Privacy Statement
Last updated: June 11, 2026

DeepCerebra Inc. ("DeepCerebra," "we," "us," or "our") is committed to protecting your privacy. This Privacy Statement describes how we collect, use, disclose, and protect personal data when you use the DeepCerebra Coder agentic coding platform at deepcerebra.ai, our desktop applications, command-line interface, APIs, and all related services and features (collectively, the "Services"). A core design principle of DeepCerebra is data minimization: your project files are held in confidential in-browser storage, and code and prompts routed to language models flow through our Zero Data Retention (ZDR) LLM API.

1 What Personal Data Do We Receive?

DeepCerebra collects personal data in the following categories, depending on how you interact with the Services.

1.1 Account and Profile Information

When you register, we collect your email address, a hashed version of your password, and optionally a display name. During registration we also collect your country and date of birth for the purpose of verifying that you meet the minimum age requirement and for regional compliance.

1.2 Subscription and Payment Information

When you subscribe to a paid plan or purchase additional usage credits, payment information is collected and processed directly by our payment provider, Stripe. DeepCerebra does not store full payment card details on our servers. We retain billing records, plan tier, and usage-metering totals.

1.3 Device and Network Information

We collect information about the devices and connections used to access DeepCerebra, including your IP address (used to infer approximate geographic location and for regional access controls), browser type and version, operating system, and device type.

1.4 Prompts, Code, and Generated Output

To provide agentic coding features, the Services process the prompts you submit and the code and context required to fulfill your request, and they return generated code, edits, and other output. As described in Sections 4 and 5, project files are stored in confidential in-browser storage, and the content routed to model providers is handled under Zero Data Retention terms and is not retained on our servers or used to train foundation models.

1.5 Usage and Diagnostic Information

We collect data on how you interact with the Services, including feature usage, the model or tier selected, token-usage and cost-metering totals, error and crash diagnostics, and performance metrics. Where possible this information is aggregated and does not include the content of your code.

2 How Do We Use Personal Data?

2.1 Providing and Improving the Services

We use personal data to authenticate users, route requests to selected models, execute agentic workflows, apply edits and run tools you authorize, and deliver the web, desktop, CLI, and API experiences.

2.2 Security, Authentication, and Fraud Prevention

We use device information, IP addresses, and usage patterns to detect and prevent unauthorized access, fraud, abuse, and other security threats. Rate limiting is applied to authentication and API endpoints to protect against brute-force attacks.

2.3 Billing, Metering, and Subscription Management

We use your account, usage, and payment information to meter AI usage, process payments via Stripe, manage your plan tier, send billing notifications, and handle renewals and cancellations.

2.4 Communication and Notifications

We use your email address to send account verification, security alerts, service announcements, billing notices, and, if you have opted in, product communications.

2.5 Legal and Compliance

We may use personal data to comply with applicable laws, respond to legal process, enforce our Terms of Service, and protect the rights, property, or safety of DeepCerebra, our users, or the public.

3 How Do We Share Personal Data?

We do not sell your personal data, and we do not use your code or prompts to train foundation models. We may share personal data with the following trusted service providers (subprocessors), who process it only on our behalf and in accordance with our instructions.

SubprocessorPurposeLocation
ZDR LLM API gatewayZero-Data-Retention routing to large language modelsUnited States
Google (Gemini)Model inference for code generation and reasoningUnited States
AnthropicModel inference (optional / selectable)United States
OpenAIModel inference (optional / selectable)United States
StripePayment processingUnited States
SendGrid / ResendTransactional email deliveryUnited States
RailwayCloud hosting and infrastructureUnited States
CloudflareCDN and DDoS protectionUnited States

We may also disclose personal data if required by law, court order, or governmental authority, or if we believe in good faith that disclosure is necessary to protect the rights, property, or safety of DeepCerebra, our users, or the public. If you supply your own model provider keys (BYOK) or connect third-party tools, your requests are also subject to those third parties' terms and privacy practices.

4 Your Code and Confidential In-Browser Storage

🔒 Confidential in-browser storage

DeepCerebra is designed so that your project files and working set are held in confidential, client-side storage within your browser or local application, rather than on our servers. The agent reads and edits these files locally and sends to our servers only the minimal context required to fulfill a given request. This minimizes the personal data and source code that ever leaves your device.

Note: When you connect a remote Git repository, a Model Context Protocol server, or another external tool, data may be exchanged with that service as needed to perform the operation you requested.

5 Zero Data Retention (ZDR) and Model Providers

Prompts and code routed to large language models through the DeepCerebra ZDR LLM API are processed under Zero Data Retention terms: the content is used only to generate a response and is not retained on our servers or by our model providers beyond what is strictly required to return that response, and it is not used to train foundation models. If you choose to bring your own model keys (BYOK) or route to a local model runtime (such as Ollama or LM Studio), your requests are handled under the terms of the provider or runtime you select.

6 AI Features and Data Processing

DeepCerebra's agentic features include multi-file planning and editing, command execution, repository-aware retrieval, tool calling (including Model Context Protocol servers), and scientific-computing skills. To provide these features, relevant portions of your prompts, code, and project context are processed by the selected model and tools. We process only what is necessary, apply the ZDR terms described above, and do not use your content to train foundation models.

7 Privacy Rights and Choices

Depending on your location, you may have the right to access, correct, delete, or port your personal data, as well as to restrict or object to certain processing activities. To exercise any of these rights, please contact us at privacy@deepcerebra.ai.

8 Data Retention

We retain personal data for as long as necessary to fulfill the purposes described in this Privacy Statement, unless a longer retention period is required or permitted by law. Account data is retained until you request deletion or your account is inactive for an extended period. Billing and metering records are retained as required for tax and accounting purposes. Because project files are held in confidential in-browser storage, they are not retained on our servers, and content routed through the ZDR LLM API is not retained beyond the request.

9 Children

The Services are intended only for users who are at least 18 years of age. DeepCerebra does not knowingly collect personal data from anyone under 18. If you believe a minor has provided us with personal data, please contact us at privacy@deepcerebra.ai and we will take steps to delete such information.

10 European Data Protection Specific Information

For users in the EEA, UK, or Switzerland, we process personal data on the following legal bases: (a) performance of a contract (to provide the Services); (b) legitimate interests (to secure and improve the Services); (c) compliance with legal obligations; and (d) consent (for optional features and communications).

Where we transfer personal data outside the EEA, UK, or Switzerland to countries not recognized as providing an adequate level of protection, we rely on Standard Contractual Clauses (SCCs) or other appropriate safeguards. You have the right to lodge a complaint with your local data protection supervisory authority.

11 California & Other U.S. State Privacy Rights

California residents have specific rights under the CCPA as amended by the CPRA, including the right to know, delete, correct, and opt out of the sale or sharing of personal information. DeepCerebra does not sell or share personal information for cross-context behavioral advertising. To exercise your California privacy rights, please contact us at privacy@deepcerebra.ai.

12 Changes to This Privacy Statement

We may update this Privacy Statement from time to time. We will notify you of material changes by posting a notice on our website or by sending an email to the address associated with your account. Your continued use of the Services after the effective date of the updated Privacy Statement constitutes your acceptance of the changes.

13 How to Contact Us

If you have any questions, concerns, or requests regarding this Privacy Statement or our data practices, please contact us:

General Privacy Inquiries: privacy@deepcerebra.ai

Security Issues: security@deepcerebra.ai

Website: https://deepcerebra.ai