Privacy Policy
This Privacy Policy explains how Breadcromb collects, uses, and protects information when you use Trace. We are committed to a local-first approach: your data stays on your device unless you explicitly choose otherwise.
1. Information We Collect
Local mode (default): Trace indexes the content of web pages, documents, and conversations you open in your browser. This index is stored exclusively on your local device and is never transmitted to our servers.
Cloud sync (optional, paid): If you enable cloud synchronisation, your indexed data is encrypted in transit and stored in a Supabase database. We store your email address for authentication and your indexed content for sync purposes.
Usage data: We may collect anonymised, aggregated usage statistics (such as feature usage counts) to improve the product. This data cannot be used to identify you.
2. Local-First Architecture
By default, all data indexed by Trace, including page content, search history, and AI query results, is stored only on your device. Breadcromb has no access to this data.
You can delete your local index at any time from the app settings.
3. Optional Cloud Sync
When you opt into cloud sync, your indexed data is synchronised across your devices via a Supabase-hosted database. You may bring your own Supabase project, in which case your data is stored under your own account and Breadcromb has no access to it.
If you use Breadcromb-managed cloud storage, your data is stored in our Supabase project with row-level security. Only your authenticated account can access your data. You can request deletion of your cloud data at any time by contacting hello@breadcromb.com.
4. Third-Party AI Providers
Trace supports AI integrations with Ollama (local), Azure AI Foundry, OpenAI, Anthropic, and Google Gemini. When you submit an AI query, relevant context from your local index may be sent to your chosen provider to generate a response.
Breadcromb does not control how these providers handle your data. We recommend reviewing their privacy policies: OpenAI (openai.com/privacy), Anthropic (anthropic.com/privacy), Google (policies.google.com).
When using Ollama, all AI processing happens locally on your device and no data is sent externally.
5. Data We Do Not Collect
We do not sell your personal data. We do not share your indexed content with advertisers or data brokers. We do not use your browsing history for targeted advertising.
6. Data Security
Data in transit to cloud services is encrypted using TLS. Data stored in Supabase is protected by row-level security, ensuring each user can only access their own data.
While we take reasonable measures to protect your data, no system is completely secure. We recommend keeping your device and browser up to date.
7. Your Rights
You have the right to access, correct, or delete your personal data at any time. For local data, you can do this directly from the app settings. For cloud data, contact us at hello@breadcromb.com.
Depending on your jurisdiction, you may also have rights under applicable data protection law (such as GDPR in the EU or CCPA in California). Please contact us to exercise these rights.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by updating the "Last updated" date above. Continued use of Trace after changes take effect constitutes acceptance of the updated policy.
9. Contact
For any privacy-related questions or requests, please contact us at hello@breadcromb.com.