarity Lab. We do not provide a routine staff interface for browsing private graphs. Operational access is limited to security, incident response, debugging, account recovery, deletion, and legal compliance when needed.
- External reasoners. Text needed to answer a request may be sent to Cloudflare Workers AI when you use cosmos. We do not send your full graph to external model providers as a general training dataset.
We do not sell your data. We do not share your data with advertisers. We do not feed your data into general-purpose training corpora.
Research and product learning
Cosmos is research-stage software. We may study aggregated or de-identified patterns to understand what people use cosmos for and where the product is wrong. That is not a license to read identifiable private graphs or publish personal contents without explicit consent.
Export and deletion
- Export. Use an authorized MCP export, or hit
/api/polarity/exportwith your key, for the full graph as JSON. - Targeted deletion. Through cosmos chat or the API you can delete individual nodes or edges.
- Full deletion. Email [email protected] from the address on your account. We delete your graph, sessions, chat history, character snapshots, and MCP keys within 7 days. Backups age out within 30 days.
Children
Cosmos is not intended for users under 13. If you believe a child has signed up, email [email protected].
Security
Magic-code secrets and Apple Sign-In tokens are verified server-side. MCP keys are stored as SHA-256 hashes. Sessions are JWTs signed with HS256. All traffic uses HTTPS. Report a vulnerability privately to [email protected].
Jurisdiction
Polarity Lab operates from Rhode Island, USA. By using cosmos you consent to data being processed in the United States. If you are in the EU or UK and want to exercise GDPR / UK-GDPR rights, email us and we will action within 30 days.
Changes
Material changes are surfaced in-product before they take effect.
Contact
Anything privacy-related: [email protected].