Privacy Policy

How MemoryCrow collects, uses, protects, and gives you control over your data.

Last updated · June 2026

This Privacy Policy explains how MemoryCrow (“MemoryCrow”, “we”, “us”) collects, uses, and protects information when you use our website, dashboard, API, and MCP server (together, the “Service”). By using the Service, you agree to this policy.

Who we are

MemoryCrow provides a permission-safe memory layer for AI: you connect your tools and knowledge, and connected AI assistants can recall it with citations, scoped to what each person is allowed to see. For privacy questions, contact us at [email protected].

Information we collect

  • Account information. Your name, email address, workspace details, and authentication credentials when you register.
  • Content you provide. The knowledge you add to memory, whether typed, pasted, uploaded, or pulled in through a connector you authorize. This is your content, and you control it.
  • Usage information. Logs of how the Service is used (requests, timestamps, feature usage, and diagnostic events) so we can operate, secure, and improve the Service.
  • Billing information. Processed by our payment provider. We do not store full card numbers.
  • Cookies and similar technologies. Used for authentication, security, and basic analytics. See “Cookies” below.

How we use information

We use information to provide and operate the Service, build and maintain your memory, authenticate access, enforce permissions, prevent abuse, provide support, comply with legal obligations, and improve reliability and quality.

We do not train on your data

We do not use your content to train foundation models, and we do not sell your data. Content you add to memory is processed only to provide the Service to you and your workspace. Restricted knowledge stays restricted: our permission model is enforced at retrieval, before any AI sees it.

How information is shared

We share information only as needed to run the Service:

  • Subprocessors. Vetted infrastructure and model providers that help us host data and generate embeddings or extractions on our behalf, under contractual confidentiality and data-protection terms.
  • Within your workspace. Memory is shared with members of your workspace according to the scopes and permissions you configure. Access always follows the most-restrictive rule of the underlying source.
  • Legal and safety. When required by law, or to protect the rights, safety, and security of users, the public, or MemoryCrow.
  • Business transfers. If MemoryCrow is involved in a merger, acquisition, or asset sale, with notice to you.

We never widen access to your memory beyond what its sources permit.

Browser extension

Our browser extension (Chrome and Firefox) lets you save a page you are reading, or a text selection, into your MemoryCrow account. Its single purpose is explicit, one-click capture. We designed it to read as little as possible:

  • Only what you capture. The extension reads a page solely when you act on it: clicking “Save this page”, using the right-click “Save to MemoryCrow” menu, or opening the clipper to select content. It uses the activeTab permission, so it can only access the current tab at the moment you invoke it. There is no background reading, no auto-sync, and no tracking of the pages you visit.
  • What is sent. When you capture, the extension sends the page’s main readable content (or your selection), along with its title and URL and any context tags, visibility, or groups you choose, to the MemoryCrow API so it can be saved to your account. This becomes part of your memory and is governed by the rest of this policy, including the permission scopes you set.
  • Your API key. The extension stores the API key you paste into it locally on your device (in the browser’s extension storage) to keep you connected, and sends it as a bearer token to authenticate your requests. It is not shared with anyone else. You can revoke a key at any time from the dashboard to instantly disconnect a device.
  • What we do not collect. The extension does not collect your browsing history, keystrokes, mouse movements, form inputs, or any page you did not explicitly choose to save. It requests no broad host access and communicates only with the MemoryCrow API.

Data retention and deletion

You stay in control of your memory:

  • Forget is reversible. Forgotten items are hidden from recall and can be restored.
  • Erase is permanent. A hard erase removes the underlying content and is logged for compliance.
  • When you close your account, we delete or de-identify your content within a commercially reasonable period, except where retention is required by law.

Security

We protect data in transit and at rest, scope every query by tenant and permission, maintain audit logs of sensitive operations, and follow least-privilege practices. No system is perfectly secure, but security is the core of what we sell, and we treat it that way.

Your rights

Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. To exercise these rights, contact [email protected]. We will respond within the timeframes required by applicable law.

Cookies

We use strictly necessary cookies for authentication and security, and limited analytics to understand product usage. You can control non-essential cookies through your browser settings.

International transfers

We may process and store information in countries other than yours. Where we transfer personal data across borders, we use appropriate safeguards consistent with applicable data-protection law.

Children

The Service is not directed to children under 16, and we do not knowingly collect their personal data.

Changes to this policy

We may update this policy from time to time. We will post the updated version here and revise the “Last updated” date. Material changes will be communicated through the Service or by email.

Contact

Questions about privacy? Email [email protected].