Menu
← Back to SysDesAi

Privacy Policy

Last updated: February 27, 2026

1. Information We Collect

1.1 Account Information

When you create an account via Clerk, we receive your name, email address, and profile picture. Clerk handles credential storage and authentication — we do not store your passwords.

1.2 Profile Information

When you use our community features, you may provide additional profile information including a display name, bio, expertise areas, location, company, website URL, and social media links (LinkedIn, GitHub, Twitter). This information is publicly visible on your profile page.

1.3 User-Provided Content

We collect the system design prompts you submit, your responses to clarifying questions, chat messages within design sessions, discussion posts, and comments. Prompts and chat messages are sent to AI providers (Google Gemini) for processing.

1.4 Community Interactions

We collect data about your community interactions including follows, upvotes, comments, discussion participation, and activity feed events. This data is used to power features such as notifications, leaderboards, reputation scores, and personalized feeds.

1.5 Analytics & Usage Data

We use Mixpanel to collect usage analytics including:

  • Page views and navigation patterns
  • Feature usage events (e.g., session starts, mode selection)
  • Session recordings (screen interactions within the app)
  • Device type, browser, and general location (country/region)

Mixpanel data is stored in your browser's localStorage. Session replays mask password fields and elements marked with the "mp-mask" CSS class.

1.6 Automatically Collected Data

Our hosting provider (Vercel) automatically collects standard server logs including IP addresses, request timestamps, and HTTP headers.

2. How We Use Your Information

  • Providing the Service — Your prompts and messages are sent to AI providers to generate system design content
  • Authentication — Account data is used to manage access via Clerk
  • Analytics — Usage data helps us understand how the Service is used and improve it
  • Session Replays — Mixpanel session recordings help us identify UX issues
  • Community Features — Profile data, follow relationships, and interaction history power notifications, leaderboards, and activity feeds

3. Third-Party Data Sharing

Your data is shared with the following third-party services as necessary to operate the Service:

ProviderData SharedPurpose
ClerkEmail, name, profile photo, auth tokensAuthentication
Google AI (Gemini)Prompts, chat messages, session contextAI content generation
MixpanelUsage events, session recordings, device infoAnalytics
VercelServer logs, IP addressesHosting & infrastructure

Each provider processes data under their own privacy policies. We encourage you to review: Clerk, Google, Mixpanel, Vercel.

4. Data Retention

Design session data is generated in real-time and is not persistently stored on our servers unless you save or publish a design. Community data (profile information, discussions, comments, follows, upvotes) is stored for as long as your account exists. Account data is retained by Clerk for as long as your account exists. Analytics data is retained by Mixpanel according to their data retention policies.

5. Cookies & Local Storage

The Service uses:

  • Clerk session cookies — Required for authentication
  • Mixpanel localStorage — Stores analytics identifiers and tracking data

No third-party advertising cookies are used.

6. Your Rights

Depending on your jurisdiction, you may have the right to:

  • Access the personal data we hold about you
  • Request correction or deletion of your data
  • Object to or restrict processing of your data
  • Request data portability
  • Withdraw consent at any time

To delete your account, use the account management options provided by Clerk in the user menu. To opt out of Mixpanel tracking, clear your browser's localStorage for this site.

7. Data Security

All data in transit is encrypted via HTTPS. Authentication is handled by Clerk's security infrastructure. API keys for AI providers are stored server-side and never exposed to the client.

8. Children's Privacy

The Service is not intended for users under the age of 13. We do not knowingly collect personal information from children.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be reflected by the "Last updated" date at the top of this page.

10. Contact

For privacy-related inquiries, please contact us at contact@sysdesai.com.