Privacy policy
How Agentboard handles account, workspace, payment, and website usage information.
Last updated: September 26, 2026
Operator and scope
Kenya Hayashi operates Agentboard (agent-sitter.dev; billed as Agent Sitter). This policy describes how we handle information for the website, desktop application, and associated APIs. Requests for the operator’s address and other business details can be made through the contact below.
Information we handle
We handle registration information such as your name and email; authentication records such as password hashes, session tokens, IP addresses, and browser information; organization memberships and invitations; project and task content, comments, labels, repository and pull request references, and agent execution status and usage metadata; billing customer and subscription identifiers, plan, seat count and payment status; and information you send to support. The information collected depends on the features you use.
Purposes
We use information to authenticate users, provide and synchronize workspaces, execute authorized integrations, manage subscriptions and billing, respond to support requests, prevent abuse, investigate errors, improve usability and reliability, and meet legal obligations. We do not use this policy as permission to publish your private workspace content.
Sharing and external services
Workspace information is shared with authorized members of your organization. We use Cloudflare for hosting and security (including Turnstile), Supabase for database and synchronization infrastructure, Stripe for payments, and Sentry for error and performance monitoring. If you connect GitHub or authorize an MCP client, relevant information is exchanged within the authorized scope. Local coding agents and their providers process the inputs you give them under their own policies. Stripe collects payment details directly; our application does not store full card numbers or card security codes. We may disclose information when required by law or necessary to protect rights and security in accordance with law. For Managed Payments transactions, Stripe/Link processes buyer information for sales, tax calculation, payments, fraud prevention, and transaction support. Stripe/Link’s own privacy policies also apply to their processing.
Website analytics and storage
The public website uses Google Analytics 4 to measure visits and navigation, and Microsoft Clarity to analyze interactions through session recordings and heatmaps. These services can process device/browser information, online identifiers and usage events, and may use cookies. We disable Google advertising personalization and signals in our integration. Our analytics integrations do not load when your browser sends Do Not Track. Authentication and language preferences also use browser storage. Browser settings can restrict cookies and storage, which may affect sign-in and preferences.
International processing and protection
External providers may process information outside your country, including in the United States, depending on their infrastructure and your integrations. We use access controls, authenticated connections and transport encryption, and limit access to what is needed to operate the service. No system is completely secure; avoid putting passwords, API keys, or unnecessary sensitive information in shared tasks or support messages. Contact us for details about providers and applicable safeguards.
Retention and requests
We retain information for as long as needed for service provision, security, dispute resolution and legal recordkeeping. Canceling a subscription does not itself delete your account or workspace. Contact support to request access, correction, deletion, or restriction of use, or to ask about retention. We verify your identity and respond in accordance with applicable law; some records may need to be retained or relate to an organization managed by someone else.
Policy updates
We publish updates on this page and provide additional notice or request consent when required by applicable law. Contact us before providing information if you have questions about its handling.