Privacy Policy
Applies to the Siphrix engine, the browser extension, the VS Code extension and the console at siphrix.com. Last updated 7 September 2026.
The short version
Siphrix exists to record what AI agents do on your behalf. It records metadata about actions — never the content those actions carry. Nothing is sent anywhere until you explicitly connect a machine to a console you chose. There is no telemetry, and we do not sell or share your data with anyone.
What is recorded
- The kind of action (read a file, run a command, upload a file, open an AI site, send a message).
- Its target: a file path, a command line, a web address, or the AI site involved.
- Which AI agent acted, and in which application (VS Code, a terminal, the browser).
- The machine it happened on, the time, the verdict, and the reason it was flagged.
- The name of the operating-system account Siphrix runs under on that
machine (for example
ana.pop), reported at each check-in, so your organisation can tell whose machine it is. It is not a record of who was at the keyboard at any moment. - The browser extension records that its what-is-recorded screen was shown, and when.
What is never recorded
- File contents. Siphrix records that a file was touched, never what is inside it.
- Message or conversation text. The browser extension notices that a paste looked secret-shaped; it does not store what you typed or what the AI replied.
- Browsing history. By default the extension runs only on the AI sites named in its manifest, plus any your organisation adds, and reports nothing about any other site. Your organisation can widen that to “everywhere except listed sites”. If it does, the browser itself asks you to grant the extra permission, which you can decline or later revoke; and on a page that is not an AI site the extension then notices only secret- or PII-shaped pastes — it does not record that the page was visited, its address, or anything else on it. A plain browse produces nothing. Which mode applies to you, and which sites are watched, is stated in the extension’s own popup.
- Credentials. Values shaped like tokens, API keys or passwords are masked (
token=***) before anything is written or synced.
Where it goes
By default, nowhere. The record is written to your own machine
(~/.siphrix) or, for the browser extension, to that browser's local
storage.
If you connect a machine to a console — one you run yourself, or your account at siphrix.com — the record syncs to that console and nowhere else. Connecting is always deliberate: you enter a one-time connection code. Sync is outbound only; nothing on your machine listens for incoming connections.
The connection token
When you link a machine to a console you enter a one-time connection code. The machine keeps the resulting token locally and sends it with each sync, so the console knows which of your computers is reporting. It authenticates the link and nothing else: it is not a password, it carries no personal detail, and revoking the connection in Surfaces kills it immediately.
One code connects a computer, not each piece of software on it. The browser extension asks the Siphrix already running on that machine which computer it is on, over a local bridge that never leaves the device — so on a machine you have already set up, the extension needs no code and stores no credential at all. An extension is the easiest thing on a computer to read, and a token that is not there cannot be taken. Only a browser on a machine with no Siphrix installed holds one of its own.
Your account
Accounts are provisioned by your organization's administrator, or created when you accept an invitation they send you — there is no self-serve signup. For each account we store your email address, a hash of your password (never the password), your organization and role, and the records your machines send. Passwords are hashed; session tokens expire. We do not use your data for advertising, we do not sell it, and we do not share it with third parties.
How long it is kept
A new account keeps its record for 90 days. An owner or admin can change that: any window from 30 days to ten years, or “forever” for a record held under a legal duty that outlasts any window. Older entries are pruned automatically, on the server, once an hour, and the change of window is itself written on the record. Pruning preserves tamper-evidence: an anchor is sealed before deletion so the remaining chain still verifies. A legal hold placed by an admin pauses all pruning until it is released.
The window is the employer’s decision, not ours, and theirs to justify.
Romanian employers should know that Law 190/2018, art. 5(e), caps personal data
from workplace monitoring at 30 days unless a longer period is expressly
justified or required by law. The console lists 30 days in Settings →
Keeping & deleting the record; the API accepts it too (POST /v1/retention
with {"days": 30}). Accounts opened before this default existed keep
the window they had, including “forever”, until someone changes it.
Deleting your data
Local records: delete ~/.siphrix, or the extension's storage by
removing the extension. Account data: remove a device in Surfaces to stop
its sync, or write to us to delete the account and everything in it.
Optional outbound integrations
Two features send data outside siphrix.com, and only when you set them up yourself: a weekly report to an email address you enter, and instant alerts to a webhook you provide (Slack, Teams, a SIEM). Alerts carry the rule name, action type and severity — never file contents or message text.
Children
Siphrix is a developer and business tool and is not directed at children under 13.
Changes
If this policy changes materially, the date above changes and the change is announced in the console.
Contact
Questions, or a data request: privacy@siphrix.com.
