Last Updated: August 2026

Privacy Policy

At Meldrix Agent, we prioritize transparency and privacy. Learn how we handle your personal information, Firebase authentication, GitHub authorizations, uploaded files, and AI completions.

1. Introduction

Meldrix Agent ("Service", "We", "Our") respects your privacy and is committed to protecting the personal data you share with us. This Privacy Policy outlines what information we collect, how we process and store it, and your rights regarding your data.

We never sell, rent, or trade your personal information to third parties.

2. Information We Collect

We collect information necessary to provide AI chat assistance, repository context inspection, image generation, and account authentication:

  • Account identifiers (email address, full name, avatar URL).
  • Chat prompts, queries, and conversational message history.
  • Uploaded context files, image attachments, and repository metadata.
  • Token usage analytics and subscription status records.

3. Account Information & Firebase

When you register, your primary email and profile data are stored securely in Google Firebase Authentication and Google Cloud Firestore. This information is used strictly to identify your account, manage subscriptions, and restore your chat history.

4. Google Authentication

If you sign in using Google OAuth, Firebase requests permission to access your basic Google profile (email, name, and profile picture). We use this information exclusively to create and verify your user profile.

Meldrix may also offer separate, optional Google service connections for Gmail and Google Drive. These connections are independent from Meldrix/Firebase sign-in, so the Google account used for Gmail or Drive may be different from the account used to sign in to Meldrix.

  • Gmail data is used only when you explicitly connect Gmail and request email actions such as searching, reading, drafting, or sending messages.
  • Google Drive data is used only for requested file actions such as searching, reading, uploading, downloading, or organizing Drive files.
  • We do not use Gmail or Drive data for advertising, sell it to third parties, or use it to determine subscription eligibility.
  • OAuth access is handled server-side, and you may revoke access from your Google Account security settings or disconnect the service in Meldrix where available.

Google User Data & Limited Use Disclosure

Meldrix's access to and use of information received from Google APIs, and any transfer of that information to another app, complies with the Google API Services User Data Policy, including its Limited Use requirements.

We access, use, and share Google user data, including Gmail and Google Drive data, only as necessary to provide and improve user-facing features of the Meldrix platform. We do not use Google user data to serve advertisements, and we do not sell, transfer, or share it with third parties or use it to train AI or machine-learning models without your explicit consent.

5. GitHub Authentication & Repository Security

Meldrix Agent provides workspace features that allow reading files, committing code changes, or creating repositories.

Strictly Permission-Based

Your GitHub Access Token is stored exclusively in your local browser storage (`localStorage`). We NEVER access, read, or alter your GitHub repositories without your explicit command in the chat interface.

6. Uploaded Files & Context Processing

Uploaded context files (code files, `.txt`, `.pdf`, `.doc`, images) are processed solely to provide requested AI completions and assist you with code editing.

Uploaded files are cached on high-speed CDN storage (Bunny Storage CDN) and passed to AI language model endpoints to generate answers.

7. AI Requests & Prompt Processing

When you submit a prompt, text, image, or repository snippet, the data is routed through secure HTTPS API pipelines to process the completion request using AI partners including Google AI, Vertex AI, Anthropic Claude, and Kie.ai APIs.

8. Analytics & Token Usage

We calculate prompt length, token usage estimates, and message counts in your dashboard to help you track usage and active plan limits.

9. Cookies & Local Storage

We use browser local storage and essential session cookies strictly to maintain authentication sessions, theme preferences (Dark/Light mode), and locally connected GitHub access tokens.

10. Firebase Infrastructure

Meldrix Agent uses Google Firebase Auth & Cloud Firestore to provide real-time chat synchronization and secure account storage. All database traffic is encrypted in transit using TLS/SSL.

11. Data Storage & Hosting

Our server-side Next.js endpoints are hosted on secure cloud infrastructure. User data is hosted across Google Cloud Platform (Firestore) and Bunny CDN.

12. Security Safeguards

We implement industry-standard encryption protocols (HTTPS/TLS), token authorization checks, and Firebase Admin SDK verification on API routes to protect your communications against unauthorized access.

13. Third-Party AI Integrations

Meldrix Agent utilizes state-of-the-art AI API providers to generate responses:

Google AI & Vertex AI APIs
Anthropic Claude API
Kie.ai Custom GPT/Grok APIs
Bunny Storage CDN Media API

14. Your Privacy Rights

Depending on your location, you have rights to access, update, correct, or request the deletion of your personal data stored on Meldrix Agent.

15. Data Deletion Requests

You can delete individual chat conversations at any time directly from the sidebar. If you wish to request full deletion of your account and associated Firestore user records, please email [email protected].

16. Children's Privacy

Meldrix Agent is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13.

17. Policy Updates

We may update this Privacy Policy periodically. Any updates will be published on this page with an updated "Last Updated" date.

18. Contact Us

For privacy inquiries, account deletion requests, or data protection questions, please contact us:

Acknowledge Privacy Terms

Please confirm your agreement to these Terms of Service and Privacy Policy before proceeding to create an account.