Privacy Policy

Last Updated: June 14, 2026

Draftify ("we", "us", "our", or the "Platform"), accessible via https://draftify.site, our web dashboard, and our official IDE extensions, is fully committed to protecting your privacy. This Privacy Policy outlines how we collect, process, share, and protect your information when you use our AI-assisted development tools, web platform, extensions, and developer APIs.

We adhere strictly to data protection regulations, including the European Union's General Data Protection Regulation (GDPR).

1. The Core Principle: Zero Code Retention

Unlike consumer-facing AI applications, Draftify is a developer-centric infrastructure designed around the absolute privacy of intellectual property.

  • In-Memory Processing: When your IDE extension or custom API script transmits code context, repositories, or prompts to Draftify, this information is processed entirely in-memory to generate the required AI output.
  • No Cache, No Storage: Once the processing loop finishes and the generated code is delivered to your client, the underlying input fragments and source snippets are permanently flushed and destroyed.
  • No AI Training: Under no circumstances do we store, log, or look at your proprietary code or prompts to train future model checkpoints, fine-tune neural weights, or optimize shared systems. Your code logic remains completely isolated.

2. Information We Collect

While we do not retain your code or prompts, we must collect minimal, standard data categories to operate our platform, handle billing, and secure our infrastructure.

2.1. Account Information

When you register an account, we collect:

  • Your email address.
  • Account authentication credentials (via secure, encrypted OAuth or password hashing systems).
  • Your chosen subscription level or API tier preferences.

2.2. Payment, Membership, and Whop Metadata

All subscription processing and digital product deliveries are managed via Whop, Inc. Draftify never stores or directly processes your full credit card number, CVV code, or personal banking credentials.

  • Whop handles the underlying transaction and provides Draftify with minimal, encrypted user parameters necessary to validate your technical license or token allotment.
  • This includes your Whop User ID, email, country of purchase, active subscription status, and associated API verification tokens.

2.3. System Logs and Usage Metrics

To enforce fair use, manage our token-based prepaid balances, and prevent automated infrastructure abuse, we collect:

  • Metered Metrics: Total count of input and output tokens consumed per API key/account.
  • Technical Logs: Temporary IP addresses, device/IDE user-agent details, and timestamp metrics. These logs are stored short-term for diagnostic, security, and security audit purposes.

3. How We Use Your Information

We utilize the gathered information exclusively for the following operational tasks:

  • To provision, maintain, and secure your Draftify developer account and active API keys.
  • To accurately calculate real-time metered billing and deplete prepaid credit balances based on token usage.
  • To offer technical customer support and respond to infrastructure inquiries.
  • To defend our network against Distributed Denial of Service (DDoS) attacks, automated loops, script errors, or unauthorized access.

4. Data Sharing and Third-Party Sub-processors

Draftify does not sell, trade, rent, or monetize your personal information to third-party advertisers or brokers. We share limited data strictly with infrastructure partners required to execute the Service:

ProviderPurposeData TransmittedPrivacy Shield / Location
Whop, Inc.Membership handling, licensing authentication, product checkout, and digital fulfillment.Whop ID, Email, country, active subscription or credit purchases.US / Global
Cloud Infrastructure ProvidersSecure hosting of dashboards, databases, and in-memory AI inference pipelines.User account records, system logs.EU/US Data Centers

5. Data Security

We implement rigorous technical and organizational measures to safeguard your information:

  • All network traffic between your local IDE, terminal scripts, or browser and the Draftify servers is strictly encrypted using Transport Layer Security (TLS 1.3).
  • Databases containing account profiles and encrypted API keys are isolated behind secure firewalls and undergo strict access-control audits.
  • Token processing nodes utilize ephemeral, stateless environments that destroy local workspace memory states instantly upon completing an API generation sequence.

6. Your Rights Under GDPR (For EEA/EU Users)

If you are a resident of the European Economic Area (EEA), you possess specific legal rights under the General Data Protection Regulation regarding your personal data:

  • Right of Access: You have the right to request a copy of the personal account information we hold about you.
  • Right to Rectification: You may correct or modify inaccurate or incomplete account registry info directly via your profile settings.
  • Right to Erasure ("Right to be Forgotten"): You may request that we permanently delete your user account, active API keys, and associated platform metrics.
  • Right to Data Portability: You have the right to export your basic profile settings and usage history in a structured, machine-readable format.

To exercise any of these rights, please contact our support team or file an official request through our technical inquiry workspace.

7. Retention Period

  • Account Data: We retain your account registry, billing logs, and token usage history for as long as your account remains active to fulfill your subscription or until you request deletion.
  • Infrastructural System Logs: System diagnostic logs, rate-limit logs, and temporary IP records are automatically overwritten or purged within thirty (30) days.
  • Code & Workspace Context: Zero retention. Purged in real-time immediately after execution.

8. Changes to This Privacy Policy

Draftify reserves the right to revise or adjust this Privacy Policy as our underlying infrastructure, tools, or global regulations evolve. We will notify you of modifications by publishing the updated version with a revised "Last Updated" date at the top of this document. Continued usage of our services after updates are published implies your consent to the changes.

9. Contact Us

For privacy-specific inquiries, compliance confirmations, or to initiate data erasure requests, please contact the Draftify team through our official community dashboard or file a ticket in our technical operations workspace.