Data Processing

Where data may move during a project.

Open a card to see what is processed and where.

Polymai account

Email, package, app usage, and extension access

Account data stays in Polymai's configured account services.

Build workspace

Prompts, plans, code, screenshots, and checks

Build context follows the selected development tools.

Customer app runtime

App data, auth, storage, payments, and email

Runtime data stays with the customer's providers.

Support

Diagnostics and issue context

Support sees only what is needed to investigate.

AI Use

AI helps build software. It does not silently operate customer data.

Production AI features are always scoped separately.

Minimum useful context

Share only what the task requires.

Human review

Generated work is checked before release.

Provider controls

Your configuration determines provider terms.

Security

Controls designed around generated app risk.

Secret boundaries

Secrets stay outside browser code.

App-scoped data

Each app gets its own data boundaries.

Server-only functions

Sensitive actions run behind the app.

Preview checks

Checks catch broken or unsafe setup.