Privacy Policy
This policy explains how Supah, Inc. handles information when you visit developer.supahcomputer.com, visit supahcomputer.com, or use the invite-only Console. The separate SupahID notice governs the hosted identity and verification ceremony.
Information we collect
The public site does not use account cookies. If you allow analytics, it uses a separate Google Analytics measurement tag as described below. After redeeming an operator-issued invitation, Console onboarding collects organization type, organization or project name, role, optional business contact email, website, policy acceptance, application name and description, current authentication provider, integration mode, requested claims, expected volume, and an optional launch target. Business contact email and website are required for companies and optional for individual projects.
Supah Developer does not receive passwords or passkeys, a global SupahID, internal identity identifiers, government-ID images, selfies, biometrics, or expanded verification reports.
Supah Computer early access
Supahcomputer.com is a coming-soon product website. Its early-access form prepares an email request on your device; the site does not submit or store the address you enter. You choose whether to send the request through your email app. If you send it, Supah receives your email address and the contents of your message and uses them to respond to your early-access interest. The Supah Computer website does not load an analytics tag. You can ask us to delete your early-access correspondence by emailing [email protected].
Website analytics
With your permission, developer.supahcomputer.com uses its own Google Analytics measurement tag to understand page visits, traffic sources, approximate location, and browser or device information. Google Analytics may set first-party cookies after you allow analytics. The tag is separate from the tag used on supah.id, is not loaded on Console or account pages, and is configured without advertising personalization or Google Signals. Query strings are omitted from analytics page locations. You can decline analytics or change your choice at any time using the Privacy choices control. Learn more about how Google uses information from sites that use its services.
Abuse prevention
Supah receives ordinary network metadata needed to validate an invitation and protect the Console protocol. It retains only keyed IP digests and bounded rate, replay, session, and usage state, not a raw invitation after claim or an identity profile.
How we use information
We use submitted business and application information to provide test environments, assess requested capabilities and risk, plan capacity, and record operator review decisions. We do not sell personal information or use it for targeted advertising.
Storage and retention
Supah stores Developer admissions, organizations, memberships, applications, environments, policy acceptance, and audit events. Identity and authentication records remain separate from Developer records. You may ask us to access, correct, or delete applicable Developer records, subject to security, legal, and audit-retention requirements.
Service providers
Supah uses infrastructure providers to host the site and API. Stripe performs the separately governed identity-verification ceremony. Preview Intelligence may send minimized application input and approved context to an eligible external model provider only after application review and active person consent. Those providers may apply their own abuse-monitoring or retention policies. Developer systems receive only an application-scoped Console subject and no credential or verification evidence.
Supah on iPhone
When enabled, personal Chat sends your messages and selected conversation context to the configured OpenAI service after you review the processing disclosure. Messages in your continuous conversation expire after 30 days. Supah keeps encrypted chat history on that device, excluded from backup; its execution services do not persist prompts, answers, or calendar payloads. If you explicitly enable Calendar, selected iPhone calendars contribute only next-seven-days busy times to each message; Supah never changes events. You can turn this context off or withdraw Calendar permission independently of chat. Model-provider processing may have its own retention policy. See the Supah consumer privacy notice for device storage, automatic expiration, withdrawal, and deletion controls.
Your choices
You may ask to access, correct, withdraw, or delete applicable Developer information by emailing [email protected]. We may need enough information to locate the organization and verify your authority.
Security and contact
Security reports may be sent to [email protected]. Privacy questions may be sent to [email protected]. Do not include passwords, application secrets, or identity evidence in the initial message.