Privacy Policy

Last updated: July 9, 2026

This Privacy Policy explains how Aethric LLC (“Aethric,” “we,” “us,” or “our”) collects, uses, shares, and protects information when you use Cosigno (the “Service,” at cosignolabs.com). By using the Service, you agree to this Policy. If you do not agree, do not use the Service. This Policy is part of, and should be read with, our Terms of Service.

1. Who we are

Aethric LLC, based in Florida, United States, is the controller of the personal information described in this Policy. You can reach us at hello@aethric.llc.

2. Information we collect

We collect the following, most of it because you provide it directly:

  • Account information. When you create an account we collect your email address and authentication details through our authentication provider. We store an account identifier for you.
  • Commands and content. The commands you give the operator, and any content you or your connected tools provide for a command, are processed to plan and (once you approve) carry out actions.
  • Actions and audit trail. Every proposal, approval, edit, veto, and execution — with its payload and timestamps — is recorded so you have a complete, reviewable history.
  • Connected-tool data. If you connect third-party tools, we access data from them only as needed to plan and perform the actions you approve, under the authorization you grant.
  • Billing information. If you subscribe to a paid plan, our payment processor collects and processes your payment details. We do not receive or store your full card number; we keep limited billing records (such as your plan, status, and customer identifier).
  • Usage and device data. We collect limited technical information — such as log data, approximate request metadata, and counters used to enforce rate limits — to operate, secure, and improve the Service.

3. How we use your information

We use the information above to:

  • provide, maintain, and improve the Service;
  • plan proposed actions and, only after your approval, execute them;
  • maintain your audit trail and usage meter;
  • process payments and manage subscriptions;
  • secure the Service — prevent abuse and fraud, enforce rate and capacity limits, and protect our costs;
  • respond to your requests and provide support;
  • comply with legal obligations.

4. AI processing

To turn your command into proposed actions, the Service sends your command and any content it needs to read to a third-party AI provider that generates the proposals. That provider processes this input to return proposals for your review and does not use it to train its models. Content read from external sources is treated as untrusted data: the operator will not follow instructions hidden inside it, and any action influenced by suspicious content is flagged and held for your review rather than executed.

5. How we share information

We do not sell your personal information. We share it only in these cases:

  • Service providers (subprocessors) who process data on our behalf to run the Service, including: authentication, database, and storage (Supabase), a third-party AI provider (for planning), payments (Stripe), hosting (Netlify), rate limiting (Upstash), and bot protection (Cloudflare Turnstile). Each processes data only as needed to provide its function.
  • Connected tools you authorize — we exchange data with them only as directed by your commands and approvals.
  • Legal and safety — when required by law, to enforce our Terms, or to protect the rights, property, or safety of Aethric, our users, or others.
  • Business transfers — in connection with a merger, acquisition, or sale of assets, subject to this Policy.

6. Cookies and similar technologies

We use essential cookies to keep you signed in and to operate the Service securely. These are necessary for the Service to function. We do not use advertising or cross-site tracking cookies.

7. Data retention

We retain your information for as long as your account is active or as needed to provide the Service. When you delete your account, we delete or de-identify your workspace data, except where we must retain certain records to comply with legal obligations, resolve disputes, or enforce our agreements (for example, billing records).

8. Security

We use technical and organizational measures designed to protect your information, including access controls, encryption in transit, and a server-side execution boundary so approved actions run only after your signature. No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security. Keep your credentials confidential and notify us of any unauthorized use.

9. Your rights and choices

Depending on where you live, you may have rights to access, correct, export, or delete your personal information, and to object to or restrict certain processing. You can review and export your audit trail in the app, and you can delete your account at any time from your account settings. To make a request or ask a question, contact hello@aethric.llc. We will respond as required by applicable law.

10. Children

The Service is not intended for anyone under 18, and we do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.

11. International users

We operate in the United States, and our providers may process your information in the United States and other countries. By using the Service, you understand your information may be transferred to and processed in countries whose data-protection laws may differ from those of your country.

12. Changes to this Policy

We may update this Policy from time to time. If we make material changes, we will update the “Last updated” date and, where appropriate, provide additional notice. Continued use after changes take effect means you accept the updated Policy.

13. Contact

Aethric LLC
Email: hello@aethric.llc
Florida, United States

This document is a template provided for general informational purposes and is not legal advice. Aethric LLC should have it reviewed by a qualified attorney — and confirmed against the data practices of its providers and any applicable privacy laws — before relying on it.