Privacy Policy
Last updated: September 14, 2026
This Privacy Policy explains what information DistillAI ("we," "us," "our") collects when you use the DistillAI desktop application or visit the DistillAI website, and how we use, store, and protect it. Website analytics, crash reports you choose to send, and the small amount of information the desktop app sends on its own are separate activities, each described below.
1. DistillAI Desktop App Information
| Category | What it is | Where it's stored |
|---|---|---|
| Account info | Email address and authentication details when you create an account | Our backend (Supabase) |
| Billing info | Subscription plan and status | Our backend; card details are handled entirely by Stripe — we never see or store your full card number |
| App data | Your chat history, favorites, and workspaces within the app | Used to provide the service and keep your experience consistent across sessions |
| Usage metering | How much DistillAI-funded AI Analysis usage you've consumed in the applicable trial or billing period | Our backend, tied to your account, used to enforce plan limits |
| BYOK API keys | Your own third-party AI provider API keys, if you choose to add them | Encrypted locally on your device only (Windows DPAPI) — never sent to or stored on our servers |
| Crash reports | Technical diagnostic information you explicitly choose to send, plus a name and email address only if you choose to include them | Sent to DistillAI only when you submit a report, for troubleshooting and support |
| Capture signals | Sent automatically when a supported AI site changes its page structure and DistillAI cannot read an answer: the provider name and its web address, the app version, how many conversation turns were detected, and the character count of the page. It never includes your prompts, the provider's answers, or any part of your conversation | Our backend, linked to your account, used to detect and fix a broken provider quickly |
| Device identifier | A one-way salted hash of your Windows installation identifier, sent once when you create an account. The underlying Windows value never leaves your device and the hash cannot be reversed back to it | Our backend, used only to decide whether this computer has already had a free trial |
Two background signals are sent automatically, and both are listed above. Capture signals are transmitted when a provider's site changes, so that it can be repaired quickly; they contain structural information about a page, never its content. A device identifier is sent once at sign-up, because trials are granted once per computer rather than once per email address. Those two are the only information the app sends that is not either needed to operate your account — signing you in, syncing your data, metering your plan — or sent because you chose to send it. Crash reports in particular are never transmitted unless you submit one, and a name or email address with a crash report is optional.
2. DistillAI Website Contact Form and iPhone Waitlist
If you send us a message through the contact form on distillai.software, we receive your name, email address, message, and your company name if you choose to provide one. The form emails these to app-sales@distillai.software with your address set as the reply-to, so that we can answer you.
We use contact-form submissions only to respond to your enquiry and to keep a record of the correspondence. They are not added to a marketing list, are not sold or shared, and are not connected to your DistillAI account unless you tell us they are the same person.
If you join the DistillAI for iPhone waitlist at distillai.software/iphone, we receive your email address, your answer to "What would you use it for?" if you choose to give one, the date you joined, and any campaign tags in the link you arrived from (such as the website or post that referred you). This is stored in our backend (Supabase).
We use waitlist sign-ups only to tell you about DistillAI for iPhone — for example, when early testing opens and when it launches — and to understand what people want to use it for. Waitlist addresses are not sold or shared, and are not connected to a DistillAI account. To leave the waitlist, reply to any waitlist email or contact app-sales@distillai.software, and we'll remove you.
3. DistillAI Website Analytics and Advertising
The public DistillAI website uses Microsoft Clarity to help us understand how visitors use the site and improve its usability. Clarity can collect website interaction and technical data such as page views, clicks, scrolling, mouse movement, browser or device information, performance information, and session-replay data. Microsoft Clarity may use first-party and third-party cookies or similar technologies for website analytics.
The website also uses the Google tag for Google Ads, to measure how well our advertising works — for example, whether a visit that began with an ad leads to a trial download or an iPhone waitlist sign-up. Google may set advertising cookies or use similar technologies, and may receive information such as the pages you visit, the ad that brought you to the site, and browser or device information. It does not receive your waitlist email address or your contact-form message. For how Google uses this information, see How Google uses information from sites or apps that use its services; you can manage ad personalization in Google's Ad Settings.
This website analytics and advertising measurement is separate from the DistillAI desktop application. Visiting distillai.software does not cause the desktop app to begin sending background telemetry. For more information about Microsoft's handling of Clarity data, see the Microsoft Privacy Statement.
4. How We Use Information
- To provide and operate the DistillAI app, including syncing your chat history, favorites, and workspaces;
- To process subscription billing and enforce plan/usage limits;
- To communicate with you about your account (for example, a failed payment or a confirmation email);
- To respond to support requests and crash reports you choose to send us;
- To tell iPhone waitlist members about DistillAI for iPhone, if they joined the waitlist;
- To detect when a supported AI provider changes its site so that capture can be repaired;
- To determine whether a computer has already used a free trial;
- To understand and improve the usability of the public DistillAI website, and to measure how well our advertising works.
We don't sell your personal information, and we don't use your chat content to train any models.
5. Third-Party Services
We rely on the following third parties to operate DistillAI, each governed by their own privacy policy:
- Stripe — payment processing and subscription billing;
- Microsoft Clarity — analytics for the public DistillAI website;
- Google Ads (Google tag) — measuring the effectiveness of DistillAI's advertising on the public website;
- Supabase — backend infrastructure, including authentication and data storage;
- AI providers you connect to — whichever third-party AI services you use through DistillAI (through signed-in provider sessions, BYOK, or DistillAI-funded AI Analysis) will separately process whatever you send them, under their own privacy terms.
6. Data Retention
We generally retain your account and app data while your account remains active and as needed to provide the service. Retention can also be subject to the limits and inactivity provisions described in our Service & Data Policy. If you'd like your data deleted, contact us at app-sales@distillai.software — we don't yet have a self-service deletion option in the app, so this is currently handled manually on request.
7. Data Security
BYOK API keys are encrypted using Windows' built-in DPAPI and never leave your device. Data in transit between DistillAI and our backend is encrypted (HTTPS). DistillAI-side API credentials used to fund eligible AI Analysis usage are kept as server-side secrets and never exposed to individual users' devices.
No method of storage or transmission is 100% secure, and we can't guarantee absolute security.
8. Your Choices
You can cancel your subscription anytime through the in-app Stripe Customer Portal link. To request a copy of your data or ask us to delete your account, email app-sales@distillai.software.
9. Children's Privacy
DistillAI is not directed at children under 18, and we don't knowingly collect information from them.
10. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we'll update the "Last updated" date above and, where appropriate, notify you in-app.
11. Contact
Questions about this policy or your data? Reach us at app-sales@distillai.software.