Privacy Policy

Last updated: May 2026

1. What we collect

We collect the information needed to run hosted memory:

  • Account information — email, display name, and authentication data.
  • Memory data — keys, values, tags, scopes, and provenance.
  • Usage data — API calls, run status, timestamps, and response metadata.
  • Billing data — plan, invoices, payment-provider records, and credit ledger entries.
  • Access logs — IP address, user agent, and request metadata for security.

2. How we use it

  • Deliver, maintain, and improve mementos.md.
  • Store and search memory for your organization.
  • Process billing and enforce plan limits.
  • Detect abuse, fraud, and security incidents.
  • Send service, billing, and support notices.

3. Sharing

We do not sell your data. We share information only with infrastructure, payment, monitoring, and support providers that help us run the service, or when law requires it.

4. Retention

Memory records remain until you delete them or your retention policy removes them. Account and billing data remain as long as needed for service, tax, and legal obligations.

5. Cookies

The public site does not use advertising cookies. Server logs record normal HTTP metadata.

6. Security

We use TLS, scoped access controls, tenant isolation, and regular security reviews. Report vulnerabilities to security@mementos.md.

7. Your rights

You can request access, correction, export, or deletion by emailing privacy@mementos.md.

8. Contact

Questions about this policy? Email privacy@mementos.md.

bun install -g @hasna/mementos