Last updated August 22, 2026
Privacy
Deskfolk is local first. Your bots and their working data stay on your Mac unless you choose a feature that needs a hosted service.
Account information
We use Clerk to provide sign-in and account security. Clerk processes the identity information you choose to provide during sign-in.
Local data
Bot profiles, transcripts, skills, provider credentials, and computer profiles are stored on your device by default. Provider credentials are not sent to Deskfolk unless you explicitly provision a hosted bot.
Sync and hosted bots
When you enable sync, Deskfolk stores encrypted workspace events needed to reach your bots from paired devices and channels. When you start a hosted bot, its encrypted setup and active compute are processed in Deskfolk's Cloudflare-hosted control plane. Workspace content is isolated by account and authenticated device.
Payments
Paddle is our merchant of record and processes checkout, payment details, taxes, invoices, subscription changes, and refunds. Deskfolk receives Paddle customer, transaction, and subscription identifiers plus the billing status needed to grant hosted access. We do not receive full card details.
Service records
We retain limited operational records needed for security, billing, abuse prevention, and reliability. Hosted usage records contain metering totals, not the content of your conversations.
Your choices
You can keep Deskfolk local, disable sync, revoke paired devices, stop hosted computers, and sign out at any time. For access or deletion requests, email privacy@deskfolk.app.