Privacy Policy
Renviel is a desktop app that runs AI coding command-line tools (“provider CLIs”) on your computer.
This policy explains what data the Renviel account service (auth.renviel.com) handles and what stays on your device.
What stays on your device
- Your conversations, prompts, attachments, code, project folders and settings.
- Your provider accounts and their credentials (e.g. Codex, Claude, Gemini logins). They are stored by each provider CLI in an isolated folder on your computer.
- Your Renviel session token, stored in the macOS Keychain or Windows Credential Manager.
Renviel does not send any of this to us. When you chat, the provider CLI sends your prompt directly to that provider (OpenAI, Anthropic, Google, GitHub, etc.); their own privacy policies apply to that data.
What the account service stores
- Profile: your email address, name and avatar URL from GitHub or Google (or just your email when you sign in with a code), the sign-in method and its account ID, your plan and creation date.
- Sessions: a hashed session token, the device's user-agent string and creation/expiry times, so you can see and sign out other devices.
- Sign-in codes: a hashed one-time code for email sign-in, deleted after use or within 10 minutes.
- Abuse protection: short-lived counters keyed by IP address (or IPv6 prefix) and email to rate-limit sign-in attempts, deleted within a day.
We don't use analytics, advertising or tracking cookies, and we don't sell or share your data.
Service providers
- Cloudflare hosts the account service and database.
- Resend delivers sign-in code emails (it receives your email address and the code).
- GitHub / Google handle OAuth sign-in when you choose them; we only request your basic profile and verified email.
- GitHub hosts app downloads and update checks; these requests reveal your IP address to GitHub.
Retention and deletion
Sessions expire after 90 days. You can delete your account at any time in Renviel under
Settings → Account → Delete account; this permanently removes your profile and all sessions from our database.
Local data is removed by uninstalling the app and deleting the ~/.renviel folder.
Children
Renviel is not directed at children under 13 (or the minimum age in your country) and we don't knowingly collect their data.
Changes and contact
We'll update this page when the policy changes and adjust the date above. Questions or requests: open an issue.
Renviel