Privacy Policy
Effective 2 October 2026.
This policy explains what Ownhand collects and what we do with it. Thalient Labs runs Ownhand.
What we store
- Account details. Your email address and name from sign-in, your credit balance, your auto-reload settings, and your Stripe customer ID.
- API keys. We store a hash of each key and its first few characters. We never store the full key.
- Your Hands. The writing samples you provide, the style card built from them, the rules learned from your feedback, and past versions of each Hand.
- Requests. The draft you send, the text we return, any alternate versions, and details such as the occasion and the model used.
- Feedback. Your verdict, your reason if you give one, and the exact text you sent if you share it.
- Usage and credit. One row per model call with token counts and the amount charged, and a ledger of every grant, reload, and charge. We use it for billing and to show you your activity.
- Email records. Which account emails we sent you and when.
- Connected apps. If you connect an MCP client through sign-in, we store the grant and its tokens.
What we do not store
Your agent can pass recent messages from a conversation or thread as context. We use them for that one request. We do not save them. Stripe handles card details. We never see your card number.
Why we use it
We use your data to run the service for you. That covers writing your drafts, updating your Hand from your feedback, charging your credit, and sending account emails. Learning from feedback changes only your own Hand. We never use one person's writing to shape another person's Hand.
No selling
We do not sell your data. We do not share it for advertising. We do not train our own models on your data.
The learning model and provider training
Learning runs on Muse Spark, through OpenRouter, on the provider's contributor tier. Under the contributor terms, the provider may use what we send it to improve its models. Here is what goes to it:
- When you send feedback: the original draft, the text we returned, the text you sent, your verdict, your reason, and the rules your Hand already has.
- When your style card is rebuilt: your recent writing samples, recent approved drafts, your current style card, your rules, and simple stats about your writing.
Drafts you only rewrite, without sending feedback, go to the writing model and not to Muse Spark. If you do not want your text used this way, do not send feedback, and do not add samples to a Hand.
Service providers
These companies process data for us. Each one gets only what it needs to do its job.
| Provider | What it does |
|---|---|
| Cloudflare | Hosting, our database, queues, and system logs. |
| Clerk | Sign-in. Holds your email address and login details. |
| Stripe | Payments, saved cards, and receipts. |
| Resend | Sends account emails. |
| Hemmingway (hemmingway.io) | The writing model. Gets your draft, your Hand, and any context for each request. |
| OpenRouter (Muse Spark, contributor tier) | The learning model. Gets your feedback with the draft and our output, and your samples when your style card is rebuilt. The provider may use these inputs to improve its models. |
How long we keep it
We keep your data while your account is open. When you delete a Hand, we remove it and its past versions right away. Requests and feedback made with it stay in your history until you delete your account. When you ask us to delete your account, we delete your data within 30 days. Backups and provider logs can hold copies for up to 30 days more. Stripe keeps payment records as tax law requires.
Your choices
You can delete a Hand or revoke a key at any time in the dashboard. Email us to get a copy of your data, to correct it, or to delete your account.
Security
All traffic uses HTTPS. API keys are stored only as hashes. Access to production data is limited to the people who run the service.
Children
Ownhand is not meant for anyone under 16.
Changes
We will post any change here with a new effective date. We will email you about material changes.
Contact
Privacy questions and deletion requests go to hi@thalientlabs.ai.