Privacy Policy
Last updated: 8 September 2026
How DocStash collects, uses, retains, and deletes your data. Looking for our terms? Terms of Service.
What we collect
Everything DocStash collects, and why.
| What | Why we collect it | What it is, exactly |
|---|---|---|
| Your documents | To store them and serve them back to you | File contents, names, version history, descriptions |
| Account | To identify you | Name, email, Google account ID |
| Sessions | So you can revoke devices | Browser user-agent, IP at login |
| Connected AI agents | So you can revoke integrations | Agent client name, authorizing device |
| Server logs | Security and debugging | Request IP addresses, kept briefly |
| Usage analytics | To improve the product | Pages visited, features used, performance signals |
When you connect an AI agent, it acts only as you, on your own account. We never receive the agent's conversation with you, only the tool inputs it sends us, such as the content of a document you asked it to create.
Your documents
You own the documents you create or upload. We store them only to run the service. We do not read, analyze, index, sell, or train AI models on them, and our staff do not access their contents except to debug an issue you report (with your consent), to investigate abuse, or where legally required.
How we use it
Only to run and improve DocStash and to keep it secure. We do not sell your personal information or run advertising trackers.
Communications
We may send you product updates, tips, and occasional marketing emails. You can opt out of marketing emails at any time using the unsubscribe link in any of them. We will still send essential account and security messages, which are needed to operate your account.
Aggregated data
We may create aggregated, de-identified, or anonymized data from how DocStash is used, and use or share it for our business purposes, including to analyze and improve the service. This data is never derived from the contents, names, or descriptions of your documents, and cannot reasonably be used to identify you.
Cookies
We set one essential session cookie that is httpOnly, Secure, and strictly necessary to keep you signed in. We don't use analytics, advertising, or third party tracking cookies.
Third parties
DocStash processes and stores data in the United States. It runs on these sub-processors.
- Supabase handles authentication and file storage (AWS us-east-1, USA). See supabase.com/privacy.
- Google Cloud Run hosts the API and MCP services (GCP us-east1, USA). See Google Cloud privacy notice.
- Vercel hosts our web surfaces (the marketing site, the product app, and the public viewer) in the US region on a global edge CDN. See vercel.com/legal/privacy-policy.
- Google OAuth verifies your identity when you sign in (Google global infrastructure). Google shares only your name, email, and a provider-issued identifier.
- PostHog powers anonymous, cookieless usage analytics on our marketing site only (US region). See posthog.com/privacy.
AI tool integrations
When you connect an AI assistant (Claude, ChatGPT, Cursor, etc.) via MCP and ask it to read or write a document, the document content passes through that assistant's servers under its own privacy policy. We do not control how those providers process, store, or train on that content. Review the relevant provider's terms before sharing sensitive documents.
Public documents
Documents are private to you (or your org) by default. If you explicitly make a document public, from the web app or via the manage_sharing MCP tool, its URL becomes reachable on the open internet by anyone with the link. Public documents are not indexed or advertised by us, but they are not authenticated either. You can revoke public access at any time.
Retention & deletion
We keep your account and documents for as long as you use DocStash. Deleting a document moves it to a trash bin you can restore from, and we don't auto-empty trash, so it stays recoverable until it is permanently deleted. An organization admin can permanently delete a trashed document from the app, which removes the file and its contents and can't be undone. To delete your entire account, email us at the address below and we'll remove your data within 30 days.
We may retain certain information for as long as necessary to provide the service and for legitimate business purposes, such as security and abuse prevention, audit and usage records, resolving disputes, enforcing our terms, and complying with legal obligations. Aggregated data is handled as described above.
Your rights
If you're in a jurisdiction with a data-protection law (GDPR, CCPA, and similar) you have the right to access, correct, export, or delete your personal data. Email us and we'll handle it.
For how we protect your data, see our Security page.