Atelier

Effective September 30, 2026

Privacy Policy

Atelier (“Atelier”, “we”, “us”) is a personal AI assistant available at atelier.ciprari.ai. This policy explains what data Atelier accesses, how it is used, where it is stored, who it is shared with, and how you can delete it.

In short: Atelier accesses your data only to do what you ask it to do. It never sells your data, never uses it for advertising, and never uses it to train AI models. Data from Google APIs is handled under Google’s Limited Use requirements (see Google user data).

1. Who can use Atelier

Atelier is a private application. Access is protected by an owner-set passcode; there is no public sign-up. It is not directed at children under 13, and we do not knowingly collect data from them.

2. Data we access and collect

Information you provide

Connected accounts (only if you connect them)

Technical data

3. Google user data (Gmail)

If you connect Gmail, Atelier requests these permissions:

ScopeWhat Atelier does with it
gmail.readonlySearches and reads your email when you ask (for example, “what’s unread from today?” or “summarize the thread with Alex”).
gmail.composeSaves draft emails you ask Atelier to write.
gmail.sendSends an email only after you review and approve it on an approval card in the app. Atelier never sends email on its own.

How Google user data is used

How Google user data is stored

Limited Use disclosure. Atelier’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

4. How we use data

We do not use your data for advertising, profiling for third parties, or selling.

5. Sharing and third-party processors

Atelier does not sell or rent personal data. To provide the service, data needed for a specific request is shared with these processors:

ProcessorPurpose
CloudflareHosting, network security, and storage of your profile, memory and connection tokens.
Anthropic (Claude), OpenAI, Google (Gemini, Veo) and NVIDIAAI models that generate responses, images and video. Only the content needed for the request is sent, via their business APIs, which do not use API data to train their models by default.
Gmail, Slack, GitHub, Stripe, Cloudflare, RailwayOnly when you connect them, to read or act on your own account at your request.

We may disclose information if required by law or to protect the rights, safety or security of users or the service.

6. Where data is stored and for how long

7. Security

Traffic is encrypted with HTTPS. API keys and account tokens are stored as encrypted server-side secrets and never sent to your browser. Access requires the owner’s passcode, with automatic lockout after repeated wrong attempts. Actions that send, post, pay or change something require your explicit approval.

8. Your choices and deletion

9. Changes

We may update this policy. The effective date at the top shows the latest version. Material changes to how Google user data is used will be reflected here before they take effect.

10. Contact

Questions or requests: cole@ciprari.ai