Privacy

Privacy Policy

A plain-language description of what Orionfold collects today, why it is collected, and where your responsibility begins when you connect outside providers.

Last Updated

August 29, 2026

Privacy requests: [email protected]

Analytics & Ads

The website uses Google Analytics to understand traffic. It also uses Google and Meta (Facebook) ad tools to measure whether our ads lead to book purchases.

Requests & Purchases

Newsletter and proposal forms use Supabase and Resend. Purchases are handled by Stripe; we never see your card number.

Local-First Software

Orionfold software is designed so your work stays on your own systems by default unless you choose to connect external providers or services.

The Flow app: what leaves your Mac

The sections below are about this website and the newsletter. The Flow app on your Mac is different: it never sends your documents or your working data to Orionfold, and it never has to check in with us to keep working. Flow is built so that nothing has to leave your Mac, which makes the list of times it reaches the network short enough to print. As of Flow 1.5.5, this is all of it. Each one is something you can see, and each has a switch or you control the outcome.

WhenWhereWhat is sentYour switch
Flow looks for a new version: at launch, then at most once every six hoursorionfold.comThe request for the update list, carrying Flow’s version and the updater’s name, as any web request doesFlow ▸ Check for Updates… runs it by hand
You press Flow Guide Updates…github.com (raw.githubusercontent.com, the Guide’s public home)A request for the Guide’s index, then only the documents you acceptOnly when you press it
You press Buy Flow Pro or Manage Plan… in Settings ▸ Billingorionfold.supabase.co (Orionfold’s billing service)The plan and seat count you chose, or your license file so the server can answer for itOnly when you press it
You add a model runtime on this Mac or a machine you nameThat Mac, or the address you typedYour prompt and the text you selected, when you approve a runSettings ▸ Models: each domain has its own switch
You add a cloud providerThat providerYour prompt and the text you selected, when you approve a run; the meter shows it firstSettings ▸ Models: each domain has its own switch
You refresh a provider’s price list, or first set up OpenRouteropenrouter.aiA request for public prices; nothing about youOnly when you ask
You import a modelhuggingface.coThe download request for the model you choseOnly when you press it
A document embeds an image by web addressThat addressThe request for the image, when the document is shownWrite the image into the folder instead, and nothing is fetched
You open a web address in a paneThat addressWhat any browser sends to load a pageOnly when you enter one

That is the whole list. As of Flow 1.5.5, Flow keeps no usage statistics, sends no crash reports, carries no analytics or advertising code, has no install identifier, and never checks a license online to keep working. If a future Flow offers to share counts or crash reports with Orionfold, it will be a switch that starts off, and this table will list it beside the others.

Need to tell us about a problem? Help ▸ Copy Diagnostics… puts a short block on the clipboard: the Flow and macOS versions, the kind of Mac, which domains are on, and the last crash’s summary if there is one, with no paths, titles or names in it. You see the exact text before it is copied, and it goes nowhere until you paste it.

1. Scope

This Privacy Policy explains how Orionfold LLC collects, uses, discloses, and retains personal information in connection with the Orionfold website, newsletter, downloadable software, models, and related communications.

This Policy applies to information Orionfold LLC controls directly. If you connect Orionfold software to third-party providers, those providers process data under their own terms and privacy policies.

2. Information We Collect

The information collected depends on how you interact with Orionfold.

  • Website usage information. The site uses Google Analytics (GA4) and similar request metadata to measure traffic, understand which pages are used, and improve the site.
  • Ad measurement information. When we run ads, the site uses Google Ads conversion tracking and the Meta (Facebook) Pixel to learn whether an ad click led to a purchase. These tools set cookies (Meta uses _fbp and _fbc) and read ad click ids from the page address. When you buy a book, we also report that purchase to Google and Meta from our server, using a hashed (scrambled, one-way) version of your email so the ad platforms can match it. We never send them your plain email address.
  • Purchase information. If you buy a book, payment is handled by Stripe. Orionfold LLC receives your email address, the item you bought, and the amount paid, and uses them to deliver your files and keep purchase records. We never receive or store your card number.
  • Newsletter information. If you subscribe, Orionfold LLC collects your email address and operational metadata used for confirmation, abuse prevention, and delivery, such as confirmation status, timestamps, IP address, and user-agent data.
  • Proposal request information. If you build and submit a product proposal, Orionfold LLC collects your full name, business email, company, selected products, requested license or seat quantities, server-calculated estimate, timestamps, and abuse-prevention metadata. If you add an optional purchase note or PO reference, Orionfold LLC also stores that text. Draft details stay in your browser until you submit.
  • Communications. If you email Orionfold LLC or open an issue, Orionfold LLC will receive the information you include in that message.
  • Local software data. Orionfold software is intended to run locally by default, so workflow data, prompts, documents, and project state are generally stored on your own systems unless you intentionally connect external services.
  • Connected provider data. If you configure model providers, APIs, or other integrations, your data may be sent directly to those providers based on your configuration.

