The application
Stellar runs entirely on your machine. Boards, cards, tasks, reports and pasted assets stay in ~/.config/stellar. None of it is sent to us.
The app has no telemetry. The only request it makes on its own is checking GitHub releases to see whether a new version exists — a request, not a usage report. That check follows GitHub’s privacy policy.
Your credentials
API keys stay in the operating system’s keychain, encrypted by it. Stellar does not send them anywhere, and they do not open on another machine.
Third-party providers
When a terminal card runs a provider’s CLI, what you send it follows that provider’s policy. Stellar does not intermediate or record that conversation outside your machine.
This site
The site does not log access, does not use cookies and has no analytics tool or third-party script. The fonts are served by the site itself.
The page’s language is chosen from your browser’s language, at the moment of access. Nothing is stored.
Account (closed beta)
The account is optional and in closed beta, invite-only. Without an account, nothing leaves your machine. With an account, the Stellar server stores:
- e-mail, display name and, if you sign in with GitHub, your GitHub id and login;
- connected devices and login sessions (only the hash of the tokens);
- what you choose to sync: the workspace (rules, skills, agents and CLI configuration — never API keys or credentials) and, in teams, tasks, members and invites;
- the integrations you connect (GitHub, Linear, Jira) and an audit log of account and team actions.
The data is used only to provide the account service (legal basis: performance of a contract, LGPD art. 7, V). It is kept while the account exists; you can ask for deletion at any time.
Your rights (LGPD)
Without an account, the site and the app do not process your personal data. With an account, you can ask for access to, correction or deletion of your data. Questions and requests: contato@idyplatform.com.