3. How We Use Information

Orionfold LLC uses information to operate the website and newsletter, deliver downloads and updates, respond to requests, secure the services, and improve product quality and documentation.

  • Provide and maintain the site, downloads, models, and newsletter.
  • Confirm newsletter subscriptions and send release, product, and operational updates.
  • Deliver purchased books and keep records of purchases.
  • Review non-binding product proposal requests, respond about product fit, quantities, availability, and fulfillment terms, and preserve the exact estimate that was submitted.
  • Measure whether our ads on Google and Meta lead to purchases, so we can decide where advertising is worth running.
  • Detect abuse, spam, fraud, misuse, and security incidents.
  • Understand aggregate usage patterns and improve the website and documentation.
  • Comply with legal obligations and enforce the Terms of Use.

4. Legal Bases

Where applicable, Orionfold LLC relies on consent for newsletter signup, legitimate interests for security, service operation, and basic analytics, and legal obligations where processing is necessary to comply with law.

5. How Information Is Shared

Orionfold LLC does not sell personal information. Information may be shared only as needed to operate the service or comply with law.

  • Service providers such as Google Analytics, Supabase, Resend, and hosting or infrastructure vendors that help run the website and newsletter.
  • Supabase stores submitted proposal requests and Resend sends the details to Orionfold so Orionfold can respond. Proposal details are not sent to advertising platforms or included in public URLs.
  • Payment processing by Stripe, which collects your payment details under its own privacy policy when you buy a book.
  • Ad platforms, namely Google and Meta (Facebook), which receive purchase conversion events that include the order value and a hashed version of your email, never the plain address. Meta explains how it uses this data at facebook.com/privacy/policy.
  • Code, model, and file distribution providers such as GitHub and Hugging Face when you download releases, models, or interact with project repositories.
  • Authorities, courts, regulators, or advisors when required by law or reasonably necessary to protect rights, safety, or security.
  • A successor entity in connection with a merger, acquisition, financing, or asset transfer.

6. Data Retention

Orionfold LLC retains personal information only for as long as reasonably necessary for the purposes described in this Policy, including delivery, abuse prevention, security, legal compliance, and recordkeeping.

Newsletter subscription records are generally kept until you unsubscribe or ask for deletion, subject to backup retention and legitimate security or legal needs.

Proposal requests are kept as business records for review, abuse prevention, follow-up, and any later agreement. You may request deletion where applicable, subject to legal and recordkeeping needs.

7. Your Choices and Rights

You can unsubscribe from newsletter emails at any time by using the unsubscribe link in the email or by contacting [email protected].

Depending on where you live, you may have rights to request access, correction, deletion, portability, restriction, or objection. Orionfold LLC will review and respond in accordance with applicable law.

8. Cookies and Similar Technologies

The website uses Google Analytics, which sets cookies or similar identifiers to measure traffic and understand how the site is used. Essential cookies may also be used to remember basic preferences or keep the site secure.

The website also uses advertising cookies when we run ads. Google Ads conversion tracking uses Google cookies and the gclid click id. The Meta (Facebook) Pixel sets the _fbp cookie (identifies your browser) and the _fbc cookie (records that you arrived from a Meta ad), and we pass these to Meta with purchase events so ad results can be measured. You can learn how Meta handles this data at facebook.com/privacy/policy.

You can control or delete cookies through your browser settings, though some site functionality may be affected. Blocking these cookies does not affect your ability to buy or read books.

9. International Transfers

Service providers used by Orionfold LLC may process information in countries other than your own. By using Orionfold, you understand that data may be transferred to and processed in jurisdictions that may have different data-protection laws than your location.

10. Security

Orionfold LLC uses reasonable administrative, technical, and organizational measures to protect information, but no method of transmission or storage is completely secure. You are also responsible for protecting your own devices, local data, credentials, and connected provider keys.

11. Children’s Privacy

Orionfold is not directed to children under 13, and Orionfold LLC does not knowingly collect personal information from children under 13. If you believe a child has provided personal information, contact [email protected] so it can be reviewed and removed where appropriate.

12. Changes to This Policy

Orionfold LLC may update this Privacy Policy from time to time. The updated version will be posted on this page with a revised “Last updated” date.

13. Contact

Questions or privacy requests can be sent to [email protected].